I turned on my debug logs for the WG instance and I can see the following message when the peer connects.
wg1: Packet has unallowed src IP from peer 1
My Opnsense instance is 172.16.0.1/24
My Opnsense peer for the mobile allowed IP is set to 172.16.0.101/32
My peer side config allowed IP is set to 0.0.0.0/0
I have a firewall rule from the 172.16.0.0/24 network to an internal server. I can ping it and connect to it fine from the mobile peer.
Packet capture on the WAN interface shows the wireguard connection.
I have an interface assigned to WG.
The peer connects fine and passes traffic when connected to 5G connection.
Why would this message show in the debug?
wg1: Packet has unallowed src IP from peer 1
My Opnsense instance is 172.16.0.1/24
My Opnsense peer for the mobile allowed IP is set to 172.16.0.101/32
My peer side config allowed IP is set to 0.0.0.0/0
I have a firewall rule from the 172.16.0.0/24 network to an internal server. I can ping it and connect to it fine from the mobile peer.
Packet capture on the WAN interface shows the wireguard connection.
I have an interface assigned to WG.
The peer connects fine and passes traffic when connected to 5G connection.
Why would this message show in the debug?
"