Re: [ANNOUNCE] OPNsense 19.7 supports WireGuard

2019-08-26 Thread Muenz, Michael
Am 27.08.2019 um 06:28 schrieb Vincent: Is there any particular tweeks required to install the announed wireguard in opnsense? non listed under plugin and neither pkg install in opnsense 19.7.2 Ah, you are running 32bit version? WireGuard depends on Go which has some nasty compilation

[ANNOUNCE] OPNsense 19.7 supports WireGuard

2019-08-25 Thread Muenz, Michael
Hi, After over 8 months of development and troubleshooting WireGuard instabilities cause of FreeBSD kernel lacks, OPNsense finally released it's WireGuard plugin to stable branch. Many thanks to Jason and Bernhard Fröhlich from FreeBSD helping to make the port stable. Now it's possible

Re: [ANNOUNCE] OPNsense 19.7 supports WireGuard

2019-08-26 Thread Muenz, Michael
Am 25.08.2019 um 17:45 schrieb Jason A. Donenfeld: Congratulations on the release. That's great news. Would you like me to add some blurb to https://www.wireguard.com/install/ on it? Hi, If you like you can add some lines like "Install via "System->Firmware->Plugins->WireGuard" and follow

Re: [ANNOUNCE] OPNsense 19.7 supports WireGuard

2019-08-26 Thread Muenz, Michael
Am 26.08.2019 um 13:44 schrieb Vincent: Wireguard not listed in OPNsense 19.7 plugins ___ WireGuard mailing list WireGuard@lists.zx2c4.com https://lists.zx2c4.com/mailman/listinfo/wireguard I have one user report where it wasn't listed in the plugins

Re: [ANNOUNCE] OPNsense 19.7 supports WireGuard

2019-08-28 Thread Muenz, Michael
Am 28.08.2019 um 21:08 schrieb Alex Davies: This is great news. We have been using wireguard on OPNSense (mostly as servers, but also as a client in a few places) in production for some time now, without drama (we found one bug with a trivial workaround, see email chain "Table=off behavior

Re: [ANNOUNCE] WireGuard 1.0.0 for Linux 5.6 Released

2020-03-29 Thread Muenz, Michael
Am 30.03.2020 um 04:16 schrieb Jason A. Donenfeld: Hi folks, Earlier this evening, Linus released [1] Linus 5.6, which contains our first release of WireGuard. This is quite exciting. It means that kernels from here on out will have WireGuard built-in by default. And for those of you who were

FreeBSD/CARP: bind outgoing packets to virtual IP

2020-09-28 Thread Muenz, Michael
Hi, for HA solutions within Linux it seems WireGuard has the ability to use fwmark to treat packet right with iptables. When it comes to FreeBSD we don't have any chance to rewrite packets in HA setups. Let's say you have unit1 with master IP 1.1.1.5 and unit2 with master IP 1.1.1.9 and a

Re: FreeBSD/CARP: bind outgoing packets to virtual IP

2020-12-21 Thread Muenz, Michael
Hi, Any news on my old request? There are more and more users in OPNsense asking for HA features with WireGuard. Best, Michael Am 28.09.2020 um 13:33 schrieb Muenz, Michael: Hi, for HA solutions within Linux it seems WireGuard has the ability to use fwmark to treat packet right

Re: FreeBSD if_wg POINTTOPOINT and MULTICAST behaviour

2021-04-16 Thread Muenz, Michael
Am 16.04.2021 um 10:57 schrieb Stefan Haller: After applying Toke's patch for bird and your Wireguard patch in a7a84a17faf784 everything is working as before (with minor config changes). Just for the record, my previous configuration looked like this (using POINTTOPOINT interfaces, I use