OPNsense Forum

Archive => 21.1 Legacy Series => Topic started by: notrox on May 20, 2021, 03:41:01 pm

Title: Unable to establish more than one Wireguard vpn tunnel
Post by: notrox on May 20, 2021, 03:41:01 pm
I am having an issue where I can't establish more than one Wireguard vpn tunnel at once. I can bring one tunnel down and the other up and it works fine.
Title: Re: Unable to establish more than one Wireguard vpn tunnel
Post by: Cosmic on May 20, 2021, 06:02:50 pm
Are you changing the listen port example first Wireguard vpn listen port 51820 2nd 51821 etc.
Title: Re: Unable to establish more than one Wireguard vpn tunnel
Post by: Greelan on May 21, 2021, 09:29:48 am
Check also that the Endpoint configs on OPNsense don’t have overlapping Allowed IPs
Title: Re: Unable to establish more than one Wireguard vpn tunnel
Post by: deeler on May 21, 2021, 01:24:22 pm
I didn't even know you had to make a local config for every remote client. Is that so?
Title: Re: Unable to establish more than one Wireguard vpn tunnel
Post by: Greelan on May 21, 2021, 01:31:59 pm
Nope. If this is a road warrior setup (multiple remote clients connecting to OPNsense) you just need one WG device on OPNsense
Title: Re: Unable to establish more than one Wireguard vpn tunnel
Post by: notrox on May 21, 2021, 07:37:11 pm
I changed the local configuration for the second tunnel to 51821 and the connection is established now. Traffic doesn't seem to be going across it. I'm I am routing certain hosts part of the same /24 out separate tunnels will that not work? I have 0.0.0.0/0 as part of my allowed ip's for both tunnels.
Title: Re: Unable to establish more than one Wireguard vpn tunnel
Post by: Greelan on May 21, 2021, 10:40:16 pm
You will have to explain what you are trying to achieve, as without that it is impossible to advise
Title: Re: Unable to establish more than one Wireguard vpn tunnel
Post by: astuckey on May 31, 2021, 06:26:17 am
Check the firewall rules for the generic interface called "WireGuard", this needs to allow traffic, will drop traffic running over the tunnel by default.