1.18 Wireguard is disconnected

Started by yeraycito, October 24, 2024, 09:06:09 PM

Previous topic - Next topic
Can confirm, after Zenarmor update 1.18 Wireguard connections are disrupted.

I can concur - same issue - if the WG interface is disabled in ZenArmour then Remote WG Connections start working again.

Quote from: wirefall on October 27, 2024, 07:55:08 PM
I haven't changed anything in Zenarmor, WG interfaces have always been in. WG works again after 2 restarts, for over 2 days now reliable. However there was definitely something wrong with WG right after update, all connections to quite some peers outside were broken.

As I haven't changed any setting (only restarting), this keeps to be strange...

UPDATE: After another 2 days WG is broken again! Unpleasant surprise. Nothing has been changed, so this is rather unreliable. Another reboot seems to fix it, but for how long??

Please fix this soon, as I really need WG remote access. As I paid for a Zenarmor plan I count on the Zenarmor features even on the road. I am not willing to disable WG interfaces in Zenarmor, as there is quite a reason why I have them there. Thanks for your efforts in advance!

Same bullshit issue just hit me today after being fine for 2 days since the update.

Hi All,

Zenarmor version 1.18.1 has been released.

We would like to report that Wireguard connection issues have been resolved.

After the 1.18.1 update, we kindly ask you to add Wireguard interfaces again.

1.18.1 just has been released to fix the WG issue.

Looks good so far.

Is  my deployment mode and WG interface selection correct? On the lan,  I am using intrusion detection with Surricata.

It has the same behavior as before the update, at first it connects but after some time it loses connection and does not reconnect.

Hmm, here is all ok so far, about one day uptime with the new version.

But that was the same with the initial update 1.18. Have you rebooted after 1.18.1?

I have restarted Opnsense twice and the problem continues. In the widget the wireguard interface appears with no traffic.

A new zenoverlay service has been activated.

In the interface assignment I have a zenoverlay vpn that I don't have active and I don't know if I have to activate it, configure it and how to do it.


Interesting, I haven't noticed this zenarmor overlay WG thing so far. You've got the answer about this in your other thread, this is a zenarmor WG thing for future release.

Question is, if this thing could interfere somehow with your standard WG interface. However, I could find this overlay the same way as in your setup, but WG is still working as expected here (just checked again). Regarding WG itself I pretty much followed the setup in the OPNsense documentation.

I just finished testing and I think the problem is related to Suricata in wan and possibly Netmap. I have deactivated Zenarmor and Suricata and I could not connect wireguard, I had to restart opnsense several times and some of them hung. In the end with Suricata disconnected and zenarmor active monitoring the wireguard interface it worked again.