notempty
notempty
notempty Dieser Artikel bezieht sich auf eine nicht mehr aktuelle Version!
notempty
Der Artikel für die neueste Version steht hier
Zu diesem Artikel gibt es bereits eine neuere Version, die sich allerdings auf eine Reseller-Preview bezieht
WireGuard® configuration in the admin interface
Last adaptation to the version: 12.5.0
New:
- The dashboard has been revised and now displays a connection status
General
Overview
Wireguard® is a modern and simple VPN protocol, which additionally convinces by its performance.
Advantages
The OpenVPN integration in the Securepoint UTM is also very performant.
The speed disadvantage of SSL-VPN connections compared to WireGuard connections is therefore not as serious as can be observed with competitors.
Disadvantages
Connection
Communication takes place via a freely selectable UDP port and uses IPv4 and IPv6 to transport the data packets.
The handling between the two peers is very similar to OpenSSH.
"Peers" must first exchange their PublicKeys and can then "simply" exchange data further on.
The exchange of PublicKeys is explicitly not part of the WireGuard specification and must be performed manually.
A PublicKey must identify a peer unmistakably.
Multiple uses are not practical.
Dashboard
The dashboard shows the connection status of each peer of a connection as well as the name, key, public key value ( notempty
New as of v12.5
) and IP-Address of an user and the associated user groups.
Dashboard settings
NAT
WireGuard can send a keepalive.
This keeps connections open on NAT routers.
This keeps connections open on NAT routers.
Since the communication only runs via a UDP port, WireGuard is not susceptible to NAT related problems.
Widget
There is a widget in the admin interface for the overview of WireGuard connections. Further information can be found in the Wiki article for UTM Widgets.