Home
Help
Search
Login
Register
OPNsense Forum
»
English Forums
»
Virtual private networks
»
Wireguard and Outbound Internet Access
« previous
next »
Print
Pages: [
1
]
Author
Topic: Wireguard and Outbound Internet Access (Read 271 times)
spetrillo
Hero Member
Posts: 721
Karma: 8
Wireguard and Outbound Internet Access
«
on:
October 30, 2024, 03:55:32 pm »
Hello all,
I use Wireguard for client VPN access to my internal servers. I would like to allow the VPN client to be able to access the Internet, while connected to the VPN. I thought having the Allowed IPs of 0.0.0.0/1 and 128.0.0.0/1 would do that but it does not seem to be working. Am I missing something?
Thanks,
Steve
Logged
Bob.Dig
Sr. Member
Posts: 257
Karma: 13
Re: Wireguard and Outbound Internet Access
«
Reply #1 on:
October 30, 2024, 04:34:41 pm »
Why not 0.0.0.0/0?
Logged
spetrillo
Hero Member
Posts: 721
Karma: 8
Re: Wireguard and Outbound Internet Access
«
Reply #2 on:
October 30, 2024, 04:39:22 pm »
That does not seem to work.
Logged
Bob.Dig
Sr. Member
Posts: 257
Karma: 13
Re: Wireguard and Outbound Internet Access
«
Reply #3 on:
October 30, 2024, 04:42:35 pm »
Quote from: spetrillo on October 30, 2024, 03:55:32 pm
I would like to allow the VPN client to be able to access the Internet, while connected to the VPN.
What do you mean exactly?
Also, what Client is used.
Logged
spetrillo
Hero Member
Posts: 721
Karma: 8
Re: Wireguard and Outbound Internet Access
«
Reply #4 on:
October 30, 2024, 05:03:53 pm »
So I would like to do this one of two ways:
1) Connect to VPN for protected resources while allowing access to local Internet resources and apps, sort of like split tunneling.
2) Connect to VPN for protected resources and then allow access to Internet resources through the Internet connection the protected resources use, sort of like routing out the Internet connection.
I am using both Windows and Android devices for VPN access. I hope that clarifies what I am trying to do. My OPNsense firewall is the Wireguard VPN server. I have setup an interface for WG and a firewall rule to allow WG access to my internal networks.
Logged
Bob.Dig
Sr. Member
Posts: 257
Karma: 13
Re: Wireguard and Outbound Internet Access
«
Reply #5 on:
October 30, 2024, 05:25:27 pm »
If I understand correctly, then 2. is using 0.0.0.0/0 and 1. would be the IP-addresses/networks of your "protected resources" as the allowed IPs.
2. is the easiest to configure.
Logged
spetrillo
Hero Member
Posts: 721
Karma: 8
Re: Wireguard and Outbound Internet Access
«
Reply #6 on:
October 30, 2024, 07:31:29 pm »
So the Allowed IPs should be 0.0.0.0/0 and 0.0.0.0/1?
Logged
Print
Pages: [
1
]
« previous
next »
OPNsense Forum
»
English Forums
»
Virtual private networks
»
Wireguard and Outbound Internet Access