3 ms·
Nice! I see *BSD are not supported.. Also, people running OPNsense may find there is already a web-ui for it: https://docs.opnsense.org/plugins.html
by basemi 5y ago
Nice!
I see *BSD are not supported..
Also, people running OPNsense may find there is already a web-ui for it:
https://docs.opnsense.org/plugins.html#vpn-connectivity https://docs.opnsense.org/plugins.html#vpn-connectivity
- jamilbk 5y agoThat's funny -- I originally started building Firezone for OpenBSD but at that time wireguard-go was the only way to have WireGuard on *BSD so I decided to tackle Linux first. Firezone is Docker-free and the firewall management application is designed modularly so that nftables can be swapped for another implementation without too much trouble. There's no technical reason packages couldn't be built for Windows and macOS as well.
- xoa 5y agoAs someone who uses OPNsense a lot now, the community WG plugin is both a fairly minimal MVP and also for whatever reason WG on OPNsense has been a bit wonky. DNS for example sometimes just mysteriously stops working for a while, then with absolutely no changes starts working again even while IPs function normally. Haven't had time to try to dig into that yet but as well as speed I'm looking forward very much to WG in the FreeBSD kernel (and OPNsense's move to vanilla FreeBSD foundation as well) in the hopes it'll help eliminate a few extra moving parts. I'm looking forward though to seeing more tooling developed on top of WG as was always intended, making it easier to plug into other user auth systems and to deploy it to non-technical end users. The QR code thing helps for example but I'd also like to see widespread support for options like autogenerating mobileconfigs [0] for Macs/iDevices and equivalents elsewhere, tying into MDM etc. To get maximum use it needs to get to the point of "install this profile, that's it" or just happen automagically for managed devices. More graphical visualization of what's going on and troubleshooting could help novices too. Such a great foundational tool but projects like this are exciting to see appear as well since they are important next steps. ---- 0: https://github.com/WireGuard/wireguard-apple/blob/master/MOBILECONFIG.md https://github.com/WireGuard/wireguard-apple/blob/master/MOB...