Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Error on Tailscale Interface

    Scheduled Pinned Locked Moved General pfSense Questions
    8 Posts 2 Posters 378 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • D
      Daz22
      last edited by

      Hello All,

      I’m getting this error from my Tailscale interface. I’ve shutdown my interface until I can get some answers. TIA!

      There were error(s) loading the rules: /tmp/rules.debug:320: macro 'TAILSCALE__NETWORK' not defined - The line in question reads [320]: pass in quick on $Tailscale $GWWAN_DHCP inet from $TAILSCALE__NETWORK to any ridentifier 1735523987 keep state label "USER_RULE" label "id:1735523987" label "gw:WAN_DHCP"
      @ 2025-01-08 20:21:13

      1 Reply Last reply Reply Quote 0
      • stephenw10S
        stephenw10 Netgate Administrator
        last edited by

        Did you assign the tailscale interface? It should not be assigned and doing so can cause a number of problems.

        D 1 Reply Last reply Reply Quote 0
        • D
          Daz22 @stephenw10
          last edited by

          @stephenw10 This is what I have in the Firewall tab.
          Screenshot 2025-01-22 at 1.40.32 PM.png

          1 Reply Last reply Reply Quote 0
          • stephenw10S
            stephenw10 Netgate Administrator
            last edited by

            That's the firewall rules for it but did you assign the interface?

            Is Tailscale even enabled? If not that system alias isn't valid. Just disable the rule or set the source to the subnet(s) directly without the alias.

            D 1 Reply Last reply Reply Quote 0
            • D
              Daz22 @stephenw10
              last edited by

              @stephenw10 Yes tailscale is enabled. I’m not sure about assigning the interface. Can you point me to a guide?

              1 Reply Last reply Reply Quote 0
              • stephenw10S
                stephenw10 Netgate Administrator
                last edited by

                If you go to Interfaces > Assignments do you see it assigned as an interface?

                But either way setting the source to the subnet rather than the system alias will allow the ruleset to load.

                D 1 Reply Last reply Reply Quote 0
                • D
                  Daz22 @stephenw10
                  last edited by

                  @stephenw10 So I have to give this an IP addy just like any other interface? I thought it was just blank!

                  1 Reply Last reply Reply Quote 0
                  • stephenw10S
                    stephenw10 Netgate Administrator
                    last edited by

                    For whatever reason the system alias TAILSCALE__NETWORK is not being populated so the firewall rules cannot be loaded.

                    So if you replace those in your firewall rules with the actual subnet it will then be valid and load.

                    1 Reply Last reply Reply Quote 0
                    • First post
                      Last post
                    Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.