mathstodon.xyz is one of the many independent Mastodon servers you can use to participate in the fediverse.
A Mastodon instance for maths people. We have LaTeX rendering in the web interface!

Server stats:

2.8K
active users

#wireguard

2 posts2 participants0 posts today

Sicherer Fernzugriff mit pfSense und WireGuard: In meinem Artikel zeige ich dir, wie du Schritt für Schritt einen WireGuard-VPN-Server aufsetzt – inklusive Tunnel-Konfiguration, Peer-Einrichtung und Firewall-Regeln. Ideal für alle, die ihre Netzwerksicherheit erhöhen möchten.

ralf-peter-kleinert.de/linux-s

Replied to Brian Nicar

@wendigo Double-check that the tunnel configuration including key pair, port numbers and IP address is correct and current. I think Proton makes you re-download those from time to time (quite possibly for key rotation if nothing else).

That the wg0 tunnel interface shows up is no guarantee that the tunnel itself is working. One of the less nice things about Wireguard; you get no obvious "thing X is wrong" error when bringing the tunnel up if something isn't up to snuff.

I forget who the Arch Linux expert out there is, but I can't get wireguard to resolve DNS at all. And my laptop has the exact same setup, and it works fine. I have tried everything I can think of or look up. If anybody out there can help me shed some light on this, I'm using a ProtonVPN config. Thanks! And a boost would be welcome if you're amenable... ;>)

If you have used and loved #Tailscale, and you still like the product but want a sensible insurance option to reduce your exposure to potential #enshittification, what *hosted* options have you looked at as alternatives?

Part of the appeal of #Tailscale for me at least was that they provided a really thoughtful UX layer over some existing cool OSS tech like #wireguard.

Also, many of us have tried self-hosting and want to minimise what they self host if at all possible.
mastodon.social/@JonathanGerla

MastodonJonathan Gerlach (@JonathanGerlach@mastodon.social)I've been really liking Tailscale, but they just took $160 million in funding and I have a weird feeling that the lenders will want to make that money back plus a profit.
Replied in thread

@JessTheUnstill @Pibble

And yes, I treat all devices as insecure and would rather invest the time and effort needed get #TechIlliterates up to speed on the #OfflinePGP method!

Given the cheapness of storage (legitimate 1TB microSD cards exist and they ain't 4-digit items!) I'd legitimately look into #OTP #encryption and (IF I had the €€€€€€ to do so!) would even sponsor implementing it in #OpenVPN, #WireGuard and #OpenSSH (for #SSH-Tunmeling).

  • The #US is a #RogueNation with a Rogue Government! The sooner we accept this reality the sooner we can not only adjust to it but act accordingly…

I sincerely wish y'all could legitimately call me a tinfoilhat but so far I've been proven right all the time...

It's crazy that I could remote into my server in KL all the way from Kedah using only my mobile hotspot and #Wireguard #VPN connection without noticeable lag or delays whatsoever. Though, I also did the same when I was in Osaka, and I suppose that's more impressive lol - anyway, Wireguard (and #Pi-hole) = Big W.

I'm interested in setting up #WireGuard on my #Debian colo, as a #VPN solution for my phone when I'm on untrusted networks. But the quick start guide being a video is really putting me off, and the examples seem to be purely about ad-hoc peer-to-peer networking rather than a gateway.

I'm tempted to go back to my comfort zone with #OpenVPN, but I'll stick with it. At some point it'll click and I'll write a HOWTO.