Help with unstable wireguard

Started by rykr, September 04, 2024, 09:27:11 PM

Previous topic - Next topic
I have WG setup and is sometimes works and sometimes doesn't.  I have the client on my iPhone set to on-demand.  It will go a couple of hours and will not work.  Blue Iris videos not coming through, accessing lan computers no go, etc.  Then, suddenly, will start working and will work for some time.

Any idea how I can go about deciphering what is going on?

Check the logs in the VPN > Wireguard > Logs. See whats going in there.

Other than that, did you do MSS clamping for Wireguard as its in the docs?
And what is your MTU set on the Wireguard client on your phone?
Are you using IPs as your Tunnel endpoint or domains?

Regards,
S.
Networking is love. You may hate it, but in the end, you always come back to it.

OPNSense HW
APU2D2 - deceased
N5105 - i226-V | Patriot 2x8G 3200 DDR4 | L 790 512G - VM HA(SOON)
N100   - i226-V | Crucial 16G  4800 DDR5 | S 980 500G - PROD

Nothing in the logs.  I'm running 1420 as MTU on server and client.  I'm using a domain name as my endpoint as it's using dyndns.  I realize that sometimes the IP address can change but I see extended periods of time where it is down and I know the IP address has not changed.

I have to ask again,

Did you do MSS clamping as is advised in the Docs?
The MTU is set where on OPNsense, on the WG interface or in the WG configuration?

Regards,
S.
Networking is love. You may hate it, but in the end, you always come back to it.

OPNSense HW
APU2D2 - deceased
N5105 - i226-V | Patriot 2x8G 3200 DDR4 | L 790 512G - VM HA(SOON)
N100   - i226-V | Crucial 16G  4800 DDR5 | S 980 500G - PROD