Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

PostUp should do what you want. https://wiki.archlinux.org/index.php/WireGuard#Store_private...

I have it grabbing a key from AWS Secret Manager, haven't had a problem with that.



In case others got confused by this thread (I thought for a minute "how do you know which private key goes with which peer", is PostUp per peer, etc)... There is only one private key per interface on the server (or anywhere for that matter) and all the other peers are public keys.

I might be the only one who confused myself :)


Right, my use of the plural was confusing. It's just that in general when you add a client you end up editing both the client and the server config, so both keys end up being disclosed on the screen.


That's perfect! Thank you.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: