|
|
@ -23,6 +23,8 @@ ip link add name wg-vms type wireguard
|
|
|
|
wg setconf wg-vms ./machines/$mach/wg-vms.conf
|
|
|
|
wg setconf wg-vms ./machines/$mach/wg-vms.conf
|
|
|
|
ip link set wg-vms netns "$vm_netns"
|
|
|
|
ip link set wg-vms netns "$vm_netns"
|
|
|
|
nsenter --net="$vm_netns" ip link set wg-vms up
|
|
|
|
nsenter --net="$vm_netns" ip link set wg-vms up
|
|
|
|
|
|
|
|
# The netns has *no* means of participating in the traffic, because it has no address to use.
|
|
|
|
|
|
|
|
# FIXME: Apart from possibly a link-local one :-/
|
|
|
|
nsenter --net="$vm_netns" ip route add 2a01:4f8:c0c:36b8:ff01:8000:0:0001/128 dev wg-vms onlink
|
|
|
|
nsenter --net="$vm_netns" ip route add 2a01:4f8:c0c:36b8:ff01:8000:0:0001/128 dev wg-vms onlink
|
|
|
|
nsenter --net="$vm_netns" ip route add default via 2a01:4f8:c0c:36b8:ff01:8000:0:0001 dev wg-vms
|
|
|
|
nsenter --net="$vm_netns" ip route add default via 2a01:4f8:c0c:36b8:ff01:8000:0:0001 dev wg-vms
|
|
|
|
nsenter --net="$vm_netns" sysctl net.ipv6.conf.all.forwarding=1
|
|
|
|
nsenter --net="$vm_netns" sysctl net.ipv6.conf.all.forwarding=1
|
|
|
|