Minutes 2025-02-20

From MTU LUG Wiki
Revision as of 10:02, 23 April 2025 by D2wn (talk | contribs) (initial commit)
(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)
Jump to navigation Jump to search
  1. Allen's Awesome Wiregaurd/Openvpn talk!
    1. Used with pfsense
    2. Openvpn for admin's, Wireguard is better for users
    3. You have to manage your own keys in Wireguard
    4. Interfaces are where you define your subnets
    5. technically not a server when it comes to Wireguard (only "peers")
    6. Wireguard wants you to be active 24/7 unless you use keep-alive packets
    7. Can set a dynamic endpoint compared to a specified endpoint
    8. Set endpoint allow you to do full mesh
    9. dymanic is for floating client's such as cellular clients or laptops (cant port forward!)
    10. Wireguard uses two way asymetric cryptography (w/an optional symmetric shared key for quantum resistance)
    11. uses the idea of public and private keys but with packets instead
    12. Wireguard uses UDP, no TCP to be found
    13. when making a homelab, pick a random port for Wireguard which will make it invisible to port scans (does not respond to invalid traffic)
  2. Off topic stuff
    1. OpenMhz is a cool place to check out
    2. historically poor documentation for WMTU