Files
ansible_uni_deploy/roles/wireguard_server/templates/wireguardserver.conf
2026-02-27 10:48:56 +01:00

14 lines
642 B
Plaintext

[Interface]
PrivateKey = {{ wireguard-server-vault.key }}
Address=10.0.0.1/24
PostUp=iptables -A FORWARD -i wireguardserver -o ens18 -j ACCEPT; iptables -A FORWARD -i ens18 -o wireguardserver -j ACCEPT; iptables -t nat -A POSTROUTING -o ens18 -j MASQUERADE;
PostDown=iptables -D FORWARD -i wireguardserver -o ens18 -j ACCEPT; iptables -D FORWARD -i ens18 -o wireguardserver -j ACCEPT; iptables -t nat -D POSTROUTING -o ens18 -j MASQUERADE;
ListenPort={{ wireguard-server.internal-port }}
{% for user in wireguard-client %}
[Peer]
PublicKey = {{ wireguard-client-vault.user.pub }}
AllowedIPs = {{ wireguard-client.user.ip }}/32
{% endfor %}