OPNsense Forum

English Forums => Virtual private networks => Topic started by: nekacasa on September 15, 2025, 09:54:39 AM

Title: [Help] OPNsense WireGuard on Proxmox – packets arrive but no handshake
Post by: nekacasa on September 15, 2025, 09:54:39 AM
Hi,

I'm fairly new to networking and OPNsense, and I'm stuck with my WireGuard setup. I can not get handshake. I've been troubleshooting step by step for a while and would really appreciate some guidance.

My setup
ISP router:
       

OPNsense VM running on Proxmox:

WireGuard config in OPNsense


Firewall rules:


NAT:

Outbound NAT in hybrid mode → rule: WireGuard net → WAN → interface address

Peer (phone) config

[Interface]


[Peer]


What works

So port forwarding is working and OPNsense is receiving the packets.

What does NOT work

Things I have already tried

Where I'm stuck

Packets from the phone reach OPNsense WAN, but WireGuard never replies. I cannot get a handshake, so no LAN or internet access through the tunnel.

What else could cause OPNsense to silently drop incoming WireGuard handshake packets, even when the peer is linked, keys match, and packets clearly arrive at the WAN interface?

Thanks in advance for any help!