diff --git a/wireguard.md b/wireguard.md index bd9ff48..57cbd68 100644 --- a/wireguard.md +++ b/wireguard.md @@ -5,13 +5,23 @@ set interfaces wireguard wg0 address 10.200.254.1/24 set interfaces wireguard wg0 route-allowed-ips true set interfaces wireguard wg0 listen-port 51820 + set firewall name WAN_LOCAL rule 20 action accept + set firewall name WAN_LOCAL rule 20 protocol udp + set firewall name WAN_LOCAL rule 20 description 'WireGuard' + set firewall name WAN_LOCAL rule 20 destination port 51820 + set interfaces wireguard wg0 peer HMAlHHPMLvcDWhPoGbOkpDiKpZbdfkPZfIb7z6Q3XV0= allowed-ips 10.200.254.101/32 + set interfaces wireguard wg0 peer HMAlHHPMLvcDWhPoGbOkpDiKpZbdfkPZfIb7z6Q3XV0= endpoint capsulecorp.duckdns.org:29922 + set service nat rule 5010 description 'WireGuard NAT' + set service nat rule 5010 outbound-interface eth0 + set service nat rule 5010 type masquerade -set service nat rule 5010 source address 10.200.254.0/24 \ No newline at end of file + +set service nat rule 5010 source address 10.200.254.0/24