Skip to content

Commit 13875a2

Browse files
author
Michał Gryczka
committed
faq generation fixed
1 parent 3685233 commit 13875a2

14 files changed

+61
-604
lines changed

src/content/faq/acls.mdx

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,6 +1,6 @@
11
---
22
title: Does Defguard support ACLs?
3-
order: 4
3+
order: 5
44
---
55

66
Yes, Defguard <a href="https://docs.defguard.net/enterprise/all-enteprise-features/access-control-list">supports Access Control Lists (ACLs)</a> starting from version 1.3. This feature enables administrators to define and manage precise access rules for network resources, specifying which users, groups, or devices can access particular destinations based on IP addresses, ports, and protocols. ACLs can be applied per location, allowing for granular control over network access. Additionally, administrators can set default policies (allow or deny) for unspecified traffic, ensuring a secure and tailored network environment.

src/content/faq/audit-logging.mdx

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -10,4 +10,4 @@ The event log supports **streaming events to external SIEM systems**, such as:
1010
* **Vector:** A lightweight observability pipeline program, enabling data forwarding to monitoring systems (Datadog, New Relic, Grafana Loki, Prometheus, InfluxDB, ClickHouse), SIEM and logging systems (ElasticSearch, Splunk HEC, Graylog, Mezmo, Axiom), and cloud services (AWS CloudWatch, Kinesis, S3, SNS/SQS; Google Cloud Pub/Sub, Monitoring, Storage).
1111
* **Logstash:** Open-source server-side software that ingests, processes, and forwards data for logging and analysis purposes.
1212

13-
[Audit log and SIEM integration guide](https://docs.defguard.net/about/features-overview)
13+
[Audit log and SIEM integration guide](https://docs.defguard.net/features/activity-log)

src/content/faq/cryptographics.mdx

Lines changed: 9 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,9 @@
1+
---
2+
title: What cryptographic algorithms does WireGuard use in Defguard?
3+
order: 1
4+
---
5+
WireGuard in Defguard uses modern and most secure algorithms, not supporting outdated or insecure algorithms like 3DES, Blowfish, or RSA. These are:
6+
7+
* **ChaCha20** (encryption)
8+
* **Poly1305** (authentication)
9+
* **Curve25519** (key exchange)

src/content/faq/defguard-wireguard.mdx

Lines changed: 0 additions & 10 deletions
Original file line numberDiff line numberDiff line change
@@ -9,13 +9,3 @@ Defguard uses the **WireGuard** protocol for VPN infrastructure access. It is **
99
* **High performance:** WireGuard operates in the system kernel (Linux kernel module), providing 2–5 times faster data transfer than OpenVPN and is significantly more CPU efficient than IPsec.
1010

1111
[Learn more about WireGuard and Zero-Trust VPN in the Defguard docs](https://docs.defguard.net/features/wireguard)
12-
13-
---
14-
15-
**What cryptographic algorithms does WireGuard use in Defguard?**
16-
17-
WireGuard in Defguard uses modern and most secure algorithms, not supporting outdated or insecure algorithms like 3DES, Blowfish, or RSA. These are:
18-
19-
* **ChaCha20** (encryption)
20-
* **Poly1305** (authentication)
21-
* **Curve25519** (key exchange)

src/content/faq/external-idp.mdx

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -12,4 +12,4 @@ Defguard is the only provider supporting multi-factor authentication using exter
1212
* **Zitadel**
1313
* Any other provider supporting the **OpenID Connect (OIDC)** protocol
1414

15-
[See all supported external SSO providers](https://docs.defguard.net/about/features-overview)
15+
[See all supported external SSO providers](https://docs.defguard.net/features/external-openid-providers)

src/content/faq/identity-provider.mdx

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -9,4 +9,4 @@ As an IdP, Defguard supports multi-factor authentication using **TOTP, EMAIL one
99

1010
Thanks to its built-in IdP, Defguard provides a single solution for **one login/password and MFA system for logging into business applications and remote access simultaneously**.
1111

12-
[Identity management and SSO details](https://docs.defguard.net/about/features-overview)
12+
[Identity management and SSO details](https://docs.defguard.net/features/openid-connect)

src/content/faq/integration-methods.mdx

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -8,4 +8,4 @@ Defguard supports the following integration methods:
88
* **Full REST API**
99
* For selected events, **WebHooks configuration**
1010

11-
[Integrations overview: REST API & Webhooks](https://docs.defguard.net/about/features-overview)
11+
[Integrations overview: REST API & Webhooks](https://docs.defguard.net/features/integrations)

src/content/faq/mfa-architecture.mdx

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -5,7 +5,7 @@ order: 3
55

66
Defguard is the **only solution that supports Multi-Factor Authentication (MFA) at the WireGuard protocol level**. This means that **every connection undergoes multi-factor authentication**, not just a 2FA process during application startup or configuration, making Defguard offer a **Zero-Trust VPN**. It has advanced MFA methods that support (beyond private and public keys):
77

8-
* **The first authentication step** (see question 4)
8+
* **The first authentication step**
99
* **The second authentication step** using WireGuard PSK (Pre-Shared Key) keys, which enhances encryption and **protects against post-quantum attacks**.
1010
* **The third level** is the exchange of WireGuard PSK session keys.
1111
* **The fourth level** is the physical configuration of the Gateway server after the entire multi-factor session, without which the VPN server has no configuration for a given client/device.

src/content/faq/mobile.mdx

Lines changed: 0 additions & 6 deletions
This file was deleted.

src/content/faq/platform-support.mdx

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -5,4 +5,4 @@ order: 8
55

66
Defguard supports WireGuard VPN on operating systems such as: **Linux, FreeBSD, OPNSense, NetBSD**
77

8-
[See platform support overview](https://docs.defguard.net/about/features-overview)
8+
[See platform support overview](https://docs.defguard.net/features/gateway)

0 commit comments

Comments
 (0)