Re: [ wireguard-dev ] About configuring allowedip

2017-02-24 Thread Nicolas Prochazka
hello again, my configuration , ping peer 1-->peer 2 : ok ( on ipv6 wg0 ) ping peer 3 --> peer 1 : ok ping peer3 --peer1--->peer2 : not ok . On peer 1 , forwarding is setting net.ipv6.conf.all.forwarding = 1 net.ipv4.conf.all.forwarding = 1 Peer 1 : wg configuration interface: wg0 public

Re: [ wireguard-dev ] About configuring allowedip

2017-02-24 Thread Dan Lüdtke
Nicolas, I draw your network including the allowed_ips restrictions. > ping peer3 --peer1--->peer2 : not ok . This can not work! Peer 2 does not accept the source address from Peer 3. Please review your allowed_ips settings. Draw the things on paper, make PostIt notes representing the packets

Re: [ wireguard-dev ] About configuring allowedip

2017-02-24 Thread Nicolas Prochazka
ok thanks, what is confusing me it that allowed ip is for : - authorized source packet - routing outgoing packet and we can set allowedips with a lot of ip / netmask Regards, Nicolas 2017-02-24 14:10 GMT+01:00 Dan Lüdtke : > Nicolas, > > I draw your network including the allowed_ips restrictions.