OPNsense Forum

English Forums => General Discussion => Topic started by: julianweber on July 27, 2020, 05:04:08 am

Title: OSPF over wireguard
Post by: julianweber on July 27, 2020, 05:04:08 am
I have wireguard up and running between three OPNsense firewalls and I am trying to get OSPF to work between them.  I have all the OPNsense firewalls showing up in the OSPF Neighbor listings, and I have the remote networks showing up in the routing table. The problem is that when I try to ping from Network A behind firewall A, to Network B behind firewall B the OPNsense firewall sends it to the default gateway instead of the OSPF learned route.  Can someone help me troubleshoot this? 
Wireguard Local
(http://www.rosemarknetworks.com/images/fw1-TestlabTunnel1.png) 
Wireguard Endpoint
(http://www.rosemarknetworks.com/images/fw1-EndpointTestlab1.png) 
Wireguard Interfaces
(http://www.rosemarknetworks.com/images/fw1-interfaces.png) 
OSPF Neighbors
(http://www.rosemarknetworks.com/images/fw1-ospf_neighbors.png) 
OSPF Routes
(http://www.rosemarknetworks.com/images/fw1-ospf_routes.png) 


(http://)
Title: Re: OSPF over wireguard
Post by: mimugmail on July 27, 2020, 06:03:36 am
Sounds like a pf route-to rule is catching it
Title: Re: OSPF over wireguard
Post by: Voodoo on July 27, 2020, 09:52:35 am
i think this is the same issue as mine https://forum.opnsense.org/index.php?topic=18013.msg82640#msg82640
Title: Re: OSPF over wireguard
Post by: julianweber on July 27, 2020, 03:43:41 pm
Sounds like a pf route-to rule is catching it

I created a gateway for the wireguard remote address and created a rule to forward traffic over that gateway and it still sends the traceroute out to the internet.

(http://www.rosemarknetworks.com/images/fw1-interface_Rules.png)