3 ms·
how would I go about implementing a killswitch for this? I'd like for it wait until I said its OK to either try to reconnect or allow network without WireGuard
by xCatbodi 8y ago
how would I go about implementing a killswitch for this? I'd like for it wait until I said its OK to either try to reconnect or allow network without WireGuard connection. I was very happy with how Tunnelblick would do this for shitty internet scenarios. Is something like that even necessary in this situation?
also: i do have connect on demand on.
apologies if stupid question
- 8077628 8y agoOn the configs I've seen, "killswitch" is a few lines that tell iptables to stop sending when the connection drops. I don't know how tunnenblick does it, but this might actually, and I'm not joking, be a job for applescript? Since it looks like wireuard doesn't do killswitch on its own. http://krypted.com/mac-security/command-line-firewall-management-in-os-x-10-10/ http://krypted.com/mac-security/command-line-firewall-manage... might be a starting point.
- akerl_ 8y agoConnect-on-demand does what you want. OSX will use this connection when it needs to network, and if it can't make the VPN start, the connection will stall.