OPNsense Forum

English Forums => 25.1, 25.4 Production Series => Topic started by: waterchill on April 02, 2025, 12:29:44 PM

Title: WireGuard stuck on LTE after WAN failover
Post by: waterchill on April 02, 2025, 12:29:44 PM
Hi friends,

I'm new to OPNsense and actually stuck with one problem, maybe someone can help me out.

Setup:



Problem:

When WAN fails, LTE takes over and both general traffic and VPN continue to work as expected.
However, when WAN comes back online:

Only working solution:

The only thing that restores proper routing (WireGuard over WAN) is:

After this, the tunnel is re-established over the WAN interface.
Tried solutions (none worked):


Summary:
WireGuard in OPNsense does not automatically rebind to the primary WAN interface after a failover to LTE. The tunnel remains on LTE even when WAN is restored. No CLI or API method reliably reproduces the GUI behavior. The only known working solution is manually disabling and re-enabling the WireGuard instance via the GUI.