simple Wireguard Road Warrior config by docs no handshake

Started by spkrb7, October 03, 2020, 05:44:33 AM

Previous topic - Next topic
Trying to setup WG for remote access but handshake is not happening. The log from my phone has: "WireGuard/GoBackend/wgopnsense: peer(public key) - Handshake did not complete after 5 second, retrying after 5 seconds, retrying (try 2)". I'm using the officlal opnsense docs for setup. Any help appreciated.
OPNsense 20.7.3
Protetcli FW4
Asus RT-AC86U (AP)


Thanks, appreciate your time, my lan addy is 192.168.1.1. https://imgur.com/a/iIn3q0a
OPNsense 20.7.3
Protetcli FW4
Asus RT-AC86U (AP)

What is the port forward for? Allow rule on WAN for wg Port is active?

Quote from: mimugmail on October 03, 2020, 11:12:25 AM
What is the port forward for? Allow rule on WAN for wg Port is active?
The port forward in the NAT section is per the instructions for WAN to LAN. It doesn't have the green triangle arrow indicating enabled, don't know if that applies there. Rule allowing WAN for wg is active, tried both in and out.
OPNsense 20.7.3
Protetcli FW4
Asus RT-AC86U (AP)



Hm, seems it was changed after I wrote the initial one, but will work too.
Instead for using mywireguardservice net in firewall alias, can you just insert the real network?

Since you have assigned the interface but didn't set the IP address (which is correct), OPNsense might have problems to detect this network because addresses are assigned when starting/stopping daemon

Thanks for the suggestions much appreciated, I just couldn't get the handshake to complete, so I reset to start over when I get time.
OPNsense 20.7.3
Protetcli FW4
Asus RT-AC86U (AP)