Results 1 to 3 of 3
  1. #1
    Newbie
    Join Date
    Mar 2021
    Posts
    4

    Question Wireguard Split Tunnel

    Hi Folks,
    Been enjoying setting up Wireguard tunnels and its pretty neat.
    One thing I have observed in the Site to Site tunnel I created for a branch office is full tunneling.

    I noticed this when a tech made an unrelated network interface change on the primary NGFW appliance and then the tunnel stopped sending traffic (Known issue evidentially). Anyway the remote site had ALL traffic cease, no local internet, and of course internal traffic like voip phones went down as well.

    As there is no "setting" for specifying Full or Split tunnel and no documentation I am left guessing as to how to control that function. I gathered from a few other forum posts this may be controllable by 0.0.0.0 but it wasn't particualrly specific. Does anyone know how to control Split vs Full on WG tunnels?

    Furthermore is this a setting that is going to be implemented in the future?
    I am about to program a e6wl SD-Wan similarly. And if successful will replicate at more offices.

    Setup:
    UT appliance running 16.1 at the data center.
    u50x running 16.2 at the remote office. Static tunnel. VoIP is working (yea!) and DNS seems to be doing what I want. But might not if I get split tunneling working.

  2. #2
    Untangler jcoffin's Avatar
    Join Date
    Aug 2008
    Location
    Lake Tahoe
    Posts
    9,716
    Attention: Support and help on the Untangle Forums is provided by
    volunteers and community members like yourself.
    If you need Untangle support please call or email support@untangle.com

  3. #3
    Newbie
    Join Date
    Mar 2021
    Posts
    4

    Default

    Thanks, yes I had seen that. That did explain the cause of the lock up and it looked as if UT was working on that.
    Would that network int change made on the primary UT appliance stop ALL traffic on the remote site's u50x?
    I had assumed it just jammed up the WG site2site vpn tunnel and concluded the remote site wasn't doing split tunneling. That and I was able to remote control it from the CMD center site. Which is COOL!
    Last edited by TDA MIS; 03-03-2021 at 03:26 PM.

Tags for this Thread

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  

SEO by vBSEO 3.6.0 PL2