Firewall/ wireguard


after wireguard setup, in firewall, should I add wireguard in ''wan'' as Covered networks or just in lan?
cause when I look into my old back up last year on another router, it was but not sure if we have to do?

Not enough detail or context.
Is the remote peer a commercial vpn provider? A site-to-site endpoint? Or a personal device connecting back to your network for remote access?


Commercial provider.
I use it like open vpn.
To stream stuff

It is probably best to put your VPN in the WAN zone.

