+ /*
+ * use a priority better than interface source, so that
+ * if the same subnet is added to the wg interface and is
+ * used as an allowed IP, then the wireguard soueced prefix
+ * wins and traffic is routed to the endpoint rather than dropped
+ */
+ wg_fib_source = fib_source_allocate ("wireguard", 0x2, FIB_SOURCE_BH_API);