mirror of
https://github.com/pcvolkmer/docker-wireguard-boringtun.git
synced 2025-04-19 13:26:50 +00:00
54 lines
1.2 KiB
Bash
Executable File
54 lines
1.2 KiB
Bash
Executable File
#!/bin/bash
|
|
|
|
SERVER_PUB_KEY=$(cat $DEVICE.conf | grep PrivateKey | sed 's/PrivateKey = //g' | wg pubkey)
|
|
NETWORK=$(cat $DEVICE.conf | grep Address | sed 's/Address = //g; s/\.[0-9\/]*$//g')
|
|
|
|
for i in {1..240}; do
|
|
if [ ! -f "$DEVICE-client_$i.conf" ]; then
|
|
CLIENT_ID=$i
|
|
break
|
|
fi
|
|
done
|
|
|
|
if [ -z $CLIENT_ID ]; then
|
|
echo "Adding a new client not possible: No IP address available"
|
|
exit 1
|
|
fi
|
|
|
|
CLIENT_SEC_KEY=$(wg genkey)
|
|
CLIENT_PUB_KEY=$(echo $CLIENT_SEC_KEY | wg pubkey)
|
|
|
|
# Add peer config
|
|
cat << EOF >> $DEVICE.conf
|
|
# Client $CLIENT_ID
|
|
[Peer]
|
|
PublicKey = ${CLIENT_PUB_KEY}
|
|
AllowedIPs = $NETWORK.$(($CLIENT_ID+10))/32
|
|
# <- $(date)
|
|
EOF
|
|
|
|
# Print out client configs
|
|
cat <<EOF > $DEVICE-client_$CLIENT_ID.conf
|
|
##############
|
|
# CLIENT $CLIENT_ID
|
|
#
|
|
# <- $(date)
|
|
##############
|
|
|
|
[Interface]
|
|
Address = $NETWORK.$(($CLIENT_ID+10))/24
|
|
ListenPort = $SERVER_PORT
|
|
PrivateKey = ${CLIENT_SEC_KEY}
|
|
|
|
[Peer]
|
|
PublicKey = $SERVER_PUB_KEY
|
|
AllowedIPs = 0.0.0.0/0, ::/0
|
|
Endpoint = $SERVER_HOST:$SERVER_PORT
|
|
EOF
|
|
|
|
# Create QR-codes for clients
|
|
if [ ! -z "$(which qrencode 2>/dev/null)" ]; then
|
|
qrencode -t png -o "$DEVICE-client_$CLIENT_ID.png" < $DEVICE-client_$CLIENT_ID.conf
|
|
fi
|
|
|
|
echo "Added Client # $CLIENT_ID" |