Cloudron makes it easy to run web apps like WordPress, Nextcloud, GitLab on your server. Find out more or install now.


Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • Bookmarks
  • Search
Skins
  • Light
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (No Skin)
  • No Skin
Collapse
Brand Logo

Cloudron Forum

Apps | Demo | Docs | Install
  1. Cloudron Forum
  2. App Wishlist
  3. Wireguard VPN

Wireguard VPN

Scheduled Pinned Locked Moved Solved App Wishlist
wireguard vpncloudronsecurity
108 Posts 29 Posters 28.2k Views 39 Watching
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • robiR Offline
    robiR Offline
    robi
    wrote on last edited by
    #41

    This may be useful for connecting devices/apps via WgVPN - https://github.com/stv0g/wiretrustee

    Conscious tech

    1 Reply Last reply
    1
    • robiR Offline
      robiR Offline
      robi
      wrote on last edited by
      #42

      Another OSS project that has a nice Wireguard integration - Mistborn
      https://gitlab.com/cyber5k/mistborn

      Conscious tech

      1 Reply Last reply
      2
      • girishG girish

        @dylightful We just pushed out jitsi last month or so and it's still stabilizing, so you know what's next then 🙂

        D Offline
        D Offline
        dylightful
        wrote on last edited by
        #43

        @girish bump

        K 1 Reply Last reply
        0
        • D dylightful

          @girish bump

          K Offline
          K Offline
          kallados
          wrote on last edited by
          #44

          @dylightful Ping ^^

          A 1 Reply Last reply
          1
          • K kallados

            @dylightful Ping ^^

            A Offline
            A Offline
            ApplegateR
            wrote on last edited by
            #45

            @kallados
            https://github.com/ngoduykhanh/wireguard-ui

            Pretty neat on this one. Because it already made on web gui.

            Richard Applegate
            Anthem Coffee and Tea
            Joe Coffee
            IT/Administrator Server/Network

            1 Reply Last reply
            2
            • marcusquinnM Offline
              marcusquinnM Offline
              marcusquinn
              wrote on last edited by
              #46

              Even more useful now Contabo has a UK location, we can use this for our Hetzner Gemany hosted VDIs to tunnel out to the web in the UK for a better localised experience for our primarily UK users.

              Web Design https://www.evergreen.je
              Development https://brandlight.org
              Life https://marcusquinn.com

              jdaviescoatesJ 1 Reply Last reply
              3
              • marcusquinnM marcusquinn

                Even more useful now Contabo has a UK location, we can use this for our Hetzner Gemany hosted VDIs to tunnel out to the web in the UK for a better localised experience for our primarily UK users.

                jdaviescoatesJ Offline
                jdaviescoatesJ Offline
                jdaviescoates
                wrote on last edited by
                #47

                @marcusquinn said in Wireguard VPN:

                we can use this for our Hetzner Gemany hosted VDIs to tunnel out to the web in the UK for a better localised experience for our primarily UK users.

                That's sounds interesting, could you please elaborate?

                As an aside, Contabo don't use renewable energy, which makes them climate criminals in my mind.

                Here are the cheapest renewably powered VPS in UK I've found so far (in order of cheapness)

                https://www.vpsserver.com/vps-london/
                https://krystal.uk/cloud-vps
                https://cloudabove.com/hosting/cloud-servers

                I use Cloudron with Gandi & Hetzner

                1 Reply Last reply
                1
                • girishG girish

                  @dylightful We just pushed out jitsi last month or so and it's still stabilizing, so you know what's next then 🙂

                  D Offline
                  D Offline
                  dylightful
                  wrote on last edited by
                  #48

                  @girish said in Wireguard VPN:

                  so you know what's next then

                  Can we please get an update on Wireguard? Seems to be a lot of apps getting published that don't have anywhere near the number of votes as WG....

                  girishG 1 Reply Last reply
                  2
                  • D dylightful

                    @girish said in Wireguard VPN:

                    so you know what's next then

                    Can we please get an update on Wireguard? Seems to be a lot of apps getting published that don't have anywhere near the number of votes as WG....

                    girishG Offline
                    girishG Offline
                    girish
                    Staff
                    wrote on last edited by
                    #49

                    @dylightful Yes, on our list. After 7.2 is completely rolled out (should be out later today).

                    Is your use case the same as the existing OpenVPN app use case? i.e a self service portal where Cloudron acts as the VPN server?

                    marcusquinnM D 3 Replies Last reply
                    0
                    • girishG girish

                      @dylightful Yes, on our list. After 7.2 is completely rolled out (should be out later today).

                      Is your use case the same as the existing OpenVPN app use case? i.e a self service portal where Cloudron acts as the VPN server?

                      marcusquinnM Offline
                      marcusquinnM Offline
                      marcusquinn
                      wrote on last edited by marcusquinn
                      #50

                      @girish Our use-case would be using some mini-Cloudrons as relays for traffic from VDIs, so the users appear to be browsing from the country they are in, as opposed to where the VDI VPS is hosted.

                      Web Design https://www.evergreen.je
                      Development https://brandlight.org
                      Life https://marcusquinn.com

                      1 Reply Last reply
                      0
                      • girishG girish

                        @dylightful Yes, on our list. After 7.2 is completely rolled out (should be out later today).

                        Is your use case the same as the existing OpenVPN app use case? i.e a self service portal where Cloudron acts as the VPN server?

                        D Offline
                        D Offline
                        dylightful
                        wrote on last edited by
                        #51

                        @girish Exactly like the OpenVPN app, Wireguard will provide MUCH better speed!

                        1 Reply Last reply
                        3
                        • T Offline
                          T Offline
                          timka
                          wrote on last edited by
                          #52

                          Ok, so this would be an alternative to the avaible OpenVPN App?
                          Then I suggest a look into firezone, @git it seems like a nice slim manager with gui. But well it's quite new and I do not know about the license.

                          1 Reply Last reply
                          2
                          • marcusquinnM Offline
                            marcusquinnM Offline
                            marcusquinn
                            wrote on last edited by
                            #53

                            For interest: ivpn.net comes recommended on privacytools.io with Wireguard very easily implemented and, formerly, I always found the Wireguard speed on azirevpn.com to be very fast.

                            Web Design https://www.evergreen.je
                            Development https://brandlight.org
                            Life https://marcusquinn.com

                            1 Reply Last reply
                            2
                            • girishG girish

                              @dylightful Yes, on our list. After 7.2 is completely rolled out (should be out later today).

                              Is your use case the same as the existing OpenVPN app use case? i.e a self service portal where Cloudron acts as the VPN server?

                              D Offline
                              D Offline
                              dylightful
                              wrote on last edited by
                              #54

                              @girish said in Wireguard VPN:

                              After 7.2 is completely rolled out (should be out later today).

                              Bump

                              T 1 Reply Last reply
                              2
                              • D dylightful

                                @girish said in Wireguard VPN:

                                After 7.2 is completely rolled out (should be out later today).

                                Bump

                                T Offline
                                T Offline
                                timka
                                wrote on last edited by
                                #55

                                A nice list:
                                https://github.com/HarvsG/WireGuardMeshes

                                1 Reply Last reply
                                1
                                • robiR Offline
                                  robiR Offline
                                  robi
                                  wrote on last edited by
                                  #56

                                  An example config of WG-Easy deployment from:
                                  https://github.com/WeeJeWel/wg-easy/wiki/Using-WireGuard-Easy-with-nginx-SSL

                                  docker-compose.yml:

                                  version: "3.8"
                                  
                                  services:
                                    wg-easy:
                                      environment:
                                        # ⚠️ Change the server's hostname (clients will connect to):
                                        - WG_HOST=wg-easy.myhomelab.com
                                  
                                        # ⚠️ Change the Web UI Password:
                                        - PASSWORD=foobar123
                                      image: weejewel/wg-easy
                                      container_name: wg-easy
                                      hostname: wg-easy
                                      volumes:
                                        - ~/.wg-easy:/etc/wireguard
                                      ports:
                                        - "51820:51820/udp"
                                      restart: unless-stopped
                                      cap_add:
                                        - NET_ADMIN
                                        - SYS_MODULE
                                      sysctls:
                                        - net.ipv4.ip_forward=1
                                        - net.ipv4.conf.all.src_valid_mark=1
                                  
                                    nginx:
                                      image: weejewel/nginx-with-certbot
                                      container_name: nginx
                                      hostname: nginx
                                      ports:
                                        - "80:80/tcp"
                                        - "443:443/tcp"
                                      volumes:
                                        - ~/.nginx/servers/:/etc/nginx/servers/
                                        - ./.nginx/letsencrypt/:/etc/letsencrypt/
                                  

                                  ~/.nginx/servers/wg-easy.conf:

                                  server {
                                      server_name `⚠️wg-easy.myhomelab.com`;
                                  
                                      location / {
                                          proxy_pass http://wg-easy:51821/;
                                          proxy_http_version 1.1;
                                          proxy_set_header Upgrade $http_upgrade;
                                          proxy_set_header Connection "Upgrade";
                                          proxy_set_header Host $host;
                                      }
                                  }
                                  

                                  Conscious tech

                                  D 1 Reply Last reply
                                  5
                                  • robiR robi

                                    An example config of WG-Easy deployment from:
                                    https://github.com/WeeJeWel/wg-easy/wiki/Using-WireGuard-Easy-with-nginx-SSL

                                    docker-compose.yml:

                                    version: "3.8"
                                    
                                    services:
                                      wg-easy:
                                        environment:
                                          # ⚠️ Change the server's hostname (clients will connect to):
                                          - WG_HOST=wg-easy.myhomelab.com
                                    
                                          # ⚠️ Change the Web UI Password:
                                          - PASSWORD=foobar123
                                        image: weejewel/wg-easy
                                        container_name: wg-easy
                                        hostname: wg-easy
                                        volumes:
                                          - ~/.wg-easy:/etc/wireguard
                                        ports:
                                          - "51820:51820/udp"
                                        restart: unless-stopped
                                        cap_add:
                                          - NET_ADMIN
                                          - SYS_MODULE
                                        sysctls:
                                          - net.ipv4.ip_forward=1
                                          - net.ipv4.conf.all.src_valid_mark=1
                                    
                                      nginx:
                                        image: weejewel/nginx-with-certbot
                                        container_name: nginx
                                        hostname: nginx
                                        ports:
                                          - "80:80/tcp"
                                          - "443:443/tcp"
                                        volumes:
                                          - ~/.nginx/servers/:/etc/nginx/servers/
                                          - ./.nginx/letsencrypt/:/etc/letsencrypt/
                                    

                                    ~/.nginx/servers/wg-easy.conf:

                                    server {
                                        server_name `⚠️wg-easy.myhomelab.com`;
                                    
                                        location / {
                                            proxy_pass http://wg-easy:51821/;
                                            proxy_http_version 1.1;
                                            proxy_set_header Upgrade $http_upgrade;
                                            proxy_set_header Connection "Upgrade";
                                            proxy_set_header Host $host;
                                        }
                                    }
                                    
                                    D Offline
                                    D Offline
                                    dylightful
                                    wrote on last edited by
                                    #57

                                    @robi lots of solutions/apps for WG on the web, not entitely sure whats stopping/preventing the CLoudron team packaging and deploying considerings it one of the most upvoted wishlist items currently, especially when plenty of low upvote apps are getting published before WG.

                                    Care to enlight us? @girish

                                    timconsidineT robiR 2 Replies Last reply
                                    1
                                    • D dylightful

                                      @robi lots of solutions/apps for WG on the web, not entitely sure whats stopping/preventing the CLoudron team packaging and deploying considerings it one of the most upvoted wishlist items currently, especially when plenty of low upvote apps are getting published before WG.

                                      Care to enlight us? @girish

                                      timconsidineT Offline
                                      timconsidineT Offline
                                      timconsidine
                                      App Dev
                                      wrote on last edited by
                                      #58

                                      @dylightful possibly the low vote apps don't have the complexity of integration into the Cloudron 'opinionated' environment. But I don't know really.

                                      1 Reply Last reply
                                      1
                                      • D dylightful

                                        @robi lots of solutions/apps for WG on the web, not entitely sure whats stopping/preventing the CLoudron team packaging and deploying considerings it one of the most upvoted wishlist items currently, especially when plenty of low upvote apps are getting published before WG.

                                        Care to enlight us? @girish

                                        robiR Offline
                                        robiR Offline
                                        robi
                                        wrote on last edited by
                                        #59

                                        @dylightful I hear you.. it has not been made clear yet.

                                        I just managed to deploy wg-easy in fly.io and it's simple UI is great, doesn't need a username, and similar to our OpenVPN app, easily generates .conf files for download for the clients.

                                        For some of the things we wanted to do with VPNs for Apps which were a lot more complex, a lot more integrations were needed, and the people who started doing those didn't manage to complete them and the chain of events stopped progress.

                                        What we perceive being reality, this can affect much simpler things from being re-prioritized; and of course life happens.

                                        Un/fortunately those are not blockers for Cloudron having a fast personal VPN experience via Wireguard.

                                        As I have a bit more time this month, I may start packaging wg-easy, and if someone else is interested in lending a helping hand, many hands make short work. (Send a PM to collaborate)

                                        Conscious tech

                                        T 1 Reply Last reply
                                        6
                                        • robiR robi

                                          @dylightful I hear you.. it has not been made clear yet.

                                          I just managed to deploy wg-easy in fly.io and it's simple UI is great, doesn't need a username, and similar to our OpenVPN app, easily generates .conf files for download for the clients.

                                          For some of the things we wanted to do with VPNs for Apps which were a lot more complex, a lot more integrations were needed, and the people who started doing those didn't manage to complete them and the chain of events stopped progress.

                                          What we perceive being reality, this can affect much simpler things from being re-prioritized; and of course life happens.

                                          Un/fortunately those are not blockers for Cloudron having a fast personal VPN experience via Wireguard.

                                          As I have a bit more time this month, I may start packaging wg-easy, and if someone else is interested in lending a helping hand, many hands make short work. (Send a PM to collaborate)

                                          T Offline
                                          T Offline
                                          timka
                                          wrote on last edited by timka
                                          #60

                                          @robi wg-easy seems to be a nice alternative to the openvpn solution, it's also dockered: https://hub.docker.com/r/weejewel/wg-easy but I'm not sure how stable it is?

                                          robiR D 2 Replies Last reply
                                          2
                                          Reply
                                          • Reply as topic
                                          Log in to reply
                                          • Oldest to Newest
                                          • Newest to Oldest
                                          • Most Votes


                                          • Login

                                          • Don't have an account? Register

                                          • Login or register to search.
                                          • First post
                                            Last post
                                          0
                                          • Categories
                                          • Recent
                                          • Tags
                                          • Popular
                                          • Bookmarks
                                          • Search