Avatar

bless

bless@lemmy.world
Joined
6 posts • 28 comments
Direct message

Looking for a good guide on getting this setup via docker and AD LDAP, any pointers?

permalink
report
parent
reply

Who’s your DNS provider? I use cloudflare and powershell script and hits their API. Works well

permalink
report
reply

Same but powershell. Works like a charm runs every 5 minutes

permalink
report
parent
reply

You can bound ufw rules to interfaces, so you can allow in only on the wg0 interface and not eth0 interface.

Glad it’s working! I love wireguard!

permalink
report
parent
reply

Hmm do a traceroute and see where it’s dying. Can you ping inside IP of the tunnel on the wireguard server? What about outside?

What did you deploy in docker, firezone or basic wireguard?

Does your phone say connected and you see both incoming and outgoing packets? Is there a firewall in place on the wireguard host (ufw maybe)?

If you have nmap available you can also check port status.

permalink
report
parent
reply

Good thing about wireguard is it’s really simple. Google should get it done, if you get stuck send me a DM. I started with basic wireguard, I now run firezone in docker as I like the frontend.

permalink
report
parent
reply
Deleted by creator
permalink
report
parent
reply

It means they can impersonate the Bluetooth device connected. Input devices are particularly concerning (keyboards and mice) as well as BT IoT devices which already historically lack good security controls. A lot of vehicles have Bluetooth integrated as well these days.

permalink
report
parent
reply

I would go with wireguard VPN or something like cloudflare tunnels or tailscale. With wireguard you’ll need to open up an external port and forward to your VPN host, but wireguard uses UDP so no one can probe it for responses. CF tunnels and tailscale you don’t have to open up holes in your firewall which is nice.

You also have the option of using a proxy and opening up 443 publicly on your firewall, but unless you know what you’re doing I’d leave that closed until you learn more.

permalink
report
reply