Action - Pass, Block, Reject - no "Match" - 26.7.4_1

Started by devl_ish, Today at 12:53:06 PM

Previous topic - Next topic
Hi all - I'm following https://docs.opnsense.org/manual/how-tos/wireguard-s2s.html and stuck on Step 4b.

This calls for a Match rule for fragmentation prevention, but under the [Action] dropdown I only have the usual Pass, Block and Reject, even when showing advanced options. I've probably overlooked something stupid, what would hide the "Match" option?

Have just done an upgrade chain from 25.7 all the way to most current as of today, 26.7.4_1.

The documentation was updated too early on that subject, maybe we should revert it for now.  Sorry about that.


Cheers,
Franco

Thanks, are you able to provide a lead (few sentences) on how to accomplish it in the interim, while formal docs are being updated?


Hi devl_ish

I assume you can use "pass" instead of "match" like documented under Rule normalization:
QuoteSelect the Match action to apply normalization without deciding whether traffic is passed or blocked. A Pass rule can apply the same options while also allowing traffic. Match rules follow the normal firewall rule ordering; they are usually not quick so evaluation can continue after their options have been applied.

Stay safe,
Wrigleys

No, the documentation is too new. It doesnt exist yet. But we fix that soon. So long you can look at the direct branch here:

https://github.com/opnsense/docs/blob/master/source/manual/how-tos/wireguard-client.rst
Hardware:
DEC740