Wiregaurd no handshake

Started by USC1262, October 15, 2025, 10:12:06 AM

Previous topic - Next topic
I have spent 5 hours on this now, and remain completely stumped.
I had a pretty standard wireguard roadrunner installation working, until I changed over to a different computer to connect to the wireguard server. After fiddling around with it, I couldn't get it working again, and eventually wiped out all the wireguard rules and configurations I had. This unfortunately got me nowhere, and I am now left without any working baseline of what used to work.
The only thing I have to work off of is that the handshake isn't completing.
I have run through 4 different guides of installation to no success, could anyone run me through troubleshooting this?

Hello, I have the same problem.

For WireGuard installation, in the "https://docs.opnsense.org/manual/how-tos/wireguard-client.html" address, respectively;

  • Step 1 - Configure the Wireguard Instance
  • Step 2 - Configure the client peer
  • Step 3 - Turn on/restart WireGuard
  • Step 4(a) - Assign an interface to WireGuard (According to the hint, 4b doesn't seem to apply in my case.)
  • Step 5 - Create firewall rules
  • Step 5a - Create normalization rules (For IPv4 only, I don't have  IPv6 address and it's not enabled on the ISP side either.)

I followed the steps in the headings, the keys of the spouses are compatible and although there are no other rules, I still have a handshake problem.

OPNSense Version        25.7.10

The only guide to follow should be the one in the docs. I did use it and its working.

Dont you have a backup of the config? Or a snapshot to revert to prior you wiped the config?
Do you have properly configured the Instances and Peers on OPN?
Do you have properly configured the key on OPN and the client (remote side)?
Do you have proper rules to allow Wireguard connection on the interfaces its reaching it (WAN most likely)?

If the remote client is reaching the WG instance e.g OPN, and has proper rules, the handshake may fall cause of wrong keys.

Regards,
S.
Networking is love. You may hate it, but in the end, you always come back to it.

OPNSense HW
APU2D2 - deceased
N5105 - i226-V | Patriot 2x8G 3200 DDR4 | L 790 512G - VM HA(SOON)
N100   - i226-V | Crucial 16G  4800 DDR5 | S 980 500G - PROD