lib
3
[Interface]
PrivateKey = @$%^&made_up_key_for_informational_purposes@$%^&
1. ListenPort = 8205 (I’m unable to leave this blank)
Address = 10.0.0.2/32
2. DNS = xxx.xxx.xxx.xxx (can I use my own? Google’s? Or just leave it?)
[Peer]
PublicKey = @$%^&made_up_key_for_informational_purposes@$%^&
3. AllowedIPs = 0.0.0.0/0, ::/0 (can I modify this for more protection/restriction?)
4. Endpoint = xxx.xxx.xxx.xxx:51820(not my public IP, but belongs to my ISP… how is this populated?)
PersistentKeepalive = 25
Thank you very kindly for your input… I can’t be the only one who has the following questions… if you would be so kind, can you please help me understand? Above, you’ll find an Apple machine Client config
Questions referencing the numbers above:
-
On a Mac client config, I’m not allowed to leave the listen port blank… am I understanding your suggestion correctly?
-
Just out of curiosity… can I use any old DNS? 8.8.8.8? Or should I just leave it as it is? Best practices?
-
Since we’re discussing… what might this be used for? Can/should it be modified for further privacy - especially if I’m the only one accessing the server… should I just put in my personal range of IP? Again, is there a best practice?
-
The endpoint IP is not my Public IP… but it does belong to my ISP… I’m unclear on how they got this…
I appreciate your time - thanks for any input you may have…
My original problem still persists… I should mention that this is a secondary router where the WG Server sits (sub net?)… so I guess it’s a double NAT (?)… it must pass through the primary router on my LAN to reach the internet - I have an open port on the primary router to allow the WG Server to be reached remotely.
I know this is a lot to sort through - - - so I very much appreciate your input - best wishes.