diff options
author | Jason A. Donenfeld <Jason@zx2c4.com> | 2017-05-18 14:40:26 +0200 |
---|---|---|
committer | Jason A. Donenfeld <Jason@zx2c4.com> | 2017-05-18 14:41:34 +0200 |
commit | 64e47de870a2f0575b5564a70e5680b48ab83ff9 (patch) | |
tree | 0d3bc4a9b857404bd1abbe2d3752ce184ce80153 /src | |
parent | man: fix psk mention in wg-quick man page (diff) | |
download | wireguard-monolithic-historical-64e47de870a2f0575b5564a70e5680b48ab83ff9.tar.xz wireguard-monolithic-historical-64e47de870a2f0575b5564a70e5680b48ab83ff9.zip |
wg-quick: use src routing for default routes in v6
Otherwise, traffic is sent with the IP address of a different interface,
and then packets don't actually get delivered.
Diffstat (limited to 'src')
-rwxr-xr-x | src/tools/wg-quick.bash | 14 |
1 files changed, 11 insertions, 3 deletions
diff --git a/src/tools/wg-quick.bash b/src/tools/wg-quick.bash index 8cb439a..a4f349a 100755 --- a/src/tools/wg-quick.bash +++ b/src/tools/wg-quick.bash @@ -143,10 +143,18 @@ add_default() { DEFAULT_TABLE=51820 while [[ -n $(ip route show table $DEFAULT_TABLE) ]]; do ((DEFAULT_TABLE++)); done fi - local proto=-4 - [[ $1 == *:* ]] && proto=-6 + local proto=-4 src ip + if [[ $1 == *:* ]]; then + proto=-6 + for ip in "${ADDRESSES[@]}"; do + if [[ $ip == *:* ]]; then + src="src ${ip%/*}" + break + fi + done + fi cmd wg set "$INTERFACE" fwmark $DEFAULT_TABLE - cmd ip $proto route add "$1" dev "$INTERFACE" table $DEFAULT_TABLE + cmd ip $proto route add "$1" $src dev "$INTERFACE" table $DEFAULT_TABLE cmd ip $proto rule add not fwmark $DEFAULT_TABLE table $DEFAULT_TABLE cmd ip $proto rule add table main suppress_prefixlength 0 local key value |