[SOLVED] Cannot connect to WAN interface from a remote client using Wireguard

Started by racer, March 15, 2020, 06:45:37 PM

Previous topic - Next topic
Hi all!
My setup:
- newest OPNSense 20.1, all updates
- Wireguard addon installed and configured (site to site)
- different VLANs/virtual interfaces configured

Situation/Issue:
I have set up an internal network with firewall rules, DHCP, etc. and everything is running smoothly BUT one connection.
Wireguard is set up to interconnect different sites, all sites use different IP ranges. Nearly all connections (as long as accepted by the firewall) between the sites are ok. It is just not possible to connect to the WAN device. It is a simple HTTP connection and I see it in the firewall log as accepted but the remote client just runs into a timeout. I can access the HTTP interface from all the site's local clients so the configuration in general should be ok. Any ideas?

WAN <- OPNSense <- local client: WORKING
WAN <- OPNsense <- wireguard <- remote client: NOT WORKING



edit:
ignore everything I wrote. We forgot to implement a route on the WAN device to the other sites because it is not aware of the networks behind OPNSense. Everything works flawlessly now.