I am using a opnsense router 's Intrusion Detection and put Suricata on a wireguard interface
The MTU and MSS are at default values. Suricata does not block www.eicar.eu eicar.com.txt file
I think it is because of the warning below:
023-09-10T17:28:55-04:00 Warning suricata [100202] – [ERRCODE: SC_ERR_SYSCALL(50)] - Failure when trying to get MTU via ioctl for ‘wg1’: Device not configured (6)