• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

WireGuard, Two Firewall Entries

Scheduled Pinned Locked Moved WireGuard
6 Posts 3 Posters 921 Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • A
    arrmo
    last edited by Jan 28, 2021, 3:46 AM

    Hi,

    Likely a dumb question, but just not fitting with my brain (yet) 🤣 . In my Firewall Rules, I see two WireGuard entries ... seems like one is interface, the other the "application" (for lack of a better term). Should there be? And what is the difference / which one is needed?

    Thanks!

    1 Reply Last reply Reply Quote 0
    • G
      Griffo
      last edited by Jan 28, 2021, 6:33 AM

      @arrmo It's explained in the doco.
      https://docs.netgate.com/pfsense/en/latest/vpn/wireguard/rules.html

      The Group rules are processed first, then the interface rules. Just like floating rules and interface rules on the firewall.

      So I think for inbound traffic the order will be Floating -> Wireguard -> wgx but outbound is a little more complicated.

      A 2 Replies Last reply Jan 28, 2021, 5:31 PM Reply Quote 1
      • A
        arrmo @Griffo
        last edited by Jan 28, 2021, 5:31 PM

        @griffo That makes sense, thanks! So if I pass at the Group level, no need for a rule "below" that (i.e. interface).

        Appreciate it!

        1 Reply Last reply Reply Quote 0
        • A
          arrmo @Griffo
          last edited by Jan 29, 2021, 5:37 PM

          @griffo said in WireGuard, Two Firewall Entries:

          The Group rules are processed first, then the interface rules. Just like floating rules and interface rules on the firewall.

          Just to clarify (make sure I have it correct 🤣). It seems like the rules are processed Left to Right, as they show up in the webConfigurator. Correct?

          Thanks!

          C 1 Reply Last reply Jan 29, 2021, 7:02 PM Reply Quote 0
          • C
            cmcdonald Netgate Developer @arrmo
            last edited by Jan 29, 2021, 7:02 PM

            @arrmo The order is somewhat arbitrary, fwiw you can change the ordering to alphabetical if you want in General Setup settings.

            Thttps://docs.netgate.com/pfsense/en/latest/nat/process-order.html

            Need help fast? https://www.netgate.com/support

            A 1 Reply Last reply Jan 29, 2021, 8:21 PM Reply Quote 1
            • A
              arrmo @cmcdonald
              last edited by Jan 29, 2021, 8:21 PM

              @vbman213 That link helps, appreciate it!

              1 Reply Last reply Reply Quote 0
              1 out of 6
              • First post
                1/6
                Last post
              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
                This community forum collects and processes your personal information.
                consent.not_received