AmneziaWG 3.1 for OPNsense 26.7 — Public Beta, Testers Wanted
A community beta of os-amneziawg has been published, adding AmneziaWG 3.1 support for OPNsense 26.7 / FreeBSD 15.x amd64.
The runtime uses the amneziawg-go userspace backend, so no AWG kernel module is required. The project includes native FreeBSD/OPNsense packages, AWG 3.1 config import/export, safe Apply with rollback, selective routing through standard OPNsense Aliases/Gateways/Firewall Rules, TUN/UAPI watchdog checks, SHA-256 release verification, and pinned upstream source versions.
Beta1 is built and tested on FreeBSD 15.1 through GitHub Actions. It has also been migrated on a real OPNsense system from an earlier RC installation to the native beta1 packages; the tunnel and selective routing came back up successfully and are working.
The project is still marked as beta because independent testing on different hardware, WAN configurations, and virtualization platforms is needed.
If you test it, I would really appreciate a report including:
* OPNsense and FreeBSD versions
* WAN type: DHCP / PPPoE / static
* fresh installation or migration
* handshake and bidirectional traffic status
* whether selected destinations go through AWG
* whether non-selected traffic still uses the normal WAN
* behavior after reboot
* approximate throughput/speed
There is also an offline installation method for networks where OPNsense fetch cannot reach GitHub because of regional or ISP restrictions, as well as documented safe recovery and uninstall procedures.
This project is not an official component of OPNsense or Amnezia. A significant part of the AWG 3.1 integration, hardening, testing, and documentation was developed and reviewed with the assistance of generative AI. This is disclosed openly in the repository.
Repository:
https://github.com/sergeyvasilev2363-ai/os-amneziawg
Beta release:
https://github.com/sergeyvasilev2363-ai/os-amneziawg/releases/tag/v3.1.2-beta1
Feedback, testing results, bug reports, and code review are very welcome.
A community beta of os-amneziawg has been published, adding AmneziaWG 3.1 support for OPNsense 26.7 / FreeBSD 15.x amd64.
The runtime uses the amneziawg-go userspace backend, so no AWG kernel module is required. The project includes native FreeBSD/OPNsense packages, AWG 3.1 config import/export, safe Apply with rollback, selective routing through standard OPNsense Aliases/Gateways/Firewall Rules, TUN/UAPI watchdog checks, SHA-256 release verification, and pinned upstream source versions.
Beta1 is built and tested on FreeBSD 15.1 through GitHub Actions. It has also been migrated on a real OPNsense system from an earlier RC installation to the native beta1 packages; the tunnel and selective routing came back up successfully and are working.
The project is still marked as beta because independent testing on different hardware, WAN configurations, and virtualization platforms is needed.
If you test it, I would really appreciate a report including:
* OPNsense and FreeBSD versions
* WAN type: DHCP / PPPoE / static
* fresh installation or migration
* handshake and bidirectional traffic status
* whether selected destinations go through AWG
* whether non-selected traffic still uses the normal WAN
* behavior after reboot
* approximate throughput/speed
There is also an offline installation method for networks where OPNsense fetch cannot reach GitHub because of regional or ISP restrictions, as well as documented safe recovery and uninstall procedures.
This project is not an official component of OPNsense or Amnezia. A significant part of the AWG 3.1 integration, hardening, testing, and documentation was developed and reviewed with the assistance of generative AI. This is disclosed openly in the repository.
Repository:
https://github.com/sergeyvasilev2363-ai/os-amneziawg
Beta release:
https://github.com/sergeyvasilev2363-ai/os-amneziawg/releases/tag/v3.1.2-beta1
Feedback, testing results, bug reports, and code review are very welcome.
"