Thursday, March 31, 2022

Re: Multiple wgpeers on single wg(4) interface with same wgaip list

On Thu, Mar 31, 2022 at 06:23:01PM -0000, Stuart Henderson said:
> "The interface will route outbound tunneled traffic to the
> peer configured with the most specific matching allowed IP
> address range, or drop it if no such match exists"
>
> It doesn't explicitly say what happens if you try to use duplicates
> in wgaip but it seems to follow that configuring them can't work given
> the above.

Yeah, reading it again that makes sense and once I started to think through
how OSPF would work it became really clear that I should have a single
wg(4) iface pair for each connection instead of trying to multiplex in
this case. Seems like multiplexing only makes sense to connect a remote
host not a remote network.

Thanks,

--Matt

--
Matthew Ernisse
matt@going-flying.com
https://www.going-flying.com/

No comments:

Post a Comment