Alpine Gateway WireGuard
Notes from building an Alpine Linux gateway VM with WireGuard, dnsmasq, NAT, and a lightweight branch-office design.
Tech
Practical notes on Linux, networking, security, fixes, and infrastructure work worth keeping.
Practical notes built around Arch Linux, Alpine Linux, and systems work that needs to be repeatable.
Browse Linux notesVPN, addressing, connectivity, and network services documented in a notebook style.
Browse networking notesSSH, certificates, and hardening steps worth keeping close at hand.
Browse security notesConnected setup notes that span certificate services, gateways, and repeatable environment design.
Browse technical seriesNotes from building an Alpine Linux gateway VM with WireGuard, dnsmasq, NAT, and a lightweight branch-office design.
Part four of the certificate authority series, covering Caddy as the reverse proxy in front of the rest of the stack.
Part three of the certificate authority series, setting up Smallstep CA and the supporting host configuration around it.
Part two of the certificate authority series, covering AdGuard Home as the DNS layer for the environment.
Part one of the certificate authority series, outlining the VPS-based custom CA plan and the first pieces of the setup.
A practical note on using SSH certificates instead of static authorized keys for access control.
Step-by-step WireGuard peer setup covering keys, peer configuration, service startup, and routed-traffic notes.
Step-by-step WireGuard server setup covering keys, interface configuration, firewall rules, peers, and validation.
Overview, prerequisites, and baseline details for setting up WireGuard servers and peers.