can't get wireguard to work on multiple appliances after updating

Started by DEC670airp414user, March 02, 2025, 12:29:52 PM

Previous topic - Next topic
March 02, 2025, 12:29:52 PM Last Edit: March 03, 2025, 12:02:17 PM by DEC670airp414user
i updated my business appliance. a DEC670, and i updated a minnowboard with intel nics.  and both are having the same issue.

wireguard will connect.  but traffic will not pass reliably.  i have been setting up wireguard for quite sometime, so i know i am doing it correctly.

ive regenerated all new keys.  so nothing is reused etc

i then factory reset my minnowboard to 25.1.  started from scratch, and it still have the same issue with two different "providers". with wireguard.  any suggestions are welcome

wireguard is working on the latest Business Edition with zero issues.  wiped it and went back to BE for the DEC appliance


March 02, 2025, 12:30:49 PM #2 Last Edit: March 02, 2025, 12:34:31 PM by DEC670airp414user
3rd pictures

for the firewall rule.  the wireguard IS chosen for gateway.  i had to change it to default to post these screen shots.

so the firewall rule IS in place


2nd screen shot.  i thought it was DNS..   i have DNS pushed from KEA.  and i also staticly assigned their DNS server on the wired nic card.   i still have the issue

Quote from: DEC670airp414user on March 02, 2025, 12:29:52 PMwireguard is working on the latest BE with zero issues.


What does BE stand for? If you use abbreviations, please use at least the full term once for acronyms that are not immediately clear. If it stands for "build environment", it still lacks specificty. e.g. which build environment, what repo, git hash, ...

BE could be either boot environment in the context of snapshots, or business edition if talking about OPNsense versions

Exactly the reason why we call snapshots "snapshots"...

Not aware of an actual WireGuard issue on 25.1. Some people always reporting issues post-upgrade, but also not able to explain what the problem is. OTOH always people saying it works fine, so suggesting a setup quirk or unstable connection.


Cheers,
Franco

March 03, 2025, 10:16:49 AM #6 Last Edit: March 03, 2025, 10:22:53 AM by DEC670airp414user
Quote from: tessus on March 02, 2025, 07:59:25 PM
Quote from: DEC670airp414user on March 02, 2025, 12:29:52 PMwireguard is working on the latest BE with zero issues.


What does BE stand for? If you use abbreviations, please use at least the full term once for acronyms that are not immediately clear. If it stands for "build environment", it still lacks specificty. e.g. which build environment, what repo, git hash, ...

HI I have seen this posted many times.    paying customers I've seen have listed BE as Business Edition.  which is what I am using on the DEC appliance and works perfectly.  I've upgraded it 3 times now to 25.1. and Wireguard fails to work reliably.

I then pulled out an old minnow board 2 Nic PC.  and upgraded it to 25.1.  attempted and had the same issue,  factory reset within the console.  started over with all new keys.    and still have the same issue.
I don't believe its my fiber line as unstable, as it works perfectly on. Business Edition on the same appliance same cables and switches and Access Points etc.
I figured I would post if anyone else was having an issue.  or any ideas.  I've spent 3 days off work trying to figure it out, and can not

per the pictures,  everything is correct... to me.  and has worked for the many months I've used Wireguard.
it shows connected.  if I visit ford.com the website doesn't load.  if I visit amd.com the website loads.  if I attempt to download anything from distrowatch.    all the files downloaded fail 1/4. way.    it seems to me a MTU issue.  but I've enabled clamping.  removed clamping. used all working MTU of 1320    and I still have the issue of constantly websites not displaying even though I CAN ping external sites.    but downloads will also never complete