An intra-kernel implementation of WireGuard for OpenBSD has been announced

On the company's Twitter EdgeSecurity, founded by the author of WireGuard, informed about the creation of a native and fully supported VPN implementation WireGuard for OpenBSD. To confirm this, a screenshot demonstrating its operation has been published. The readiness of patches for the OpenBSD kernel is also confirmed by Jason Donenfeld, the author of WireGuard, in announcement updates for the wireguard-tools utilities.

An intra-kernel implementation of WireGuard for OpenBSD has been announced

Currently, only external patches, however, the authors promise to send their final version to the OpenBSD developer mailing list shortly. The WireGuard code for the OpenBSD kernel includes 3322 lines, which is less than the implementation for the Linux kernel. If the WireGuard implementation code is ultimately accepted into the OpenBSD source tree, it will become the second OS (after Linux) with full and integrated support for WireGuard "out of the box." Widespread support for WireGuard is expected in the OpenBSD 6.8 release (the release of OpenBSD 6.7 has been postponed from May 1 to May 19; the patches will not be included). In the meantime, those wishing to use WireGuard on OpenBSD should use the port net/wireguard-go or manually install the provided patches.

Additionally, it is worth noting the publication of corrective updates for the wireguard-tools v1.0.20200510 and wireguard-linux-compat v1.0.20200506, including user-space utilities such as wg and wg-quick, and a layer for compatibility with older Linux kernels (from 3.10 to 5.5 inclusive), which do not have built-in support for WireGuard. The new release of the wg and wg-quick utilities adds support for interaction with the WireGuard implementation for the OpenBSD kernel. It is reported that patches for the OpenBSD kernel are planned to be submitted within the next week. The familiar wg interface and "ifconfig wg0 create" command will be used to set up the tunnel on OpenBSD.

Among the unrelated changes regarding OpenBSD support, the addition of domains under the "dns search" mask in resolv.conf to the wg-quick utility is noteworthy. For Android, support has been added for a whitelist of applications in addition to the blacklist. For systemd, the wg-quick.target service has been added for restarting and managing wg-quick. The most notable change in the wireguard-linux-compat package is ensuring compatibility with future kernel package updates for Ubuntu 19.10 and 18.04-hwe, which are currently in the "proposed" section and not yet included in updates.

Source: opennet.ru

Buy reliable website hosting with DDoS protection, VPS VDS servers 🔥 Buy reliable website hosting with DDoS protection, VPS VDS servers | ProHoster