[Interface] PrivateKey = {{ wireguard-server.key }} Address=10.0.0.1/24 PostUp=iptables -A FORWARD -i wireguardserver -o ens18 -j ACCEPT; iptables -A FORWARD -i ens18 -o wireguardserver -j ACCEPT; iptables -t nat -A POSTROUTING -o ens18 -j MASQUERADE; PostDown=iptables -D FORWARD -i wireguardserver -o ens18 -j ACCEPT; iptables -D FORWARD -i ens18 -o wireguardserver -j ACCEPT; iptables -t nat -D POSTROUTING -o ens18 -j MASQUERADE; ListenPort={{ wireguard-server.internal-port }} {% for user in wireguard %} [Peer] PublicKey = {{ wireguard.user.pub }} AllowedIPs = {{ wireguard.user.ip }}/32 {% endfor %}