fix(wireguard_server): Correct template variable access and looping

This commit is contained in:
gemini
2026-02-27 10:55:21 +01:00
parent 5c216a00ba
commit a774d3de29

View File

@@ -1,13 +1,13 @@
[Interface] [Interface]
PrivateKey = {{ wireguard-server-vault.key }} PrivateKey = {{ vars['wireguard-server-vault']['key'] }}
Address=10.0.0.1/24 Address=10.0.0.1/24
PostUp=iptables -A FORWARD -i wireguardserver -o ens18 -j ACCEPT; iptables -A FORWARD -i ens18 -o wireguardserver -j ACCEPT; iptables -t nat -A POSTROUTING -o ens18 -j MASQUERADE; PostUp=iptables -A FORWARD -i wireguardserver -o ens18 -j ACCEPT; iptables -A FORWARD -i ens18 -o wireguardserver -j ACCEPT; iptables -t nat -A POSTROUTING -o ens18 -j MASQUERADE;
PostDown=iptables -D FORWARD -i wireguardserver -o ens18 -j ACCEPT; iptables -D FORWARD -i ens18 -o wireguardserver -j ACCEPT; iptables -t nat -D POSTROUTING -o ens18 -j MASQUERADE; PostDown=iptables -D FORWARD -i wireguardserver -o ens18 -j ACCEPT; iptables -D FORWARD -i ens18 -o wireguardserver -j ACCEPT; iptables -t nat -D POSTROUTING -o ens18 -j MASQUERADE;
ListenPort={{ wireguard-server.internal-port }} ListenPort={{ vars['wireguard-server']['internal-port'] }}
{% for user in wireguard-client %} {% for client_name, client_data in vars['wireguard-client'].items() %}
[Peer] [Peer]
PublicKey = {{ wireguard-client-vault.user.pub }} # {{ client_name }}
AllowedIPs = {{ wireguard-client.user.ip }}/32 PublicKey = {{ vars['wireguard-client-vault'][client_name]['pub'] }}
AllowedIPs = {{ client_data.ip }}/32
{% endfor %} {% endfor %}