VyOS is a popular open-source router, firewall and VPN gateway OS - and now we officially support running Defguard Gateway directly on it as a container, with no native package install required.
How it works
Thanks to VyOS’s built-in container support, Defguard Gateway runs right on your router host with full host networking. From there it:
- manages WireGuard® interfaces natively
- manages nftables ACL rules natively
- keeps its persistent state, such as adoption certificates, in a mounted VyOS volume
That means no separate host to maintain alongside your router, and no drift between the box enforcing your rules and the box terminating your tunnels.
Read how to run Defguard Gateway on VyOS: https://docs.defguard.net/2.1/deployment-strategies/running-gateway-on-vyos