Unable to establish more than one Wireguard vpn tunnel

Started by notrox, May 20, 2021, 03:41:01 PM

Previous topic - Next topic
I am having an issue where I can't establish more than one Wireguard vpn tunnel at once. I can bring one tunnel down and the other up and it works fine.

Are you changing the listen port example first Wireguard vpn listen port 51820 2nd 51821 etc.

Check also that the Endpoint configs on OPNsense don't have overlapping Allowed IPs

I didn't even know you had to make a local config for every remote client. Is that so?

Nope. If this is a road warrior setup (multiple remote clients connecting to OPNsense) you just need one WG device on OPNsense

I changed the local configuration for the second tunnel to 51821 and the connection is established now. Traffic doesn't seem to be going across it. I'm I am routing certain hosts part of the same /24 out separate tunnels will that not work? I have 0.0.0.0/0 as part of my allowed ip's for both tunnels.

You will have to explain what you are trying to achieve, as without that it is impossible to advise

Check the firewall rules for the generic interface called "WireGuard", this needs to allow traffic, will drop traffic running over the tunnel by default.