Home
Help
Search
Login
Register
OPNsense Forum
»
English Forums
»
Virtual private networks
»
WireGuard - AllowedIP limit on OPNsense?
« previous
next »
Print
Pages: [
1
]
Author
Topic: WireGuard - AllowedIP limit on OPNsense? (Read 813 times)
Koloa
Newbie
Posts: 41
Karma: 4
WireGuard - AllowedIP limit on OPNsense?
«
on:
September 16, 2022, 03:03:27 am »
I have a need to have around 160 subnets defined in AllowedIPs for a WireGuard endpoint - this works just fine on a separate dedicated WireGuard device I have on my network, but, on the OPNsense, at some point in adding subnets to the list, the wg interface never comes up.
Whilst I can see the wg3.conf interface in /usr/local/etc/wireguard on the OPNsense system, the file empties out if I disable WG - so I'm not really sure where it's storing the data BEFORE it goes into this file (something that the UI is generating?).
I also tried modifying wg3.conf myself, and restarting WireGuard, but, the problem persists.
I'll try iteratively adding subnets till I find the breaking point, but that could take a bit.
Anyone encountered this?
Is there another/better way to accomplish the same goal, such as by using Gateways and Routes (and maybe NAT?).
I was definitely able to add a few extra AllowedIPs to the list, and it worked fine, but, after a few, the interface never comes up and WireGuard never establishes a handshake. Since I know WG itself can handle this, I'm guessing there's a glitch in processing the number of them that I need to process.
Open to other suggestions on how best to solve this!
Logged
Print
Pages: [
1
]
« previous
next »
OPNsense Forum
»
English Forums
»
Virtual private networks
»
WireGuard - AllowedIP limit on OPNsense?