summaryrefslogtreecommitdiff
path: root/etc
diff options
context:
space:
mode:
authorXiao Pan <gky44px1999@gmail.com>2024-06-28 00:38:53 +0000
committerXiao Pan <gky44px1999@gmail.com>2024-06-28 00:38:53 +0000
commit6cf51ce232dc7975ffea8bc10994ad3c827289c6 (patch)
treef42d87fd036f9fa4ce7ff27528de8c8ce0056955 /etc
parent6df7c8c4561bd21c741cdd24cbde75e5be6a5857 (diff)
New wg and swgp config for route all traffic to ca
Change swgp port to avoid server client same port error. New wg default route all traffic to ca with wg_ca. Only accept direct connect from insp when wg0 is enabled.
Diffstat (limited to 'etc')
-rw-r--r--etc/nftables.conf2
-rw-r--r--etc/services1
l---------etc/systemd/system/multi-user.target.wants/wg-quick@wg_ca.service (renamed from etc/systemd/system/multi-user.target.wants/wg-quick@wg0.service)0
3 files changed, 2 insertions, 1 deletions
diff --git a/etc/nftables.conf b/etc/nftables.conf
index 5adbf28a..5c668feb 100644
--- a/etc/nftables.conf
+++ b/etc/nftables.conf
@@ -29,7 +29,7 @@ table inet my_table {
#udp dport qbt accept
#tcp dport iperf3 accept
#udp dport wireguard accept
- udp dport swgp accept
+ udp dport swgp-aa-server accept
pkttype host limit rate 5/second counter reject with icmpx type admin-prohibited
counter comment "count any other traffic"
diff --git a/etc/services b/etc/services
index 91a89df2..a248bb3d 100644
--- a/etc/services
+++ b/etc/services
@@ -11514,3 +11514,4 @@ wireguard 49432/udp
ssh-isp 49812/tcp
iperf3 53497/tcp
swgp 54635/udp
+swgp-aa-server 54636/udp
diff --git a/etc/systemd/system/multi-user.target.wants/wg-quick@wg0.service b/etc/systemd/system/multi-user.target.wants/wg-quick@wg_ca.service
index 0a92cb9a..0a92cb9a 120000
--- a/etc/systemd/system/multi-user.target.wants/wg-quick@wg0.service
+++ b/etc/systemd/system/multi-user.target.wants/wg-quick@wg_ca.service