pfSense WireGuard Package - Project Report 006 (UPDATED)

  Рет қаралды 2,964

Christian McDonald

Christian McDonald

Күн бұрын

Пікірлер: 19
@LAWRENCESYSTEMS
@LAWRENCESYSTEMS 3 жыл бұрын
Project is coming along great and I like that the interfaces cant be modified without rebuilding each time. The Mullvad VPN setup will really be a popular use case.
@rollinthedice7355
@rollinthedice7355 3 жыл бұрын
Top notch! Well done! Can't wait to see it in the next pfSense version.
@bhenstra
@bhenstra 3 жыл бұрын
Just wanted to say the same :-)
@kittysreview9055
@kittysreview9055 3 жыл бұрын
Wow!!! This is awesome. Thank you!
@ThisNameIsNotAvailbl
@ThisNameIsNotAvailbl 3 жыл бұрын
Please allow for adding an "Allowed IP" without adding routes. Our use case is specifically having a point-to-point connection and using BGP on top of that. For instance 172.30.0.1 -> 172.30.0.2 and having BGP between those two peers exchange various 10.0.0.0/24 routes. Such that traffic may appear as 10.0.0.100 -> 10.0.0.1/172.30.0.1 -> 172.30.0.2/10.0.5.1 -> 10.0.5.50. If there was no possibility to disable automatic route adding, the use cases would be diminished.
@ChristianMcDonald
@ChristianMcDonald 3 жыл бұрын
Yes absolutely this. I have similar requirements as well. I will be likely adding a checkbox on a per allowed ip to enable/disable automatic route creation
@testes2390
@testes2390 3 жыл бұрын
Thank you for your effort! I was actually checking how to install wireguard in openwrt because the lack of functionallity in Pfsense. Then I happily read about these great news. I am looking forward for the 2.6 release version, so I can install wireguard as a package. Oh by the way I was forgetting to ask... Will it be possible to create a NAT outbound rule, and set up a gateway in specific interfaces, so we can tunnel only on certain interfaces? as I see it is possible with for example openvpn Thanks and have a good one!
@TheDRMSKR
@TheDRMSKR 3 жыл бұрын
But where do you select which WAN for the WG to use?
@ChristianMcDonald
@ChristianMcDonald 3 жыл бұрын
Create a static route toward your remote endpoints /32 or /128 host out your desired gateway. Other than that, if you want WireGuard to follow a gateway group (static routes don't support gateway groups), you'll need to set your firewall gateway to your preferred group and policy route your LANs if you don't want them tracking thi as group too.
@colbyqqvandnebr3177
@colbyqqvandnebr3177 3 жыл бұрын
Hello, I have a question/request. I have managed to setup WindScribe VPN on PFSense and it's working well (way less buggier than original implementation and no kernel panics lol). The problem is that it uses default gateway with no way to change the interface. With OpenVPN, you can change the interface which is used to create the tunnel. Static route can be used with endpoint address as dest network to change it to non-default gateway but then the problem is that static route doesn't support gateway group. Is there any way to route the WireGuard tunnel over gateways other than default? Thanks
@ChristianMcDonald
@ChristianMcDonald 3 жыл бұрын
Static route or setting the system default gateway to the desired gateway group is currently the only two options
@colbyqqvandnebr3177
@colbyqqvandnebr3177 3 жыл бұрын
@@ChristianMcDonald ok, thank you
@yuriw777
@yuriw777 3 жыл бұрын
Thanks ! I guess it's not advisable to install on top on 2.5.x ?
@ChristianMcDonald
@ChristianMcDonald 3 жыл бұрын
2.5.1 is fine
@yuriw777
@yuriw777 3 жыл бұрын
@@ChristianMcDonald Is this a proper way ? 2.5.1 installed Set branch in System Update to 2.6.x Find and install WireGuard in Packages ?
@ChristianMcDonald
@ChristianMcDonald 3 жыл бұрын
I would not do that. If you’re on 2.5.1, sideloading is the best way currently
@yuriw777
@yuriw777 3 жыл бұрын
@@ChristianMcDonald copy thx
@ChristianMcDonald
@ChristianMcDonald 3 жыл бұрын
Will have the version in the video out tonight
pfSense WireGuard Package - Project Report 001 (UPDATED)
17:12
Christian McDonald
Рет қаралды 4,8 М.
pfSense WireGuard Package - Project Report 002 (UPDATED)
23:10
Christian McDonald
Рет қаралды 1,6 М.
Из какого города смотришь? 😃
00:34
МЯТНАЯ ФАНТА
Рет қаралды 2,6 МЛН
Увеличили моцареллу для @Lorenzo.bagnati
00:48
Кушать Хочу
Рет қаралды 8 МЛН
Accompanying my daughter to practice dance is so annoying #funny #cute#comedy
00:17
Funny daughter's daily life
Рет қаралды 17 МЛН
You're doing routers wrong... Use OpenWRT instead!
34:00
Hardware Haven
Рет қаралды 89 М.
Basic Setup and Configuring pfsense Firewall Rules For Home
17:27
Lawrence Systems
Рет қаралды 383 М.
A Tailscale Package for pfSense!
30:18
Christian McDonald
Рет қаралды 42 М.
pfSense WireGuard Package - Project Report 008 (UPDATED)
30:01
Christian McDonald
Рет қаралды 2,3 М.
pfSense WireGuard Package - Project Report 009 (UPDATED)
18:51
Christian McDonald
Рет қаралды 4,2 М.
pfSense WireGuard Guide Series 001 - Mullvad Failover
28:33
Christian McDonald
Рет қаралды 25 М.
Ollama on Kubernetes: ChatGPT for free!
18:29
Mathis Van Eetvelde
Рет қаралды 7 М.
pfSense WireGuard Package - Project Report 007 (UPDATED)
9:57
Christian McDonald
Рет қаралды 2,2 М.
Из какого города смотришь? 😃
00:34
МЯТНАЯ ФАНТА
Рет қаралды 2,6 МЛН