前言:上个月在alice白嫖了一台4c8g的vps,性能虽好,但中国大陆方向优化几乎没有,广东电信ping不低于300ms,而手上又有一台阿里云香港轻量,所以就拿来给alice的vps作跳板机。本来部署项目一切顺利,但是到反代时1panel罢工,反代http正常,https报错。所以为了不让流量裸奔,所以就给他俩组了个网😓
准备
- 俩台可安装wireguard的vps
安装wireguard
Debian/Ubuntu/Linux Mint:
bash
sudo apt update
sudo apt install wireguardFedora/CentOS/RHEL:
bash
sudo yum install wireguard-toolsArch Linux/Manjaro:
bash
sudo pacman -S wire生成密钥
bash
wg genkey | tee privatekey | wg pubkey > publickey私钥:
bash
cat privatekey公钥:
bash
cat publickey填入配置文件
照着模板填写
第一台vps
bash
[Interface]
PrivateKey = <替换为VPS1的私钥>
Address = 10.0.0.1/32
ListenPort = 51820
[Peer]
PublicKey = <替换为VPS 2的公钥>
AllowedIPs = 10.0.0.2/32
Endpoint = <替换为VPS2的IP>:51820
PersistentKeepalive = 25第二台vps
bash
[Interface]
PrivateKey = <替换为VPS 2的私钥>
Address = 10.0.0.2/32
ListenPort = 51820
[Peer]
PublicKey = <替换为VPS 1的公钥>
AllowedIPs = 10.0.0.1/32
Endpoint = <替换为VPS1的IP>:51820防火墙放行端口
ufw:
ufw allow 51820
启动隧道
·wg-quick up wg0·
配置开机自启
systemctl enable wg-quick@wg0.service
警告
此协议无任何伪装,GFW可精准探测,不要拿此协议过GFW