...
Code Block |
---|
|
/ip firewall filter
add action=accept chain=input comment="allow WireGuard" dst-port=13231 protocol=udp place-before=1 |
To allow remote devices to connect to the RouterOS services (e.g. request DNS), allow the WireGuard subnet in input chain.
Code Block |
---|
|
/ip firewall filter
add action=accept chain=input comment="allow WireGuard traffic" src-address=192.168.100.0/24 place-before=1 |
Or simply add the WireGuard interface to "LAN" interface list.
Code Block |
---|
|
/interface list member
add interface=wireguard1 list=LAN |
iOS configuration
Download the WireGuard application from the App Store. Open it up and create a new configuration from scratch.
...