31
Sítě / Re:Nastavení WireGuardu z mobilu na OpenWRT
« kdy: 25. 10. 2022, 10:16:55 »
Takhle vypada nastaveni na turrisu. Do allowed IPs se vyplnuje vnitrni adresa v tunelu ?
Klice jsou vyplneny pomoci QR kodu, ktery generuje LUCI.
Nejaky napad? Diky.
Klice jsou vyplneny pomoci QR kodu, ktery generuje LUCI.
Nejaky napad? Diky.
Kód: [Vybrat]
root@turris:~# pgrep -f -a wg; wg show; wg showconf vpn
6189 wg-crypt-Wiregu
interface: Wireguard
public key: RjeGqFciYjXz5qTfWVyD2yxrsNdyDNZL8/tn6N+ryVI=
private key: (hidden)
listening port: 51820
peer: 6DVJICz645GVzqcyDiSZUKltYUJ8aS2Ay8QnHqTMRDY=
allowed ips: 10.0.1.2/32
Unable to access interface: No such device
Kód: [Vybrat]
root@turris:~# ip address show
28: Wireguard: <POINTOPOINT,NOARP,UP,LOWER_UP> mtu 1420 qdisc noqueue state UNKNOWN group default qlen 1000
link/none
inet 10.0.1.1/24 brd 10.0.1.255 scope global Wireguard
valid_lft forever preferred_lft forever
Kód: [Vybrat]
root@turris:~# uci show network
network.Wireguard=interface
network.Wireguard.proto='wireguard'
network.Wireguard.private_key=XXX
network.Wireguard.addresses='10.0.1.1/24'
network.Wireguard.listen_port='51820'
network.@wireguard_Wireguard[0]=wireguard_Wireguard
network.@wireguard_Wireguard[0].public_key='6DVJICz645GVzqcyDiSZUKltYUJ8aS2Ay8QnHqTMRDY='
network.@wireguard_Wireguard[0].route_allowed_ips='1'
network.@wireguard_Wireguard[0].allowed_ips='10.0.1.2'
network.@wireguard_Wireguard[0].description='Mobil'
Kód: [Vybrat]
root@turris:~# uci show firewall | grep 10
firewall.@rule[10]=rule
firewall.@rule[10].src='wan'
firewall.@rule[10].name='wireguard'
firewall.@rule[10].dest='lan'
firewall.@rule[10].target='ACCEPT'
firewall.@rule[10].proto='udp'
firewall.@rule[10].dest_port='51820'