1
24.7 Production Series / Re: os-wireguard (missing); but working?!
« on: August 27, 2024, 09:56:09 pm »
thank you both for taking the time to respond
This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.
Name
Version Size Tier Repository Comment
os-wireguard (missing) N/A N/A N/A N/A N/A
***GOT REQUEST TO INSTALL***
Currently running OPNsense 24.7.2 at Tue Aug 27 21:19:10 CEST 2024
Updating OPNsense repository catalogue...
OPNsense repository is up to date.
All repositories are up to date.
pkg: No packages available to install matching 'os-wireguard' have been found in the repositories
Checking integrity... done (0 conflicting)
Nothing to do.
***DONE***
Sorry if IU am being a bit dense here somewhere, but I'd love to actually understand this now.
Nope. The "allow all out" rule is for traffic that did never come in anywhere. Like outbound DNS requests or NTP requests originating on the firewall itself. Download of updates. ICMP echo requests from gateway monitoring. These.
Hence the description: "let out anything from firewall host itself"
What exactly is concerning you about those rules? I believe it's required for NAT functionality. Also, did you happen to notice the rule direction?
Protocol Source Port Destination Port Gateway # Schedule Description
IPv4+6* * * * * * * * let out anything from firewall host itself
Line 272: <interfaces>opt2,lan</interfaces>
Line 412: <opt2>
Line 422: </opt2>
Line 484: <opt2>
Line 517: </opt2>
Line 585: <network>opt2</network>
Line 1243: <network>opt2</network>
Line 1669: <interface>opt2</interface>
Line 1677: <network>opt2</network>
Line 1696: <interface>opt2</interface>
Line 1704: <network>opt2</network>
Line 1723: <interface>opt2</interface>
Line 1730: <network>opt2</network>
Line 1748: <interface>opt2</interface>
Line 1755: <network>opt2</network>
Line 1774: <interface>opt2</interface>
Line 1781: <network>opt2</network>
Line 1800: <interface>opt2</interface>
Line 1808: <network>opt2</network>
Line 1827: <interface>opt2</interface>
Line 1835: <network>opt2</network>
Line 1854: <interface>opt2</interface>
Line 1862: <network>opt2</network>
Line 1881: <interface>opt2</interface>
Line 1889: <network>opt2</network>
Line 1908: <interface>opt2</interface>
Line 1916: <network>opt2</network>
Line 1935: <interface>opt2</interface>
Line 1944: <network>opt2</network>
Line 1963: <interface>opt2</interface>
Line 1969: <network>opt2</network>
Line 1988: <interface>opt2</interface>
Line 1995: <network>opt2</network>
Line 2014: <interface>opt2</interface>
Line 2040: <interface>opt2</interface>
Line 2066: <interface>opt2</interface>
Line 2092: <interface>opt2</interface>
Line 2119: <interface>opt2</interface>
Line 2125: <network>opt2</network>
Line 2618: <interface>opt3,opt2,opt1,lan</interface>
Line 2626: <interfaceslistfilter>opt3,opt2,opt1,lan,wan</interfaceslistfilter>
Line 2628: <traffic_graphs_interfaces>opt2,opt1,lan,wan</traffic_graphs_interfaces>
Line 3587: <opt2>
Line 3612: </opt2>
Line 3707: <iface_array>opt2</iface_array>