14 lines
571 B
Text
14 lines
571 B
Text
|
[Interface]
|
||
|
Address = {{ wireguard_server_CIDR }}
|
||
|
SaveConfig = true
|
||
|
PostUp = iptables -A FORWARD -i %i -j ACCEPT; iptables -A FORWARD -o %i -j ACCEPT; iptables -t nat -A POSTROUTING -o {{ wireguard_iface_name }} -j MASQUERADE
|
||
|
PostDown = iptables -D FORWARD -i %i -j ACCEPT; iptables -D FORWARD -o %i -j ACCEPT; iptables -t nat -D POSTROUTING -o {{ wireguard_iface_name }} -j MASQUERADE
|
||
|
ListenPort = 51900
|
||
|
PrivateKey = {{ wireguard_server_privkey }}
|
||
|
|
||
|
{% for client in wireguard_clients %}
|
||
|
[Peer]
|
||
|
PublicKey = {{ client.pubkey }}
|
||
|
AllowedIPs = {{ client.ipv4 }}
|
||
|
|
||
|
{% endfor %}
|