# WireGuard interface configure /interface wireguard add listen-port=13231 mtu=1420 name=wg01 private-key="sLKaz0+jIgc3hkmob7tKXcRM1nAyKCzNn4IxhXOuv20=" /ip address add address=10.100.99.1/24 comment=wg-wg01 interface=wg01 # WireGuard client peer configure /interface wireguard peers add allowed-address=10.100.99.2/32 comment=wg01-client-Router001 interface=wg01 \ preshared-key="evIsO6Pl6d9uFSkM0RrAzkYyVqbhBiG3+1XKaXgD5Ws=" public-key=\ "xDaZbGDa+Q66zdmnH5Ngjh0byL7bMKEdKdlQ+3wNG0U=" CLIENT_PRIV_KEY=$(wg genkey) CLIENT_PUB_KEY=$(echo "${CLIENT_PRIV_KEY}" | wg pubkey) Users 10.1.40.0/24 WG_Users Pub Key : EsxauwYNBotyfDJzy9yCUXDci2gHbtZLhUWnMgMP0AY= Usr_CCR1_Addr="66.171.167.250" Usr_CCR1_Port="13233" Routers 10.1.41.0/24 WG_Routers Pub Key : 9au45IDNJhHDNtN+LIpJDyMFTEYdN9WOSSHEJS8WRmw= Rtr_CCR1_Addr="66.171.167.250" Rtr_CCR1_Port="13232" Guy EVOQ Config: ================= [Interface] ListenPort = 51821 PrivateKey = IM73gYzzN3riY1KaqBAGoIyldE7a7KS6QLoaDKd/G3E= Address = 10.1.40.3/32 DNS = 10.1.3.40,10.1.3.41 [Peer] PublicKey = EsxauwYNBotyfDJzy9yCUXDci2gHbtZLhUWnMgMP0AY= PresharedKey = em/aPlSnK78xQMABuaz7GEQ1+7FXFXE+lIoYGbZ9tRs= Endpoint = 66.171.167.250:13233 AllowedIPs = 10.0.0.0/8,192.168.0.0/24 PersistentKeepalive = 25 Steve Config: ============= [Interface] ListenPort = 51822 PrivateKey = OKQeBlkw7aoxtGfTlxVJpbRJqXwEzz38dk2gFShMHmI= Address = 10.1.40.1/32 DNS = 10.1.3.40,10.1.3.41 [Peer] PublicKey = EsxauwYNBotyfDJzy9yCUXDci2gHbtZLhUWnMgMP0AY= PresharedKey = Va8qOJXqvb8GaNCLUf3yzoGYX2+wZZkKHe/d4i+/Rhs= Endpoint = 66.171.167.250:13233 AllowedIPs = 10.0.0.0/8,192.168.0.0/24 PersistentKeepalive = 25 add allowed-address=10.1.41.253/32,172.16.100.1/32 client-keepalive=10s comment="Router 253" interface=WG-Routers preshared-key="BqdyD7C+AyMFhs67vBjCSfL4dWe3XJ1uMDg6lLgYEe4=" public-key=\ "UlkgLQIbXkJ2dsrik1aDvOLSQrSdPpPNVLJjejE1yRU=" endpoint-address=${Rtr_CCR1_Addr} endpoint-port=${Rtr_CCR1_Port} /interface wireguard add listen-port=13231 mtu=1420 name=wg01 private-key="8DcsFMmQVl3JyOXNuJvSiYaTqz6AqUECOSeIMDhijEA=" /ip address add address=10.1.41.253/32 comment=wg-wg01 interface=wg01 /interface wireguard peers add allowed-address=10.0.0.0/8,192.168.0.0/24 client-keepalive=10 disabled=no comment="CCR1 Montreal" interface=wg01 \ preshared-key="BqdyD7C+AyMFhs67vBjCSfL4dWe3XJ1uMDg6lLgYEe4=" public-key="9au45IDNJhHDNtN+LIpJDyMFTEYdN9WOSSHEJS8WRmw=" endpoint-address=66.171.167.250