OPNsense Forum

English Forums => Virtual private networks => Topic started by: Jetro on July 23, 2022, 01:45:19 pm

Title: [SOLVED] Route Wireguard to a secondary Gateway.
Post by: Jetro on July 23, 2022, 01:45:19 pm
Hi guys,

I have two router: a Unifi UDM-PRO and an old Watchguard appliance converted to OPNsense.

The UDM-PRO is linked to a low-latency connection, which I use for my devices, and has a backup link from OPNsense.

OPN sense is linked to an higher-speed connection, and is used for guest devices. It has a backup link which goes on UDM-PRO LAN.

Now, I have a Wireguard server on the OPNsense machine, which I wanna use to connect remotely to devices on UDM-PRO network (and sub-networks).

I can access the OPNsense networks and I set up firewall wireguard rule to access everything. Also, I set up static routes for the UDM-PRO networks to the UDM-PRO gateway but I still can't access anything on its network.

Where I'm wrong?

Thank you

-------- SOLUTION ------------

1 - Created a firewall alias to group all the networks

2 - Firewall Rules that allow traffic to the alias-networks

3 - Static routes to route that networks to the right gateway

4 - NAT Outbound mode to hybrid mode and create a rule to nat that networks from wireguard interfaces to the right gateway.