It seems like everytime I watch your videos, I'm coming for wg info but leave with some new tidbit of understanding of pfsense, firewalls or general networking. Don't worry about the length of the videos. I'm getting a lot from them. Most of my use of the client comes from remote access to my home network, or site-to-site vpn connection to several other networks I manage. Keep up the side tips of how you troubleshoot packet traversal. I've learned a lot from your explanations.
@CHLEE-ou6ub3 жыл бұрын
Thank you Christian, fitted like a final piece of the puzzle.... 👍 Great video and keep up the good work.
@rcdenis13 жыл бұрын
A great teacher, I admire and appreciate your work/videos very much, subscribed!
@devanbhagat77183 жыл бұрын
Great video! Looking forward to learning how to overcome CGNAT or double NAT with a VPS.
@A-bt9nz2 жыл бұрын
Mullvad does allow you to generate your own keys and upload the public key, through both the site and the API. Also their website says that if you generate your keys on the site, the generation is done locally and the keys never leave your browser
@ChristianMcDonald2 жыл бұрын
Cool, I must have missed that. Thanks for clarifying. Will mention this in an upcoming video
@FRANKLEO1233 жыл бұрын
I would love to see you do a site to site pfsense WireGuard configurations
@ChristianMcDonald3 жыл бұрын
Yep, this is going to happen soon!
@timaustin-mills67413 жыл бұрын
@@ChristianMcDonald Can you please do an example of multi-site to head office Wireguard Configuration
@marksmith81422 жыл бұрын
Great video, Christian. You mentioned that you made a widget for VPN gateways? I do not see it and wondered if you could explain how you’ve got that separated from other gateways on the dashboard.
@l0gic232 жыл бұрын
Thanks for the info on the VPN services you have used.
@m4rx053 жыл бұрын
Good tips on VPN providers. What's the reasoning behind setting the MTU to 1420?
@ChristianMcDonald3 жыл бұрын
Account for WireGuard header overhead. Ref: lists.zx2c4.com/pipermail/wireguard/2017-December/002201.html
@lukehamburg3 жыл бұрын
Awesome video as always! One small correction: at 4:51 you say ZeroTier uses the wireguard protocol under the hood... pretty sure it doesn't. ZT came out years before WG.
@ChristianMcDonald3 жыл бұрын
Yea I meant TailScale lol
@tvanc542 Жыл бұрын
Christian, I love your work. I have multiple MV tunnels set up and it works great! Now trying to get remote access. I have a handshake, but no internet or access to home network via that tunnel. Any suggestions on where to look to fix this? Also, would love to hire you for a 30min/1hr consult for pfsense tune up. Any chance we can make that happen?
@MikeReprogle2 жыл бұрын
Rebuilding my network with Wireguard instead of OpenVPN this time around, and the videos you have are going to be my go-to, so thank you so much for putting these together! I am going to be using Windscribe, and I thought it was strange, but they do not offer IPV6 info in their configs. Sure, it is one less thing for me to set up, but do you think this is common?
@marksmith81422 жыл бұрын
Can you show us what firewall rules you have on each of the WG interfaces? I see what you had for LAN1,2,3,4, but what do you have on the actual WG interfaces?
@dudley810 Жыл бұрын
pfsense wireguard service is not running? On pfsense +22.05 . Do. you know why this would happen?
@sgtlionelfrey3 жыл бұрын
Thanks for your work. Some ideas for features I would gladly use If you can add some sort of organization for peers like a group view to separate roadwarior peers from site to site peers. And an import/export peer management would make it easier to use when you manage more than 100 peers =)
@ChristianMcDonald3 жыл бұрын
Yep. This is something I plan on spending some quality time on after we release 22.01/2.6.0 next month!
@RyanMurraythereal2 жыл бұрын
can you think of a way to traffic shape my traffic that goes out wireguard (mullvad)? I'd like to lower priority my bandwith for linux isos i am seeding and downloading.
@thegorn2 жыл бұрын
"mission critical" and "home lab" don't really go together