OPNsense Forum

English Forums => Virtual private networks => Topic started by: smema79 on August 16, 2021, 11:36:50 AM

Title: Wireguard in Ha mode
Post by: smema79 on August 16, 2021, 11:36:50 AM
I have 2 opnsense configured in HA mode and a virtual IP configured in CARP for wan access (as per the manual for HA configuration).
From what I understand, the wireguard vpn is not able to establish itself if the classic nat from wan to virtual IP is used because the vpn requires the use of the real ip of the interface to create the handshake.
The only workaround would be to redirect traffic for that udp port to the real ip but I don't understand how to use this solution in Ha mode (firewall rules are synchro between both fw)
Is there a guide on this?
I tried searching but couldn't find anything.

Thanks

Inviato dal mio SM-A415F utilizzando Tapatalk

Title: Re: Wireguard in Ha mode
Post by: tryhard on August 27, 2021, 09:59:35 AM
https://forum.opnsense.org/index.php?topic=20201.msg93517#msg93517

Looks like its not working yet.