OPNsense Forum

English Forums => Virtual private networks => Topic started by: rykr on September 04, 2024, 09:27:11 PM

Title: Help with unstable wireguard
Post by: rykr on September 04, 2024, 09:27:11 PM
I have WG setup and is sometimes works and sometimes doesn't.  I have the client on my iPhone set to on-demand.  It will go a couple of hours and will not work.  Blue Iris videos not coming through, accessing lan computers no go, etc.  Then, suddenly, will start working and will work for some time.

Any idea how I can go about deciphering what is going on?
Title: Re: Help with unstable wireguard
Post by: Seimus on September 05, 2024, 09:50:15 AM
Check the logs in the VPN > Wireguard > Logs. See whats going in there.

Other than that, did you do MSS clamping for Wireguard as its in the docs?
And what is your MTU set on the Wireguard client on your phone?
Are you using IPs as your Tunnel endpoint or domains?

Regards,
S.
Title: Re: Help with unstable wireguard
Post by: rykr on September 06, 2024, 06:20:30 PM
Nothing in the logs.  I'm running 1420 as MTU on server and client.  I'm using a domain name as my endpoint as it's using dyndns.  I realize that sometimes the IP address can change but I see extended periods of time where it is down and I know the IP address has not changed.
Title: Re: Help with unstable wireguard
Post by: Seimus on September 07, 2024, 01:34:47 PM
I have to ask again,

Did you do MSS clamping as is advised in the Docs?
The MTU is set where on OPNsense, on the WG interface or in the WG configuration?

Regards,
S.