{"id":1625,"date":"2024-08-21T09:27:48","date_gmt":"2024-08-21T07:27:48","guid":{"rendered":"https:\/\/www.delixirpro.com\/blog\/?p=1625"},"modified":"2024-10-30T10:53:38","modified_gmt":"2024-10-30T09:53:38","slug":"creer-une-connexion-vpn-site-a-site-avec-wireguard-sous-pfsense","status":"publish","type":"post","link":"https:\/\/www.delixirpro.com\/blog\/2024\/08\/21\/creer-une-connexion-vpn-site-a-site-avec-wireguard-sous-pfsense\/","title":{"rendered":"Connexion VPN site \u00e0 site avec Wireguard sous pfSense"},"content":{"rendered":"\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"800\" height=\"400\" src=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/wireguard-vpn-protocol.jpg\" alt=\"\" class=\"wp-image-1630\" srcset=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/wireguard-vpn-protocol.jpg 800w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/wireguard-vpn-protocol-300x150.jpg 300w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/wireguard-vpn-protocol-768x384.jpg 768w\" sizes=\"auto, (max-width: 800px) 100vw, 800px\" \/><\/figure>\n\n\n\n<p>WireGuard est un outil VPN plus rapide, plus simple et plus l\u00e9ger qu&rsquo;un outil comme OpenVPN. Alors qu&rsquo;OpenVPN a l&rsquo;avantage de la long\u00e9vit\u00e9.<\/p>\n\n\n\n<p>Il est l&rsquo;un des protocoles VPN des plus r\u00e9cent et des plus rapide que beaucoup souhaitent essayer.<\/p>\n\n\n\n<p>Bien que nous abordions dans ce tutoriel la mani\u00e8re d&rsquo;installer WireGuard sur pfSense, sachez qu&rsquo;il s&rsquo;agit d&rsquo;un package assez r\u00e9cent et que pour cette raison vous pourriez rencontrer des probl\u00e8mes. Le processus ci-dessous \u00e0 tr\u00e8s bien fonctionn\u00e9 pour moi avec des versions \u00e0 jour. pfSense est actuellement en 2.7.2. et Wireguard en 0.2.0_2.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Comment configurer WireGuard sur pfSense<\/h2>\n\n\n\n<h3 class=\"wp-block-heading\">A. Installer WireGuard sur les routeurs pfSense<\/h3>\n\n\n\n<p>La premi\u00e8re chose \u00e0 faire est d&rsquo;installer le package pour WireGuard sur les routeurs pfSense.<\/p>\n\n\n\n<p>Suivez les instructions ci-dessous pour installer le package WireGuard :<\/p>\n\n\n\n<p>1. Ouvrez le gestionnaire de paquets (<strong>Package Manager<\/strong>) depuis <strong>System <\/strong>et recherchez <strong><em>WireGuard<\/em><\/strong>,<\/p>\n\n\n\n<figure class=\"wp-block-image size-medium\"><img loading=\"lazy\" decoding=\"async\" width=\"300\" height=\"257\" src=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard1-1-300x257.png\" alt=\"\" class=\"wp-image-1632\" srcset=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard1-1-300x257.png 300w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard1-1.png 421w\" sizes=\"auto, (max-width: 300px) 100vw, 300px\" \/><\/figure>\n\n\n\n<p>2. Recherchez <strong>WireGuard <\/strong>puis installez la derni\u00e8re version du paquet.<\/p>\n\n\n\n<p>Le serveur WireGuard sera alors install\u00e9.<\/p>\n\n\n\n<ul start=\"2\" class=\"wp-block-list\">\n<li><\/li>\n<\/ul>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"389\" src=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard2-1-1024x389.png\" alt=\"\" class=\"wp-image-1634\" srcset=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard2-1-1024x389.png 1024w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard2-1-300x114.png 300w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard2-1-768x292.png 768w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard2-1.png 1152w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p>3. Une fois le package install\u00e9, s\u00e9lectionnez <strong>VPN <\/strong>puis <strong>WireGuard<\/strong>.<\/p>\n\n\n\n<ul start=\"3\" class=\"wp-block-list\">\n<li><\/li>\n<\/ul>\n\n\n\n<h3 class=\"wp-block-heading has-medium-font-size\">B. Configurer WireGuard sur la partie serveur<\/h3>\n\n\n\n<h4 class=\"wp-block-heading\">B.1. Cr\u00e9ation du tunnel<\/h4>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"164\" height=\"181\" src=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard33.png\" alt=\"\" class=\"wp-image-1636\"\/><\/figure>\n\n\n\n<p>1. Et sous la section <strong>Tunnels <\/strong>, s\u00e9lectionnez \u00ab\u00a0<strong>Add un Tunnel<\/strong>\u00ab\u00a0.<\/p>\n\n\n\n<ol class=\"wp-block-list\">\n<li><\/li>\n<\/ol>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"359\" src=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard44-1024x359.png\" alt=\"\" class=\"wp-image-1637\" srcset=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard44-1024x359.png 1024w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard44-300x105.png 300w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard44-768x269.png 768w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard44.png 1168w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p>2. Dans la&nbsp;<strong>configuration du tunnel,<\/strong>&nbsp;d\u00e9finissez la description sur&nbsp;le nom que vous souhaiter,&nbsp;le&nbsp;<strong>port d&rsquo;\u00e9coute<\/strong>&nbsp;sur&nbsp;<strong>51820,<\/strong>&nbsp;puis&nbsp;<strong>g\u00e9n\u00e9rez<\/strong>&nbsp;des cl\u00e9s priv\u00e9es et publiques. <\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"332\" src=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard55-1024x332.png\" alt=\"\" class=\"wp-image-1639\" srcset=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard55-1024x332.png 1024w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard55-300x97.png 300w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard55-768x249.png 768w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard55.png 1137w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p>Enregistrer le tunnel sans toucher aux autres options.<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"204\" height=\"36\" src=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/image-2.png\" alt=\"\" class=\"wp-image-1693\"\/><\/figure>\n\n\n\n<p>3. Allez dans le menu <strong>Settings<\/strong>, Cochez <strong>Enable WireGuard<\/strong> et faire <strong>Save<\/strong>.<\/p>\n\n\n\n<figure class=\"wp-block-image size-full is-resized\"><img loading=\"lazy\" decoding=\"async\" width=\"915\" height=\"535\" src=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard91-2.jpg\" alt=\"\" class=\"wp-image-1663\" style=\"width:622px;height:auto\" srcset=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard91-2.jpg 915w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard91-2-300x175.jpg 300w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard91-2-768x449.jpg 768w\" sizes=\"auto, (max-width: 915px) 100vw, 915px\" \/><\/figure>\n\n\n\n<p>4. Puis cliquez sur \u00ab\u00a0<strong>Apply Changes<\/strong>\u00ab\u00a0<\/p>\n\n\n\n<figure class=\"wp-block-image size-large is-resized\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"374\" src=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard10-1024x374.png\" alt=\"\" class=\"wp-image-1650\" style=\"width:802px;height:auto\" srcset=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard10-1024x374.png 1024w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard10-300x110.png 300w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard10-768x281.png 768w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard10.png 1147w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<h4 class=\"wp-block-heading\">B.2. Configuration de l&rsquo;interface WireGuard du tunnel<\/h4>\n\n\n\n<p>1. Allez dans le Menu \u00ab\u00a0<strong>Interfaces<\/strong>\u00a0\u00bb &gt; \u00ab\u00a0<strong>Assignments<\/strong>\u00ab\u00a0<\/p>\n\n\n\n<figure class=\"wp-block-image size-full is-resized\"><img loading=\"lazy\" decoding=\"async\" width=\"162\" height=\"169\" src=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard112.png\" alt=\"\" class=\"wp-image-1652\" style=\"width:121px;height:auto\"\/><\/figure>\n\n\n\n<p style=\"font-size:15px\">2. Faire \u00ab\u00a0<strong>+Add<\/strong>\u00a0\u00bb et s\u00e9lectionner \u00ab\u00a0<strong>tun_wg0<\/strong>\u00a0\u00bb (le nom peut diff\u00e9rer si vous avez plusieurs tunnels)<\/p>\n\n\n\n<figure class=\"wp-block-image size-large is-resized\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"272\" src=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard121-1024x272.png\" alt=\"\" class=\"wp-image-1653\" style=\"width:678px;height:auto\" srcset=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard121-1024x272.png 1024w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard121-300x80.png 300w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard121-768x204.png 768w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard121.png 1083w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p>3. Cliquez sur \u00ab\u00a0<strong>OPT1<\/strong>\u00ab\u00a0<\/p>\n\n\n\n<figure class=\"wp-block-image size-full is-resized\"><img loading=\"lazy\" decoding=\"async\" width=\"1006\" height=\"439\" src=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard131.png\" alt=\"\" class=\"wp-image-1655\" style=\"width:575px;height:auto\" srcset=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard131.png 1006w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard131-300x131.png 300w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard131-768x335.png 768w\" sizes=\"auto, (max-width: 1006px) 100vw, 1006px\" \/><\/figure>\n\n\n\n<p>4. Configurer l&rsquo;interface WireGuard<\/p>\n\n\n\n<ol class=\"wp-block-list\">\n<li>Cochez \u00ab\u00a0<strong>Enable Interface<\/strong>\u00ab\u00a0,<\/li>\n\n\n\n<li>En description, mettre \u00ab\u00a0<strong>WG_VPN<\/strong>\u00ab\u00a0,<\/li>\n\n\n\n<li>Dans la configuration IPv4 mettre \u00ab\u00a0<strong>Static IPv4<\/strong>\u00ab\u00a0,<\/li>\n\n\n\n<li>S\u00e9lectionnez <strong>None<\/strong> sur la case IPv6 si non utilis\u00e9e<\/li>\n\n\n\n<li>D\u00e9finissez l&rsquo;adresse IP sur&nbsp;\u00ab\u00a0<strong>10.6.210.2&Prime;<\/strong>, masque <strong>\u00ab\u00a0\/24<\/strong>\u00a0\u00bb sous Static IPv4 Configuration<br><em>Si vous souhaitez utiliser une plage de sous-r\u00e9seaux diff\u00e9rente, vous pouvez remplacer par celle que vous souhaitez (\u00e0 condition qu&rsquo;elle ne soit pas actuellement utilis\u00e9e).<\/em><\/li>\n\n\n\n<li>Faire <strong>Save <\/strong>via le bouton tout en bas.<\/li>\n<\/ol>\n\n\n\n<blockquote class=\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\">\n<p>Note : nous indiquons ici une valeur de MSS sp\u00e9cifique. Apr\u00e8s avoir \u00e9tablie la connexion VPN et que tout fonctionnait comme il faut, nous n&rsquo;arrvions pas \u00e0 acc\u00e9der \u00e0 chaque interface du Webconfigurator du pfSense distant (respectivement 192.168.12.1 \u00e0 partir du r\u00e9seau 192.168.13.0\/24 et vice versa). Le souci est du \u00e0 une taille de paquet ou de segment de donn\u00e9es trop importante.<br>La valeur MSS \u00e0 1380 a permis de r\u00e9gler le souci. Nous avons aussi noter une nette augmentation des d\u00e9bits une fois la valeur MSS ajust\u00e9e.<br><strong>Cette donn\u00e9e MSS, tout comme la valeur MTU, est \u00e0 ajuster selon vos besoins.<\/strong><\/p>\n<\/blockquote>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"794\" height=\"756\" src=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/WG-VPN-1.png\" alt=\"\" class=\"wp-image-1699\" srcset=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/WG-VPN-1.png 794w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/WG-VPN-1-300x286.png 300w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/WG-VPN-1-768x731.png 768w\" sizes=\"auto, (max-width: 794px) 100vw, 794px\" \/><\/figure>\n\n\n\n<p>5.Faire \u00ab\u00a0<strong>Apply Changes<\/strong>\u00ab\u00a0<\/p>\n\n\n\n<figure class=\"wp-block-image size-full is-resized\"><img loading=\"lazy\" decoding=\"async\" width=\"904\" height=\"74\" src=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard15.jpg\" alt=\"\" class=\"wp-image-1659\" style=\"width:684px;height:auto\" srcset=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard15.jpg 904w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard15-300x25.jpg 300w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard15-768x63.jpg 768w\" sizes=\"auto, (max-width: 904px) 100vw, 904px\" \/><\/figure>\n\n\n\n<h4 class=\"wp-block-heading\">B.3. Configuration des r\u00e8gles de pare-feu<\/h4>\n\n\n\n<p>Maintenant qu&rsquo;un tunnel et une interface WireGuard ont \u00e9t\u00e9 cr\u00e9\u00e9s, nous devons cr\u00e9er des r\u00e8gles de pare-feu pour WireGuard sur pfSense. Une pour notre interface WG_VPN et une pour le WAN (pour autoriser le trafic sur le port 51820).<\/p>\n\n\n\n<p>1. R\u00e8gle Wireguard<\/p>\n\n\n\n<p><strong>Trafic Any\/Any en IPv4<\/strong>, autoriser tout le traffic pour Wireguard<\/p>\n\n\n\n<ol class=\"wp-block-list\">\n<li><\/li>\n<\/ol>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"257\" src=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/image-3-1024x257.png\" alt=\"\" class=\"wp-image-1694\" srcset=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/image-3-1024x257.png 1024w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/image-3-300x75.png 300w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/image-3-768x193.png 768w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/image-3.png 1152w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p> 2. R\u00e8gle WAN<\/p>\n\n\n\n<p><strong>Trafic 51820\/udp@WAN address<\/strong>, ce qui permet aux clients de se connecter au serveur WireGuard<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"345\" src=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/image-5-1024x345.png\" alt=\"\" class=\"wp-image-1696\" srcset=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/image-5-1024x345.png 1024w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/image-5-300x101.png 300w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/image-5-768x259.png 768w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/image-5.png 1156w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p>3. R\u00e8gle LAN<\/p>\n\n\n\n<p><strong>Trafic Any\/Any en IPv4<\/strong>, autoriser tout le traffic sur le LAN<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"316\" src=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/image-6-1024x316.png\" alt=\"\" class=\"wp-image-1697\" srcset=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/image-6-1024x316.png 1024w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/image-6-300x93.png 300w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/image-6-768x237.png 768w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/image-6.png 1157w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p>4. R\u00e8gle WG_VPN<\/p>\n\n\n\n<p><strong>Trafic Any\/Any en IPv4<\/strong>, autoriser tout le trafic sur le WG_VPN<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"269\" src=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/image-7-1024x269.png\" alt=\"\" class=\"wp-image-1698\" srcset=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/image-7-1024x269.png 1024w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/image-7-300x79.png 300w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/image-7-768x202.png 768w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/image-7.png 1158w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p>La partie de configuration du tunnel est presque termin\u00e9e mais il reste \u00e0 cr\u00e9er le \u00ab\u00a0peer\u00a0\u00bb. Cela sera trait\u00e9 apr\u00e8s avoir cr\u00e9er le tunnel c\u00f4t\u00e9 client.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">C. Configurer WireGuard c\u00f4t\u00e9 Client<\/h2>\n\n\n\n<h3 class=\"wp-block-heading\">C.1. Cr\u00e9ation du tunnel<\/h3>\n\n\n\n<p>Comme pour le serveur, nous allons cr\u00e9\u00e9 le tunnel VPN du client<\/p>\n\n\n\n<p>1. Sous la section&nbsp;<strong>Tunnels<\/strong>&nbsp;, s\u00e9lectionnez <strong>Add Tunnel<\/strong><\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"359\" src=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/image-18.png\" alt=\"\" class=\"wp-image-1733\" srcset=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/image-18.png 1024w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/image-18-300x105.png 300w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/image-18-768x269.png 768w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p>2. Dans la&nbsp;<strong>configuration du tunnel,<\/strong>&nbsp;d\u00e9finissez la description sur&nbsp;le nom que vous souhaiter,&nbsp;le&nbsp;<strong>port d\u2019\u00e9coute<\/strong>&nbsp;sur&nbsp;<strong>51820,<\/strong>&nbsp;puis&nbsp;<strong>g\u00e9n\u00e9rez<\/strong>&nbsp;des cl\u00e9s priv\u00e9es et publiques.<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"332\" src=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard55-1024x332.png\" alt=\"\" class=\"wp-image-1639\" srcset=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard55-1024x332.png 1024w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard55-300x97.png 300w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard55-768x249.png 768w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard55.png 1137w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p>Enregistrer le tunnel sans toucher aux autres options.<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"204\" height=\"30\" src=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/TUNNEL1.1-1.png\" alt=\"\" class=\"wp-image-1701\"\/><\/figure>\n\n\n\n<p>2. Allez dans le menu <strong>Settings<\/strong>, Cochez <strong>Enable WireGuard<\/strong> et faire <strong>Save<\/strong>.<\/p>\n\n\n\n<figure class=\"wp-block-image size-full is-resized\"><img loading=\"lazy\" decoding=\"async\" width=\"915\" height=\"535\" src=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard91-2.jpg\" alt=\"\" class=\"wp-image-1663\" style=\"width:622px;height:auto\" srcset=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard91-2.jpg 915w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard91-2-300x175.jpg 300w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard91-2-768x449.jpg 768w\" sizes=\"auto, (max-width: 915px) 100vw, 915px\" \/><\/figure>\n\n\n\n<p>3. Puis cliquez sur \u00ab\u00a0<strong>Apply Changes<\/strong>\u00ab\u00a0<\/p>\n\n\n\n<figure class=\"wp-block-image size-large is-resized\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"374\" src=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard10-1024x374.png\" alt=\"\" class=\"wp-image-1650\" style=\"width:802px;height:auto\" srcset=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard10-1024x374.png 1024w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard10-300x110.png 300w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard10-768x281.png 768w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard10.png 1147w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<h4 class=\"wp-block-heading\">C.2. Configuration de l\u2019interface WireGuard du tunnel<\/h4>\n\n\n\n<p>1. Allez dans le Menu \u00ab\u00a0<strong>Interfaces<\/strong>\u00a0\u00bb et \u00ab\u00a0<strong>Assignments<\/strong>\u00ab\u00a0<\/p>\n\n\n\n<figure class=\"wp-block-image size-full is-resized\"><img loading=\"lazy\" decoding=\"async\" width=\"162\" height=\"169\" src=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard112.png\" alt=\"\" class=\"wp-image-1652\" style=\"width:121px;height:auto\"\/><\/figure>\n\n\n\n<p>2. Faire \u00ab\u00a0<strong>+Add<\/strong>\u00ab\u00a0. Comme pour la partie serveur <strong>s\u00e9lectionner<\/strong> le tunnel pour qui vous souhaiter ajouter une interface.  <\/p>\n\n\n\n<figure class=\"wp-block-image size-large is-resized\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"272\" src=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard121-1024x272.png\" alt=\"\" class=\"wp-image-1653\" style=\"width:678px;height:auto\" srcset=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard121-1024x272.png 1024w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard121-300x80.png 300w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard121-768x204.png 768w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard121.png 1083w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p>3. Cliquez sur \u00ab\u00a0<strong>OPT1<\/strong>\u00ab\u00a0<\/p>\n\n\n\n<figure class=\"wp-block-image size-full is-resized\"><img loading=\"lazy\" decoding=\"async\" width=\"1006\" height=\"439\" src=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard131.png\" alt=\"\" class=\"wp-image-1655\" style=\"width:575px;height:auto\" srcset=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard131.png 1006w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard131-300x131.png 300w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/Wireguard131-768x335.png 768w\" sizes=\"auto, (max-width: 1006px) 100vw, 1006px\" \/><\/figure>\n\n\n\n<p>4. Configurer l\u2019interface WireGuard<\/p>\n\n\n\n<ol class=\"wp-block-list\">\n<li>Cochez \u00ab&nbsp;<strong>Enable Interface<\/strong>\u00ab&nbsp;,<\/li>\n\n\n\n<li>En description, mettre \u00ab\u00a0<strong>WG_VPN<\/strong>\u00a0\u00bb&nbsp;,<\/li>\n\n\n\n<li>Dans la configuration IPv4 mettre <strong>\u00ab\u00a0Static IPv4<\/strong>\u00a0\u00bb&nbsp;,<\/li>\n\n\n\n<li>S\u00e9lectionnez&nbsp;<strong>None<\/strong>&nbsp;sur la case IPv6 si non utilis\u00e9e<\/li>\n\n\n\n<li>D\u00e9finissez l\u2019adresse IP sur&nbsp;\u00ab&nbsp;<strong>10.6.210.1\u2033<\/strong>, masque&nbsp;<strong>\u00ab&nbsp;\/24<\/strong>&nbsp;\u00bb sous Static IPv4 Configuration<br><em>Si vous souhaitez utiliser une plage de sous-r\u00e9seaux diff\u00e9rente, vous pouvez remplacer par celle que vous souhaitez (\u00e0 condition qu\u2019elle ne soit pas actuellement utilis\u00e9e).<\/em> <\/li>\n\n\n\n<li>Faire&nbsp;<strong>Save&nbsp;<\/strong>via le bouton tout en bas.<\/li>\n<\/ol>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"783\" height=\"757\" src=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/WG_VPN_CLIENT.png\" alt=\"\" class=\"wp-image-1702\" srcset=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/WG_VPN_CLIENT.png 783w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/WG_VPN_CLIENT-300x290.png 300w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/WG_VPN_CLIENT-768x742.png 768w\" sizes=\"auto, (max-width: 783px) 100vw, 783px\" \/><\/figure>\n\n\n\n<p>5.Faire \u00ab&nbsp;<strong>Apply Changes<\/strong>\u00ab\u00a0<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"904\" height=\"74\" src=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/image-19.png\" alt=\"\" class=\"wp-image-1736\" srcset=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/image-19.png 904w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/image-19-300x25.png 300w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/image-19-768x63.png 768w\" sizes=\"auto, (max-width: 904px) 100vw, 904px\" \/><\/figure>\n\n\n\n<h3 class=\"wp-block-heading\">C.3. Configuration des r\u00e8gles de pare-feu<\/h3>\n\n\n\n<p>Maintenant qu&rsquo;un tunnel et une interface WireGuard ont \u00e9t\u00e9 cr\u00e9\u00e9s, nous devons cr\u00e9er deux r\u00e8gles de pare-feu pour WireGuard sur pfSense. Une pour notre interface WG_VPN et une Wireguard<\/p>\n\n\n\n<blockquote class=\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\">\n<p>Notez que, contrairement \u00e0 la configuration serveur, il n&rsquo;y a pas besoin d&rsquo;autoriser l&rsquo;ouverture du port 51820 car c&rsquo;est notre client qui vient se connecter au serveur et pas le contraire.<\/p>\n<\/blockquote>\n\n\n\n<p>1. R\u00e8gle Wireguard<\/p>\n\n\n\n<p><strong>Trafic Any\/Any en IPv4<\/strong>, autoriser tout le traffic pour Wireguard <\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"782\" height=\"206\" src=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/image-10.png\" alt=\"\" class=\"wp-image-1704\" srcset=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/image-10.png 782w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/image-10-300x79.png 300w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/image-10-768x202.png 768w\" sizes=\"auto, (max-width: 782px) 100vw, 782px\" \/><\/figure>\n\n\n\n<p>2. R\u00e8gle WG_VPN<\/p>\n\n\n\n<p><strong>Trafic Any\/Any en IPv4<\/strong>, autoriser tout le trafic sur le WG_VPN<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"787\" height=\"214\" src=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/image-11.png\" alt=\"\" class=\"wp-image-1705\" srcset=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/image-11.png 787w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/image-11-300x82.png 300w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/image-11-768x209.png 768w\" sizes=\"auto, (max-width: 787px) 100vw, 787px\" \/><\/figure>\n\n\n\n<h3 class=\"wp-block-heading\">D. Configuration des PEER sur les deux tunnels<\/h3>\n\n\n\n<h4 class=\"wp-block-heading\">D.1. C\u00f4t\u00e9 client<\/h4>\n\n\n\n<p> 1. Aller dans <strong>VPN &gt; WIREGUARD &gt; PEERS<\/strong> puis cliquer sur \u00ab\u00a0<strong>Add Peer<\/strong>\u00ab\u00a0<\/p>\n\n\n\n<p>Renseigner les \u00e9l\u00e9ments de la Peer Configuration :<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Dans le champ <strong>Public key<\/strong>, renseigner celle qui a \u00e9t\u00e9 g\u00e9n\u00e9r\u00e9e par le tunnel coter <strong>serveur<\/strong><\/li>\n\n\n\n<li>Dans le champs <strong>EndPoint<\/strong> renseigner l&rsquo;IP public du pfSense c\u00f4t\u00e9 serveur<\/li>\n<\/ul>\n\n\n\n<blockquote class=\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\">\n<p>Rappelons que c&rsquo;est notre \u00ab\u00a0client\u00a0\u00bb qui vient se connecter au \u00ab\u00a0serveur\u00a0\u00bb.<\/p>\n<\/blockquote>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"776\" height=\"768\" src=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/PEER-client-1.png\" alt=\"\" class=\"wp-image-1724\" srcset=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/PEER-client-1.png 776w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/PEER-client-1-300x297.png 300w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/PEER-client-1-768x760.png 768w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/PEER-client-1-80x80.png 80w\" sizes=\"auto, (max-width: 776px) 100vw, 776px\" \/><\/figure>\n\n\n\n<p>2. Dans la section <strong>Address Configuration<\/strong>, ajouter les r\u00e9seaux accessibles (depuis le bouton \u00ab\u00a0<strong>+Add Allowed IP<\/strong>\u00ab\u00a0) :<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>10.6.210.2 en \/32 qui correspond \u00e0 notre WG_VPN c\u00f4t\u00e9 serveur<\/li>\n\n\n\n<li>192.168.12.0 en \/24 qui correspond \u00e0 notre r\u00e9seau c\u00f4t\u00e9 serveur<\/li>\n\n\n\n<li>192.168.13.0 en \/24 qui correspond \u00e0 notre r\u00e9seau c\u00f4t\u00e9 client<\/li>\n<\/ul>\n\n\n\n<p>3. Sauvegarde avec <strong>Save Peer<\/strong><\/p>\n\n\n\n<h4 class=\"wp-block-heading\">D.2. C\u00f4t\u00e9 serveur<\/h4>\n\n\n\n<p>2. Aller dans <strong>VPN &gt; WIREGUARD &gt; PEERS<\/strong> puis cliquer sur \u00ab\u00a0<strong>Add Peer<\/strong>\u00ab\u00a0<\/p>\n\n\n\n<p>Renseigner les \u00e9l\u00e9ments de la Peer Configuration :<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Dans le champ <strong>Public key<\/strong>, renseigner celle qui a \u00e9t\u00e9 g\u00e9n\u00e9r\u00e9e par le tunnel coter <strong>serveur<\/strong><\/li>\n\n\n\n<li>A la place du champ EndPoint, vous devez cocher \u00ab\u00a0<strong>Dynamic<\/strong>\u00a0\u00bb car il n&rsquo;y a pas \u00e0 sp\u00e9cifier l&rsquo;adresse IP du client : c&rsquo;est notre client qui vient se connecter au serveur, pas le contraire.<\/li>\n<\/ul>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"782\" height=\"713\" src=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/PEER-server-1.png\" alt=\"\" class=\"wp-image-1726\" srcset=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/PEER-server-1.png 782w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/PEER-server-1-300x274.png 300w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/PEER-server-1-768x700.png 768w\" sizes=\"auto, (max-width: 782px) 100vw, 782px\" \/><\/figure>\n\n\n\n<p>2. Dans la section <strong>Address Configuration<\/strong>, ajouter les r\u00e9seaux accessibles (depuis le bouton \u00ab\u00a0<strong>+Add Allowed IP<\/strong>\u00ab\u00a0) :<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>10.6.210.1 en \/32 qui correspond \u00e0 notre WG_VPN c\u00f4t\u00e9 client<\/li>\n\n\n\n<li>192.168.13.0 en \/24 qui correspond \u00e0 notre r\u00e9seau c\u00f4t\u00e9 client<\/li>\n\n\n\n<li>192.168.12.0 en \/24 qui correspond \u00e0 notre r\u00e9seau c\u00f4t\u00e9 serveur<\/li>\n<\/ul>\n\n\n\n<p>3. Sauvegarde avec <strong>Save Peer<\/strong><\/p>\n\n\n\n<h2 class=\"wp-block-heading\">E. Cr\u00e9ation des Gateway<\/h2>\n\n\n\n<h4 class=\"wp-block-heading\">E.1. Gateway c\u00f4t\u00e9 serveur<\/h4>\n\n\n\n<p>1. Faire <strong>Add<\/strong> et sp\u00e9cifier les param\u00e8tres suivants :<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Nom : \u00ab\u00a0<strong>VPN_GW<\/strong>\u00ab\u00a0<\/li>\n\n\n\n<li>Interface : \u00ab\u00a0<strong>WG_VPN<\/strong>\u00ab\u00a0<\/li>\n\n\n\n<li>IP : <strong>10.6.210.2<\/strong><\/li>\n<\/ul>\n\n\n\n<blockquote class=\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\">\n<p>Note : La Gateway c\u00f4te client doit \u00eatre l&rsquo;IP de la pate WG_VPN c\u00f4te serveur.<\/p>\n<\/blockquote>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"781\" height=\"365\" src=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/GW.png\" alt=\"\" class=\"wp-image-1709\" srcset=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/GW.png 781w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/GW-300x140.png 300w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/GW-768x359.png 768w\" sizes=\"auto, (max-width: 781px) 100vw, 781px\" \/><\/figure>\n\n\n\n<h4 class=\"wp-block-heading\">E.1. Gateway c\u00f4t\u00e9 client<\/h4>\n\n\n\n<p>1. Faire <strong>Add<\/strong> et sp\u00e9cifier les param\u00e8tres suivants :<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Nom : \u00ab\u00a0<strong>VPN_GW<\/strong>\u00ab\u00a0<\/li>\n\n\n\n<li>Interface : \u00ab\u00a0<strong>WG_VPN<\/strong>\u00ab\u00a0<\/li>\n\n\n\n<li>IP : <strong>10.6.210.1<\/strong><\/li>\n<\/ul>\n\n\n\n<blockquote class=\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\">\n<p>Note : La Gateway c\u00f4te serveur doit \u00eatre l&rsquo;IP de la patte WG_VPN c\u00f4te client.<\/p>\n<\/blockquote>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"799\" height=\"414\" src=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/GW1.png\" alt=\"\" class=\"wp-image-1711\" srcset=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/GW1.png 799w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/GW1-300x155.png 300w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/GW1-768x398.png 768w\" sizes=\"auto, (max-width: 799px) 100vw, 799px\" \/><\/figure>\n\n\n\n<h3 class=\"wp-block-heading\">F. Cr\u00e9ation des routes<\/h3>\n\n\n\n<h4 class=\"wp-block-heading\">F.1. C\u00f4t\u00e9 Serveur<\/h4>\n\n\n\n<p>1. System &gt; Routing &gt; Static Routes puis +<strong>Add<\/strong><\/p>\n\n\n\n<p>Renseignez les information de la route :<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Network : r\u00e9seau quel on veut acc\u00e9der (ici 192.168.13.0\/24, soit le r\u00e9seau \u00ab\u00a0client\u00a0\u00bb)<\/li>\n\n\n\n<li>Gateway :  Indiquer la passerelle du client (ici 10.6.210.1)<\/li>\n<\/ul>\n\n\n\n<p>2. Sauvegarder avec <strong>Save<\/strong><\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"798\" height=\"222\" src=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/image-16.png\" alt=\"\" class=\"wp-image-1712\" srcset=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/image-16.png 798w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/image-16-300x83.png 300w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/image-16-768x214.png 768w\" sizes=\"auto, (max-width: 798px) 100vw, 798px\" \/><\/figure>\n\n\n\n<h4 class=\"wp-block-heading\">F.2. C\u00f4t\u00e9 Client<\/h4>\n\n\n\n<p>1. System &gt; Routing &gt; Static Routes puis +<strong>Add<\/strong><\/p>\n\n\n\n<p>Renseignez les information de la route :<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li>Network : r\u00e9seau quel on veut acc\u00e9der (ici 192.168.12.0\/24, soit le r\u00e9seau \u00ab\u00a0serveur\u00a0\u00bb)<\/li>\n\n\n\n<li>Gateway : Indiquer la passerelle du client (ici 10.6.210.2)<\/li>\n<\/ul>\n\n\n\n<p>2. Sauvegarder avec <strong>Save<\/strong><\/p>\n\n\n\n<figure class=\"wp-block-image size-full is-resized\"><img loading=\"lazy\" decoding=\"async\" width=\"796\" height=\"269\" src=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/image-17.png\" alt=\"\" class=\"wp-image-1713\" style=\"width:640px;height:auto\" srcset=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/image-17.png 796w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/image-17-300x101.png 300w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/image-17-768x260.png 768w\" sizes=\"auto, (max-width: 796px) 100vw, 796px\" \/><\/figure>\n\n\n\n<h2 class=\"wp-block-heading\">V\u00e9rifier le bon fonctionnement du VPN WireGuard<\/h2>\n\n\n\n<p>Aller dans Status &gt; WireGuard<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img loading=\"lazy\" decoding=\"async\" width=\"975\" height=\"330\" src=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/image-20.png\" alt=\"\" class=\"wp-image-1770\" srcset=\"https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/image-20.png 975w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/image-20-300x102.png 300w, https:\/\/www.delixirpro.com\/blog\/wp-content\/uploads\/2024\/08\/image-20-768x260.png 768w\" sizes=\"auto, (max-width: 975px) 100vw, 975px\" \/><\/figure>\n\n\n\n<p>La connexion en vert indique que le VPN est actif et connect\u00e9.<\/p>\n\n\n\n<p><\/p>\n","protected":false},"excerpt":{"rendered":"<p>WireGuard est un outil VPN plus rapide, plus simple et plus l\u00e9ger qu&rsquo;un outil comme OpenVPN. Alors qu&rsquo;OpenVPN a l&rsquo;avantage de la long\u00e9vit\u00e9. Il est l&rsquo;un des protocoles VPN des plus r\u00e9cent et des&#46;&#46;&#46;<\/p>\n","protected":false},"author":1,"featured_media":1630,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[4,8,40],"tags":[27,82,184],"class_list":["post-1625","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-securite","category-tech-tips","category-tutoriel","tag-pfsense","tag-vpn","tag-wireguard"],"_links":{"self":[{"href":"https:\/\/www.delixirpro.com\/blog\/wp-json\/wp\/v2\/posts\/1625","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.delixirpro.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.delixirpro.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.delixirpro.com\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.delixirpro.com\/blog\/wp-json\/wp\/v2\/comments?post=1625"}],"version-history":[{"count":43,"href":"https:\/\/www.delixirpro.com\/blog\/wp-json\/wp\/v2\/posts\/1625\/revisions"}],"predecessor-version":[{"id":1777,"href":"https:\/\/www.delixirpro.com\/blog\/wp-json\/wp\/v2\/posts\/1625\/revisions\/1777"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.delixirpro.com\/blog\/wp-json\/wp\/v2\/media\/1630"}],"wp:attachment":[{"href":"https:\/\/www.delixirpro.com\/blog\/wp-json\/wp\/v2\/media?parent=1625"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.delixirpro.com\/blog\/wp-json\/wp\/v2\/categories?post=1625"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.delixirpro.com\/blog\/wp-json\/wp\/v2\/tags?post=1625"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}