• 1 Post
  • 109 Comments
Joined 2 years ago
cake
Cake day: June 10th, 2023

help-circle

















  • BitPirate@feddit.detoSelfhosted*Permanently Deleted*
    link
    fedilink
    English
    arrow-up
    6
    ·
    2 years ago

    Do you really know how Wireguard works?

    Updating without a reboot only works for wireguard-go. The default implementation runs in the kernel. An update to it would require kernel live patching.

    Wireguard doesn’t answer to unsigned packets. Using obscure ports or even port knocking is rather pointless. It’s indistinguishable from a closed port.

    I’d rather take Casaos out of the equation and target Ubuntus’ Wireguard stack instead.