WireGuard on Site A=================== RoadWarrior Config ================== Tab: Local Name: RoadWarrior Instance: 0 Tunnel Address: 10.55.11.1/24 Peers: notebook, phone, ... many more (except Site-B) Disable Routes: enabled Peer Example ============ Tab: Endpoints Name: notebook AllowedIPs: 10.55.11.21/32 (notebook peer) SiteToSite Config ================= Tab: Local Name: SiteToSite Instance: 1 Tunnel Address: 10.55.22.1/30 Peers: Site-B Disable Routes: disabled (I had to disable this so Site A clients could respond to Site B requests.) ((Otherwise I would have had to manually create a STS_B_Gateway and STS_B_Route in the OPNsense settings.)) Peer Example ============ Tab: Endpoints Name: Site-B AllowedIPs: 10.55.22.2/32, 10.136.0.0/16 (Site B peer), (Site B subnets)WireGuard on Site B=================== SiteToSite Config ================= Tab: Local Name: SiteToSite Instance: 1 Tunnel Address: 10.55.22.2/32 Peers: Site-A Disable Routes: enabled Peer Example ============ Tab: Endpoints Name: Site-A AllowedIPs: 10.55.0.0/16 (Site A subnets)