bump wg easy to 15

This commit is contained in:
Aykhan Shahsuvarov 2025-05-28 17:32:13 +00:00
parent 912ca6072d
commit e607c7a914
2 changed files with 37 additions and 62 deletions

View File

@ -1,7 +0,0 @@
# Language of web page (e.g. en)
LANG=
# The public hostname or IP of your VPN server (e.g. vpn.example.com, 1.1.1.1)
WG_HOST=
# (Optional) When set, requires a password when logging in to the Web UI.
# See How to generate a hash: https://github.com/wg-easy/wg-easy/blob/master/How_to_generate_an_bcrypt_hash.md
PASSWORD_HASH=

View File

@ -1,57 +1,39 @@
# volumes:
# etc_wireguard:
networks:
caddy:
name: caddy
driver: bridge
external: true
services: services:
wg-easy: wg-easy:
environment: image: ghcr.io/wg-easy/wg-easy:15
# Change Language: container_name: wg-easy
# (Supports: en, ua, ru, tr, no, pl, fr, de, ca, es, ko, vi, nl, is, pt, chs, cht, it, th, hi, ja) networks:
- LANG=${LANG:-en} caddy:
# ⚠️ Required: wg:
# Change this to your host's public address ipv4_address: 10.42.42.42
- WG_HOST=${WG_HOST} ipv6_address: fdcc:ad94:bacf:61a3::2a
volumes:
- ./data:/etc/wireguard
- /lib/modules:/lib/modules:ro
ports:
- "51820:51820/udp"
# - "51821:51821/tcp"
restart: unless-stopped
cap_add:
- NET_ADMIN
- SYS_MODULE
sysctls:
- net.ipv4.ip_forward=1
- net.ipv4.conf.all.src_valid_mark=1
- net.ipv6.conf.all.disable_ipv6=0
- net.ipv6.conf.all.forwarding=1
- net.ipv6.conf.default.forwarding=1
# Optional: networks:
- PASSWORD_HASH=${PASSWORD_HASH} caddy:
# - PORT=51821 name: caddy
# - WG_PORT=51820 driver: bridge
# - WG_CONFIG_PORT=92820 external: true
# - WG_DEFAULT_ADDRESS=10.8.0.x wg:
# - WG_DEFAULT_DNS=1.1.1.1 driver: bridge
# - WG_MTU=1420 enable_ipv6: true
# - WG_ALLOWED_IPS=192.168.15.0/24, 10.0.1.0/24 ipam:
# - WG_PERSISTENT_KEEPALIVE=25 driver: default
# - WG_PRE_UP=echo "Pre Up" > /etc/wireguard/pre-up.txt config:
# - WG_POST_UP=echo "Post Up" > /etc/wireguard/post-up.txt - subnet: 10.42.42.0/24
# - WG_PRE_DOWN=echo "Pre Down" > /etc/wireguard/pre-down.txt - subnet: fdcc:ad94:bacf:61a3::/64
# - WG_POST_DOWN=echo "Post Down" > /etc/wireguard/post-down.txt
# - UI_TRAFFIC_STATS=true
# - UI_CHART_TYPE=0 # (0 Charts disabled, 1 # Line chart, 2 # Area chart, 3 # Bar chart)
# - WG_ENABLE_ONE_TIME_LINKS=true
# - UI_ENABLE_SORT_CLIENTS=true
# - WG_ENABLE_EXPIRES_TIME=true
# - ENABLE_PROMETHEUS_METRICS=false
# - PROMETHEUS_METRICS_PASSWORD=$$2a$$12$$vkvKpeEAHD78gasyawIod.1leBMKg8sBwKW.pQyNsq78bXV3INf2G # (needs double $$, hash of 'prometheus_password'; see "How_to_generate_an_bcrypt_hash.md" for generate the hash)
image: ghcr.io/wg-easy/wg-easy:14
container_name: wg-easy
volumes:
- ./data:/etc/wireguard
networks:
- caddy
ports:
- "51820:51820/udp"
# - "51821:51821/tcp"
restart: unless-stopped
cap_add:
- NET_ADMIN
- SYS_MODULE
# - NET_RAW # ⚠️ Uncomment if using Podman
sysctls:
- net.ipv4.ip_forward=1
- net.ipv4.conf.all.src_valid_mark=1