Outils pour utilisateurs

Outils du site


commun:mise_en_place_du_vpn_wireguard

Ceci est une ancienne révision du document !


Mise en place du VPN wireguard

Sur le routeur

opkg update
opkg install kmod-wireguard luci-app-wireguard luci-proto-wireguard wireguard wireguard-tools
 
mkdir -p /etc/wireguard
wg genkey | tee /etc/wireguard/server-privatekey | wg pubkey > /etc/wireguard/server-publickey

Sur le client

Création des clefs pour un client

wg genkey | tee client-privatekey | wg pubkey > client-publickey

wg0 config

wgo.conf
[Interface]
Address = 10.200.200.<ip>/24
DNS = 10.200.200.1
SaveConfig = true
PrivateKey = <client private key>
 
[Peer]
PublicKey = tgZcoBNS/fysAprtCMG8Reboown0mG6sjpptXG16wE4=
AllowedIPs = 10.200.200.0/24, 192.168.1.0/24
Endpoint = 82.64.170.223:51820
PersistentKeepalive = 25

Commande à exécuter sur le client

nmcli connection import type wireguard file wg0.conf
nmcli --show-secrets --ask connection up wg0
commun/mise_en_place_du_vpn_wireguard.1576434529.txt.gz · Dernière modification : (modification externe)

Donate Powered by PHP Valid HTML5 Valid CSS Driven by DokuWiki