91
Virtual private networks / Weird connection Problems
« Last post by timmuellef on May 06, 2024, 12:45:17 am »Hey all,
I'm running into several other pretty weird issues. I've been troubleshooting for a few days now having reinstalled several times and tried everything I could find on this forum or other websites but I made no progress. So I figured I just ask other people who have exponentially more experience than me in networking.
My general objective is to use a Wireguard VPN tunnel to let my vms access the internet and being able to route incoming requests on the IP of that tunnel to be able to get routed to any machine on my network
I'm now using OPNSense on an old Dell Optiplex 7020 (which should be enough for basic gigabit networking?).
I pretty much am using a completely fresh install with my interfaces set up (lan, wan (my isp) and a vlan on the lan interface for my vms which all should route through the VPN. I exactly followed this https://docs.opnsense.org/manual/how-tos/wireguard-selective-routing.html guide to set up the wireguard interface and routing my vlan to it.
This setup causes some weird issues on my vms.
- Most of the Internet works and I can google and all but some ips/domains, for example 13.107.213.67:443 (minecraft authentication servers) won't return anything. I've observed using tcpdump that the packets actually get sent and even received but all of my machines still don't receive anything useful like the service down website using curl or just a browser.
- Sometimes it takes a few seconds for the connection speed to "ramp up" until I actually get a connection.
- Some domains just won't resolve (using 1.0.0.1 through unbound on opnsense) but through another device outside of the Network it works
- If I have an incoming port forward from the vpn interface to any of my vms the packets get successfully routed to my vm and get responded to. But the responses, for some reason, go through my normal wan interface (ISP) instead back to the sender on the VPN interface.
If there is something I need to share additionally please ask and I'll eagerly provide it.
Thank you
I'm running into several other pretty weird issues. I've been troubleshooting for a few days now having reinstalled several times and tried everything I could find on this forum or other websites but I made no progress. So I figured I just ask other people who have exponentially more experience than me in networking.
My general objective is to use a Wireguard VPN tunnel to let my vms access the internet and being able to route incoming requests on the IP of that tunnel to be able to get routed to any machine on my network
I'm now using OPNSense on an old Dell Optiplex 7020 (which should be enough for basic gigabit networking?).
I pretty much am using a completely fresh install with my interfaces set up (lan, wan (my isp) and a vlan on the lan interface for my vms which all should route through the VPN. I exactly followed this https://docs.opnsense.org/manual/how-tos/wireguard-selective-routing.html guide to set up the wireguard interface and routing my vlan to it.
This setup causes some weird issues on my vms.
- Most of the Internet works and I can google and all but some ips/domains, for example 13.107.213.67:443 (minecraft authentication servers) won't return anything. I've observed using tcpdump that the packets actually get sent and even received but all of my machines still don't receive anything useful like the service down website using curl or just a browser.
- Sometimes it takes a few seconds for the connection speed to "ramp up" until I actually get a connection.
- Some domains just won't resolve (using 1.0.0.1 through unbound on opnsense) but through another device outside of the Network it works
- If I have an incoming port forward from the vpn interface to any of my vms the packets get successfully routed to my vm and get responded to. But the responses, for some reason, go through my normal wan interface (ISP) instead back to the sender on the VPN interface.
If there is something I need to share additionally please ask and I'll eagerly provide it.
Thank you