How to add a firewall rule based on a wireguard interface

Started by ns, October 07, 2022, 10:41:13 AM

Previous topic - Next topic
The firewall rule interface drop down menu allows to select the different physical interfaces, "IPSec", but does not allow to match on a wireguard interface.

From the shell I can see that there is a wg1 interface, so in theory opnsense could match on it.

My use case: I want to whitelist access to specific ports from the connected VPN (road warrior) clients to other devices opnsense is connected to.

Go to Interfaces > Assignments and create an e.g. WG1 there. Then you can use the WireGuard interface in rules.
Deciso DEC750
People who think they know everything are a great annoyance to those of us who do. (Isaac Asimov)