Port forward on WG fails after reboot

Started by Drocona, February 11, 2024, 02:16:34 PM

Previous topic - Next topic
Hello,

Would love to get some help on the following:

Using OPNsense as a VPN box, it only has a WAN (uplink to local network) and a WireGuard interface for connectivity to the other site. This works fine and as expected.
However, due to subnet overlap the local site is configured with outbound NAT and a port forward to a local machine for backups. The outbound NAT seems to work fine too.
However, after each reboot, the 2 port forwards from the WireGuard network to the local network does not work. It just doesn't respond. Manually disabling 1 of these rules and enabling it again fixes the problem for both port forwards. It seems to me a re-apply is the fix.

How does this happen and how can I fix this? We rely on the port forward for data replication and should always automatically work after a reboot of OPNsense.

Any insight is appreciated, if more info is required feel free to request.
Thanks in advance.