OPNsense
  • Home
  • Help
  • Search
  • Login
  • Register

  • OPNsense Forum »
  • English Forums »
  • Virtual private networks »
  • Is anybody successfully using WireGuard with multi-WAN / GW grp. load balancing?
« previous next »
  • Print
Pages: [1]

Author Topic: Is anybody successfully using WireGuard with multi-WAN / GW grp. load balancing?  (Read 2023 times)

schnerring

  • Newbie
  • *
  • Posts: 16
  • Karma: 9
    • View Profile
    • Michael Schnerring - Software Engineer
Is anybody successfully using WireGuard with multi-WAN / GW grp. load balancing?
« on: November 14, 2021, 06:47:16 pm »
I successfully setup selective routing with WireGuard over one tunnel as per the tutorial from the docs for outbound internet traffic. I setup multiple tunnels and as long as I'm using only one tunnel / gateway, everything works fine. As soon as I use a gateway group to load balance traffic over all the tunnels, things stop working properly.

The docs mention this:

Quote
When assigning interfaces we can also add gateways to them. This would offer you the chance to balance traffic via different VPN providers or do more complex routing scenarios.

... and this:

Quote
When assigning interfaces, gateways can be added to them. This is useful if balancing traffic across multiple tunnels is required or in more complex routing scenarios. To do this, go to System ‣ Gateways ‣ Single and add a new gateway. Choose the relevant WireGuard interface and set the Gateway to dynamic. These scenarios are otherwise beyond the scope of this how-to

Does anyone have a link on where I can read up on the topic "beyond this how-to"? Can anyone shed some light on what the Dynamic gateway policy would do here?

In this post it's mentioned that:

Quote
But true HA / LB is not possible with WG (yet...). So all connection states will be dropped when having a failover-event.

Can anyone confirm this? Does anybody have a working multi-tunnel load balance configuration?

« Last Edit: November 14, 2021, 06:48:57 pm by ask »
Logged

schnerring

  • Newbie
  • *
  • Posts: 16
  • Karma: 9
    • View Profile
    • Michael Schnerring - Software Engineer
Re: Is anybody successfully using WireGuard with multi-WAN / GW grp. load balancing?
« Reply #1 on: November 19, 2021, 04:47:50 am »
So I installed `wireguard-kmod` an have been testing failover gateway groups with WireGuard. It seems to be working.

However, load balancing doesn't work. I wouldn't know how to find out why.
« Last Edit: November 19, 2021, 02:41:14 pm by schnerring »
Logged

  • Print
Pages: [1]
« previous next »
  • OPNsense Forum »
  • English Forums »
  • Virtual private networks »
  • Is anybody successfully using WireGuard with multi-WAN / GW grp. load balancing?
 

OPNsense is an OSS project © Deciso B.V. 2015 - 2022 All rights reserved
  • SMF 2.0.18 | SMF © 2021, Simple Machines
    Privacy Policy
    | XHTML | RSS | WAP2