WireGuard Private Network Between Servers
Encrypted tunnels between your own servers
A private network between your servers
WireGuard Private Network links your servers with encrypted tunnels, so they talk to each other on private addresses instead of over the open internet. Only your own servers can be linked, and each server's private key is made on that server and never leaves it.
Where: Servers › My Servers › your server › Services › WireGuard Private Network. Shown to the owner of the server.
01 · Link two servers
- On the first server, click Enable WireGuard.
- Open the second server and click Enable WireGuard there too.
- Back on either one, under Set up WireGuard between this server and:, tick the other server. Servers without WireGuard are greyed out with enable WireGuard on it first.
- Click Save Links. Both servers are updated, and the result lists each one with the tunnels applied.
02 · What the card shows
- Status (running, stopped or not installed), this server's private Address, its UDP port and its Public key.
- A table of active tunnels: Peer, Tunnel address, Endpoint, Last handshake (red when it is older than three minutes or never happened), Received and Sent.
03 · The other buttons
Resync
Sends the current tunnel list again to this server and to every server linked to it.
Disable WireGuard
Stops WireGuard on this server; its linked servers drop it. The links are kept, so enabling it again restores them.
Refresh
Reads the status again.
When the firewall is on, the WireGuard port is opened only for the servers you linked.
Services tab
- Services tab
- Start, stop, restart
- PHP configuration
- Cache stats
- Varnish cache
- Direct IP blocking
- WireGuard network