commun:mise_en_place_du_vpn_wireguard
Différences
Ci-dessous, les différences entre deux révisions de la page.
| Prochaine révision | Révision précédente | ||
| commun:mise_en_place_du_vpn_wireguard [2019/12/15 18:20] – créée francois | commun:mise_en_place_du_vpn_wireguard [2019/12/15 18:39] (Version actuelle) – [Sur le routeur] francois | ||
|---|---|---|---|
| Ligne 6: | Ligne 6: | ||
| opkg update | opkg update | ||
| opkg install kmod-wireguard luci-app-wireguard luci-proto-wireguard wireguard wireguard-tools | opkg install kmod-wireguard luci-app-wireguard luci-proto-wireguard wireguard wireguard-tools | ||
| + | |||
| + | mkdir -p / | ||
| + | wg genkey | tee / | ||
| </ | </ | ||
| + | Configuration | ||
| + | |||
| + | {{: | ||
| + | |||
| + | {{: | ||
| + | |||
| + | {{: | ||
| + | |||
| + | {{: | ||
| ===== Sur le client ===== | ===== Sur le client ===== | ||
| - | Création des clefs pour un client | + | **Création des clefs pour un client** |
| <code bash> | <code bash> | ||
| - | mkdir -p / | ||
| - | wg genkey | tee / | ||
| wg genkey | tee client-privatekey | wg pubkey > client-publickey | wg genkey | tee client-privatekey | wg pubkey > client-publickey | ||
| + | </ | ||
| + | |||
| + | **wg0 config** | ||
| + | <file ini wgo.conf> | ||
| + | [Interface] | ||
| + | Address = 10.200.200.< | ||
| + | DNS = 10.200.200.1 | ||
| + | SaveConfig = true | ||
| + | PrivateKey = <client private key> | ||
| + | |||
| + | [Peer] | ||
| + | PublicKey = tgZcoBNS/ | ||
| + | AllowedIPs = 10.200.200.0/ | ||
| + | Endpoint = 82.64.170.223: | ||
| + | PersistentKeepalive = 25 | ||
| + | </ | ||
| + | |||
| + | **Commande à exécuter sur le client** | ||
| + | <code bash> | ||
| + | nmcli connection import type wireguard file wg0.conf | ||
| + | nmcli --show-secrets --ask connection up wg0 | ||
| </ | </ | ||
commun/mise_en_place_du_vpn_wireguard.1576434004.txt.gz · Dernière modification : (modification externe)
