Run Defguard Gateway on VyOS

Defguard Gateway is now officially supported as a container on VyOS, running on your router host with full host networking and no native package install required.

VyOS is a popular open-source router, firewall and VPN gateway OS - and now we officially support running Defguard Gateway directly on it as a container, with no native package install required.

How it works

Thanks to VyOS’s built-in container support, Defguard Gateway runs right on your router host with full host networking. From there it:

  • manages WireGuard® interfaces natively
  • manages nftables ACL rules natively
  • keeps its persistent state, such as adoption certificates, in a mounted VyOS volume

That means no separate host to maintain alongside your router, and no drift between the box enforcing your rules and the box terminating your tunnels.

Read how to run Defguard Gateway on VyOS: https://docs.defguard.net/2.1/deployment-strategies/running-gateway-on-vyos