Wireguard ืฉื™ืจื•ืช VPN ื‘ื—ื™ื ื ื‘-AWS

ื‘ืฉื‘ื™ืœ ืžื”?

ืขื ื”ื’ื“ืœืช ื”ืฆื ื–ื•ืจื” ืฉืœ ื”ืื™ื ื˜ืจื ื˜ ืขืœ ื™ื“ื™ ืžืฉื˜ืจื™ื ืื•ื˜ื•ืจื™ื˜ืจื™ื™ื, ืžืกืคืจ ื”ื•ืœืš ื•ื’ื“ืœ ืฉืœ ืžืฉืื‘ื™ ืื™ื ื˜ืจื ื˜ ื•ืืชืจื™ื ืฉื™ืžื•ืฉื™ื™ื ื ื—ืกืžื™ื. ื›ื•ืœืœ ืžื™ื“ืข ื˜ื›ื ื™.
ื›ืš, ืื™ ืืคืฉืจ ืœืขืฉื•ืช ืฉื™ืžื•ืฉ ืžืœื ื‘ืื™ื ื˜ืจื ื˜ ื•ืคื•ื’ืข ื‘ื–ื›ื•ืช ื”ื™ืกื•ื“ื™ืช ืœื—ื•ืคืฉ ื”ื‘ื™ื˜ื•ื™, ื”ืžืขื•ื’ื ืช ื‘ ื”ืฆื”ืจื” ื”ืื•ื ื™ื‘ืจืกืœื™ืช ืฉืœ ื–ื›ื•ื™ื•ืช ื”ืื“ื.

ืกืขื™ืฃ 19
ืœื›ืœ ืื“ื ื™ืฉ ื–ื›ื•ืช ืœื—ื•ืคืฉ ื”ื“ืขื” ื•ื”ื‘ื™ื˜ื•ื™; ื–ื›ื•ืช ื–ื• ื›ื•ืœืœืช ื—ื•ืคืฉ ืœื”ื—ื–ื™ืง ื‘ื“ืขื•ืช ืœืœื ื”ืคืจืขื” ื•ืœื—ืคืฉ, ืœืงื‘ืœ ื•ืœืžืกื•ืจ ืžื™ื“ืข ื•ืจืขื™ื•ื ื•ืช ื‘ื›ืœ ืืžืฆืขื™ ืชืงืฉื•ืจืช ื•ืœืœื ืงืฉืจ ืœื’ื‘ื•ืœื•ืช

ื‘ืžื“ืจื™ืš ื–ื”, ื ืคืจื•ืก ืืช ื”ืชื•ื›ื ื” ื”ื—ื™ื ืžื™ืช ืฉืœื ื•* ื‘-6 ืฉืœื‘ื™ื. ืฉื™ืจื•ืช VPN ืžื‘ื•ืกืก ืขืœ ื˜ื›ื ื•ืœื•ื’ื™ื” ืžื’ืŸ, ื‘ืชืฉืชื™ืช ืขื ืŸ ืืžื–ื•ืŸ ืฉื™ืจื•ืชื™ ืื™ื ื˜ืจื ื˜ (AWS), ื‘ืืžืฆืขื•ืช ื—ืฉื‘ื•ืŸ ื—ื™ื ืžื™ (ืœืžืฉืš 12 ื—ื•ื“ืฉื™ื), ื‘ืžื•ืคืข (ืžื›ื•ื ื” ื•ื™ืจื˜ื•ืืœื™ืช) ื”ืžื ื•ื”ืœืช ืขืœ ื™ื“ื™ ืฉืจืช ืื•ื‘ื•ื ื˜ื• 18.04 LTS.
ื ื™ืกื™ืชื™ ืœื”ืคื•ืš ืืช ื”ื”ืœื™ื›ื” ื”ื–ื• ืœื™ื“ื™ื“ื•ืชื™ืช ื›ื›ืœ ื”ืืคืฉืจ ืœืื ืฉื™ื ืฉืื™ื ื ืื ืฉื™ IT. ื”ื“ื‘ืจ ื”ื™ื—ื™ื“ ืฉื ื“ืจืฉ ื”ื•ื ื”ืชืžื“ื” ืœื—ื–ื•ืจ ืขืœ ื”ืฉืœื‘ื™ื ื”ืžืชื•ืืจื™ื ืœื”ืœืŸ.

ืฉื™ื ืœื‘

  • AWS ืžืกืคืงืช ืฉื›ื‘ืช ืฉื™ืžื•ืฉ ื‘ื—ื™ื ื ืœืชืงื•ืคื” ืฉืœ 12 ื—ื•ื“ืฉื™ื, ืขื ื”ื’ื‘ืœื” ืฉืœ 15 ื’ื™ื’ื”-ื‘ื™ื™ื˜ ืฉืœ ืชืขื‘ื•ืจื” ื‘ื—ื•ื“ืฉ.
  • ืืช ื”ื’ืจืกื” ื”ืžืขื•ื“ื›ื ืช ื‘ื™ื•ืชืจ ืฉืœ ืžื“ืจื™ืš ื–ื” ื ื™ืชืŸ ืœืžืฆื•ื ื‘ื›ืชื•ื‘ืช https://wireguard.isystem.io

ืฉืœื‘ื™ื

  1. ื”ื™ืจืฉื ืœื—ืฉื‘ื•ืŸ AWS ื‘ื—ื™ื ื
  2. ืฆื•ืจ ืžื•ืคืข AWS
  3. ืžืชื—ื‘ืจ ืœืžื•ืคืข AWS
  4. ืชืฆื•ืจืช Wireguard
  5. ื”ื’ื“ืจืช ืœืงื•ื—ื•ืช VPN
  6. ื‘ื“ื™ืงืช ืชืงื™ื ื•ืช ื”ืชืงื ืช ื”-VPN

ืงื™ืฉื•ืจื™ื ืฉื™ืžื•ืฉื™ื™ื

1. ืจื™ืฉื•ื ื—ืฉื‘ื•ืŸ AWS

ื”ืจืฉืžื” ืœื—ืฉื‘ื•ืŸ AWS ื‘ื—ื™ื ื ื“ื•ืจืฉืช ืžืกืคืจ ื˜ืœืคื•ืŸ ืืžื™ืชื™ ื•ื›ืจื˜ื™ืก ืืฉืจืื™ ืชืงืฃ ืฉืœ ื•ื™ื–ื” ืื• ืžืืกื˜ืจืงืืจื“. ืื ื™ ืžืžืœื™ืฅ ืœื”ืฉืชืžืฉ ื‘ื›ืจื˜ื™ืกื™ื ื•ื™ืจื˜ื•ืืœื™ื™ื ืฉืžืกื•ืคืงื™ื ื‘ื—ื™ื ื Yandex.Money ืื• ืืจื ืง QIWI. ืœื‘ื“ื™ืงืช ืชื•ืงืคื• ืฉืœ ื”ื›ืจื˜ื™ืก ืžื ื›ื™ื ื‘ืžื”ืœืš ื”ื”ืจืฉืžื” $1, ื”ืžื•ื—ื–ืจ ืžืื•ื—ืจ ื™ื•ืชืจ.

1.1. ืคืชื™ื—ืช ืžืกื•ืฃ ื”ื ื™ื”ื•ืœ ืฉืœ AWS

ืขืœื™ืš ืœืคืชื•ื— ื“ืคื“ืคืŸ ื•ืœืขื‘ื•ืจ ืืœ: https://aws.amazon.com/ru/
ืœื—ืฅ ืขืœ ื›ืคืชื•ืจ "ื”ืจืฉืžื”".

Wireguard ืฉื™ืจื•ืช VPN ื‘ื—ื™ื ื ื‘-AWS

1.2. ืžื™ืœื•ื™ ื ืชื•ื ื™ื ืื™ืฉื™ื™ื

ืžืœืื• ืืช ื”ื ืชื•ื ื™ื ื•ืœื—ืฆื• ืขืœ ื›ืคืชื•ืจ "ื”ืžืฉืš".

Wireguard ืฉื™ืจื•ืช VPN ื‘ื—ื™ื ื ื‘-AWS

1.3. ืžื™ืœื•ื™ ืคืจื˜ื™ ื”ืชืงืฉืจื•ืช

ืžืœื ืคืจื˜ื™ ืงืฉืจ.

Wireguard ืฉื™ืจื•ืช VPN ื‘ื—ื™ื ื ื‘-AWS

1.4. ืฆื™ื•ืŸ ืคืจื˜ื™ ืชืฉืœื•ื.

ืžืกืคืจ ื›ืจื˜ื™ืก, ืชืืจื™ืš ืชืคื•ื’ื” ื•ืฉื ื‘ืขืœ ื”ื›ืจื˜ื™ืก.

Wireguard ืฉื™ืจื•ืช VPN ื‘ื—ื™ื ื ื‘-AWS

1.5. ืื™ืžื•ืช ื—ืฉื‘ื•ืŸ

ื‘ืฉืœื‘ ื–ื”, ืžืกืคืจ ื”ื˜ืœืคื•ืŸ ืžืื•ืฉืจ ื•-$1 ืžื—ื•ื™ื‘ ื™ืฉื™ืจื•ืช ืžื›ืจื˜ื™ืก ื”ืชืฉืœื•ื. ืงื•ื“ ื‘ืŸ 4 ืกืคืจื•ืช ืžื•ืฆื’ ืขืœ ืžืกืš ื”ืžื—ืฉื‘, ื•ื”ื˜ืœืคื•ืŸ ืฉืฆื•ื™ืŸ ืžืงื‘ืœ ืฉื™ื—ื” ืžืืžื–ื•ืŸ. ื‘ืžื”ืœืš ืฉื™ื—ื”, ืขืœื™ืš ืœื—ื™ื™ื’ ืืช ื”ืงื•ื“ ื”ืžื•ืฆื’ ืขืœ ื”ืžืกืš.

Wireguard ืฉื™ืจื•ืช VPN ื‘ื—ื™ื ื ื‘-AWS

1.6. ื‘ื—ื™ืจืช ืชื•ื›ื ื™ืช ืชืขืจื™ืคื™ื.

ื‘ื—ืจ - ืชื•ื›ื ื™ืช ื‘ืกื™ืกื™ืช (ื—ื™ื ื)

Wireguard ืฉื™ืจื•ืช VPN ื‘ื—ื™ื ื ื‘-AWS

1.7. ื”ื™ื›ื ืก ืœืžืกื•ืฃ ื”ื ื™ื”ื•ืœ

Wireguard ืฉื™ืจื•ืช VPN ื‘ื—ื™ื ื ื‘-AWS

1.8. ื‘ื—ื™ืจืช ืžื™ืงื•ื ืžืจื›ื– ื”ื ืชื•ื ื™ื

Wireguard ืฉื™ืจื•ืช VPN ื‘ื—ื™ื ื ื‘-AWS

1.8.1. ื‘ื“ื™ืงืช ืžื”ื™ืจื•ืช

ืœืคื ื™ ื‘ื—ื™ืจืช ืžืจื›ื– ื ืชื•ื ื™ื, ืžื•ืžืœืฅ ืœื‘ื“ื•ืง ื“ืจืš https://speedtest.net ืžื”ื™ืจื•ืช ื”ื’ื™ืฉื” ืœืžืจื›ื–ื™ ื”ื ืชื•ื ื™ื ื”ืงืจื•ื‘ื™ื ื‘ื™ื•ืชืจ, ื‘ืžื™ืงื•ื ืฉืœื™ ื”ืชื•ืฆืื•ืช ื”ื‘ืื•ืช:

  • ืกื™ื ื’ืคื•ืจ
    Wireguard ืฉื™ืจื•ืช VPN ื‘ื—ื™ื ื ื‘-AWS
  • ืคืจื™ื–
    Wireguard ืฉื™ืจื•ืช VPN ื‘ื—ื™ื ื ื‘-AWS
  • ืคืจื ืงืคื•ืจื˜
    Wireguard ืฉื™ืจื•ืช VPN ื‘ื—ื™ื ื ื‘-AWS
  • ืฉื˜ื•ืงื”ื•ืœื
    Wireguard ืฉื™ืจื•ืช VPN ื‘ื—ื™ื ื ื‘-AWS
  • ืœื•ื ื“ื•ืŸ
    Wireguard ืฉื™ืจื•ืช VPN ื‘ื—ื™ื ื ื‘-AWS

ืžืจื›ื– ื”ื ืชื•ื ื™ื ื‘ืœื•ื ื“ื•ืŸ ืžืฆื™ื’ ืืช ื”ืชื•ืฆืื•ืช ื”ื˜ื•ื‘ื•ืช ื‘ื™ื•ืชืจ ืžื‘ื—ื™ื ืช ืžื”ื™ืจื•ืช. ืื– ื‘ื—ืจืชื™ ื‘ื• ืœื”ืชืืžื” ืื™ืฉื™ืช ื ื•ืกืคืช.

2. ืฆื•ืจ ืžื•ืคืข AWS

2.1 ืฆื•ืจ ืžื›ื•ื ื” ื•ื™ืจื˜ื•ืืœื™ืช

2.1.1. ื‘ื—ื™ืจืช ืกื•ื’ ืžื•ืคืข

ื›ื‘ืจื™ืจืช ืžื—ื“ืœ, ื”ืžื•ืคืข t2.micro ื ื‘ื—ืจ, ื•ื–ื” ืžื” ืฉืื ื—ื ื• ืฆืจื™ื›ื™ื, ืคืฉื•ื˜ ืœื—ืฅ ืขืœ ื”ื›ืคืชื•ืจ ื”ื‘ื: ื”ื’ื“ืจ ืืช ืคืจื˜ื™ ื”ืžื•ืคืข

Wireguard ืฉื™ืจื•ืช VPN ื‘ื—ื™ื ื ื‘-AWS

2.1.2. ื”ื’ื“ืจืช ืืคืฉืจื•ื™ื•ืช ืžื•ืคืข

ื‘ืขืชื™ื“, ื ื—ื‘ืจ IP ืฆื™ื‘ื•ืจื™ ืงื‘ื•ืข ืœืžื•ืคืข ืฉืœื ื•, ืื– ื‘ืฉืœื‘ ื–ื” ืื ื• ืžื›ื‘ื™ื ืืช ื”ื”ืงืฆืื” ื”ืื•ื˜ื•ืžื˜ื™ืช ืฉืœ IP ืฆื™ื‘ื•ืจื™, ื•ืœื•ื—ืฆื™ื ืขืœ ื”ื›ืคืชื•ืจ ื”ื‘ื: ื”ื•ืกืฃ ืื—ืกื•ืŸ

Wireguard ืฉื™ืจื•ืช VPN ื‘ื—ื™ื ื ื‘-AWS

2.1.3. ื—ื™ื‘ื•ืจ ืœืื—ืกื•ืŸ

ืฆื™ื™ืŸ ืืช ื’ื•ื“ืœ ื”"ื“ื™ืกืง ื”ืงืฉื™ื—". ืœืขื ื™ื™ื ื ื•, 16 ื’ื™ื’ื”-ื‘ื™ื™ื˜ ืžืกืคื™ืงื™ื, ื•ืื ื—ื ื• ืœื•ื—ืฆื™ื ืขืœ ื”ื›ืคืชื•ืจ ื”ื‘ื: ื”ื•ืกืฃ ืชื’ื™ื

Wireguard ืฉื™ืจื•ืช VPN ื‘ื—ื™ื ื ื‘-AWS

2.1.4. ื”ื’ื“ืจืช ืชื’ื™ื

ืื ื™ืฆืจื ื• ืžืกืคืจ ืžื•ืคืขื™ื, ื ื™ืชืŸ ืœืงื‘ืฅ ืื•ืชื ืœืคื™ ืชื’ื™ื ื›ื“ื™ ืœื”ืงืœ ืขืœ ื”ื ื™ื”ื•ืœ. ื‘ืžืงืจื” ื–ื”, ืคื•ื ืงืฆื™ื•ื ืœื™ื•ืช ื–ื• ืžื™ื•ืชืจืช, ืœื—ืฅ ืžื™ื“ ืขืœ ื”ื›ืคืชื•ืจ ื”ื‘ื: ื”ื’ื“ืจ ืืช ืงื‘ื•ืฆืช ื”ืื‘ื˜ื—ื”

Wireguard ืฉื™ืจื•ืช VPN ื‘ื—ื™ื ื ื‘-AWS

2.1.5. ืคืชื™ื—ืช ื™ืฆื™ืื•ืช

ื‘ืฉืœื‘ ื–ื”, ืื ื• ืžื’ื“ื™ืจื™ื ืืช ื—ื•ืžืช ื”ืืฉ ืขืœ ื™ื“ื™ ืคืชื™ื—ืช ื”ื™ืฆื™ืื•ืช ื”ื ื“ืจืฉื•ืช. ืงื‘ื•ืฆืช ื”ื™ืฆื™ืื•ืช ื”ืคืชื•ื—ื•ืช ื ืงืจืืช ืงื‘ื•ืฆืช ื”ืื‘ื˜ื—ื”. ืขืœื™ื ื• ืœื™ืฆื•ืจ ืงื‘ื•ืฆืช ืื‘ื˜ื—ื” ื—ื“ืฉื”, ืœืชืช ืœื” ืฉื, ืชื™ืื•ืจ, ืœื”ื•ืกื™ืฃ ื™ืฆื™ืืช UDP (Custom UDP Rule), ื‘ืฉื“ื” Ror Range, ืœื”ืงืฆื•ืช ืžืกืคืจ ื™ืฆื™ืื” ืžื”ื˜ื•ื•ื— ื™ืฆื™ืื•ืช ื“ื™ื ืžื™ื•ืช 49152-65535. ื‘ืžืงืจื” ื–ื”, ื‘ื—ืจืชื™ ื‘ื™ืฆื™ืื” ืžืกืคืจ 54321.

Wireguard ืฉื™ืจื•ืช VPN ื‘ื—ื™ื ื ื‘-AWS

ืœืื—ืจ ืžื™ืœื•ื™ ื”ื ืชื•ื ื™ื ื”ื ื“ืจืฉื™ื, ืœื—ืฅ ืขืœ ื”ื›ืคืชื•ืจ ืกืงื•ืจ ื•ื”ืคืขืœ

2.1.6. ืกืงื™ืจื” ื›ืœืœื™ืช ืฉืœ ื›ืœ ื”ื”ื’ื“ืจื•ืช

ื‘ืขืžื•ื“ ื–ื” ื™ืฉ ืกืงื™ืจื” ื›ืœืœื™ืช ืฉืœ ื›ืœ ื”ื”ื’ื“ืจื•ืช ืฉืœ ื”ืžื•ืคืข ืฉืœื ื•, ืื ื—ื ื• ื‘ื•ื“ืงื™ื ืื ื›ืœ ื”ื”ื’ื“ืจื•ืช ืชืงื™ื ื•ืช, ื•ืœื•ื—ืฆื™ื ืขืœ ื”ื›ืคืชื•ืจ ืœืฉื’ืจ

Wireguard ืฉื™ืจื•ืช VPN ื‘ื—ื™ื ื ื‘-AWS

2.1.7. ื™ืฆื™ืจืช ืžืคืชื—ื•ืช ื’ื™ืฉื”

ืœืื—ืจ ืžื›ืŸ ืžื’ื™ืขื” ืชื™ื‘ืช ื“ื•-ืฉื™ื— ื”ืžืฆื™ืขื” ืœื™ืฆื•ืจ ืื• ืœื”ื•ืกื™ืฃ ืžืคืชื— SSH ืงื™ื™ื, ืื™ืชื• ื ืชื—ื‘ืจ ืžืื•ื—ืจ ื™ื•ืชืจ ืžืจื—ื•ืง ืœืžื•ืคืข ืฉืœื ื•. ืื ื• ื‘ื•ื—ืจื™ื ื‘ืืคืฉืจื•ืช "ืฆื•ืจ ื–ื•ื’ ืžืคืชื—ื•ืช ื—ื“ืฉ" ื›ื“ื™ ืœื™ืฆื•ืจ ืžืคืชื— ื—ื“ืฉ. ืชืŸ ืœื–ื” ืฉื ื•ืœื—ืฅ ืขืœ ื”ื›ืคืชื•ืจ ื”ื•ืจื“ ื–ื•ื’ ืžืคืชื—ื›ื“ื™ ืœื”ื•ืจื™ื“ ืืช ื”ืžืคืชื—ื•ืช ืฉื ื•ืฆืจื•. ืฉืžื•ืจ ืื•ืชื ื‘ืžืงื•ื ื‘ื˜ื•ื— ื‘ืžื—ืฉื‘ ื”ืžืงื•ืžื™ ืฉืœืš. ืœืื—ืจ ื”ื”ื•ืจื“ื”, ืœื—ืฅ ืขืœ ื”ื›ืคืชื•ืจ. ื”ืคืขืœ ืžื•ืคืขื™ื

Wireguard ืฉื™ืจื•ืช VPN ื‘ื—ื™ื ื ื‘-AWS

2.1.7.1. ืฉืžื™ืจืช ืžืคืชื—ื•ืช ื’ื™ืฉื”

ืžื•ืฆื’ ื›ืืŸ ื”ืฉืœื‘ ืฉืœ ืฉืžื™ืจืช ื”ืžืคืชื—ื•ืช ืฉื ื•ืฆืจื• ืžื”ืฉืœื‘ ื”ืงื•ื“ื. ืœืื—ืจ ืฉืœื—ืฆื ื• ืขืœ ื”ื›ืคืชื•ืจ ื”ื•ืจื“ ื–ื•ื’ ืžืคืชื—, ื”ืžืคืชื— ื ืฉืžืจ ื›ืงื•ื‘ืฅ ืื™ืฉื•ืจ ืขื ืกื™ื•ืžืช *.pem. ื‘ืžืงืจื” ื”ื–ื”, ื ืชืชื™ ืœื–ื” ืฉื wireguard-awsky.pem

Wireguard ืฉื™ืจื•ืช VPN ื‘ื—ื™ื ื ื‘-AWS

2.1.8. ืกืงื™ืจื” ื›ืœืœื™ืช ืฉืœ ืชื•ืฆืื•ืช ื™ืฆื™ืจืช ืžื•ืคืขื™ื

ืœืื—ืจ ืžื›ืŸ, ืื ื• ืจื•ืื™ื ื”ื•ื“ืขื” ืขืœ ื”ื”ืฉืงื” ื”ืžื•ืฆืœื—ืช ืฉืœ ื”ืžื•ืคืข ืฉื™ืฆืจื ื• ื–ื” ืขืชื”. ื ื•ื›ืœ ืœืขื‘ื•ืจ ืœืจืฉื™ืžืช ื”ืžื•ืคืขื™ื ืฉืœื ื• ืขืœ ื™ื“ื™ ืœื—ื™ืฆื” ืขืœ ื”ื›ืคืชื•ืจ ืœื”ืฆื™ื’ ืžืงืจื™ื

Wireguard ืฉื™ืจื•ืช VPN ื‘ื—ื™ื ื ื‘-AWS

2.2. ื™ืฆื™ืจืช ื›ืชื•ื‘ืช IP ื—ื™ืฆื•ื ื™ืช

2.2.1. ื”ืชื—ืœืช ื™ืฆื™ืจืช IP ื—ื™ืฆื•ื ื™

ืœืื—ืจ ืžื›ืŸ, ืขืœื™ื ื• ืœื™ืฆื•ืจ ื›ืชื•ื‘ืช IP ื—ื™ืฆื•ื ื™ืช ืงื‘ื•ืขื” ืฉื“ืจื›ื” ื ืชื—ื‘ืจ ืœืฉืจืช ื”-VPN ืฉืœื ื•. ืœืฉื ื›ืš, ื‘ื—ืœื•ื ื™ืช ื”ื ื™ื•ื•ื˜ ื‘ืฆื“ ืฉืžืืœ ืฉืœ ื”ืžืกืš, ื‘ื—ืจ ืืช ื”ืคืจื™ื˜ IP ืืœืกื˜ื™ ืžืงื˜ื’ื•ืจื™ื” ืจืฉืช ื•ืžืขืจืš ื•ืœื—ืฅ ืขืœ ื”ื›ืคืชื•ืจ ื”ืงืฆื” ื›ืชื•ื‘ืช ื—ื“ืฉื”

Wireguard ืฉื™ืจื•ืช VPN ื‘ื—ื™ื ื ื‘-AWS

2.2.2. ื”ื’ื“ืจืช ื™ืฆื™ืจืช IP ื—ื™ืฆื•ื ื™

ื‘ืฉืœื‘ ื”ื‘ื, ืขืœื™ื ื• ืœื”ืคืขื™ืœ ืืช ื”ืืคืฉืจื•ืช ื‘ืจื™ื›ืช ืืžื–ื•ืŸ (ืžื•ืคืขืœ ื›ื‘ืจื™ืจืช ืžื—ื“ืœ), ื•ืœื—ืฅ ืขืœ ื”ื›ืคืชื•ืจ ืœื”ืงืฆื•ืช

Wireguard ืฉื™ืจื•ืช VPN ื‘ื—ื™ื ื ื‘-AWS

2.2.3. ืกืงื™ืจื” ื›ืœืœื™ืช ืฉืœ ื”ืชื•ืฆืื•ืช ืฉืœ ื™ืฆื™ืจืช ื›ืชื•ื‘ืช IP ื—ื™ืฆื•ื ื™ืช

ื”ืžืกืš ื”ื‘ื ื™ืฆื™ื’ ืืช ื›ืชื•ื‘ืช ื”-IP ื”ื—ื™ืฆื•ื ื™ืช ืฉืงื™ื‘ืœื ื•. ืžื•ืžืœืฅ ืœืฉื ืŸ ืื•ืชื•, ื•ืขื“ื™ืฃ ืืคื™ืœื• ืœืจืฉื•ื ืื•ืชื•. ื–ื” ื™ื”ื™ื” ืฉื™ืžื•ืฉื™ ื™ื•ืชืจ ืžืคืขื ืื—ืช ื‘ืชื”ืœื™ืš ืฉืœ ื”ื’ื“ืจื” ื•ืฉื™ืžื•ืฉ ื ื•ืกืฃ ื‘ืฉืจืช ื”-VPN. ื‘ืžื“ืจื™ืš ื–ื”, ืื ื™ ืžืฉืชืžืฉ ื‘ื›ืชื•ื‘ืช ื”-IP ื›ื“ื•ื’ืžื”. 4.3.2.1. ืœืื—ืจ ืฉื”ื–ื ืช ืืช ื”ื›ืชื•ื‘ืช, ืœื—ืฅ ืขืœ ื”ื›ืคืชื•ืจ ืกึฐื’ื•ึนืจ

Wireguard ืฉื™ืจื•ืช VPN ื‘ื—ื™ื ื ื‘-AWS

2.2.4. ืจืฉื™ืžืช ื›ืชื•ื‘ื•ืช IP ื—ื™ืฆื•ื ื™ื•ืช

ืœืื—ืจ ืžื›ืŸ, ืžื•ืฆื’ืช ืœื ื• ืจืฉื™ืžื” ืฉืœ ื›ืชื•ื‘ื•ืช ื”-IP ื”ืฆื™ื‘ื•ืจื™ื•ืช ื”ืงื‘ื•ืขื•ืช ืฉืœื ื• (ืืœืกื˜ื™ื•ืช IP).

Wireguard ืฉื™ืจื•ืช VPN ื‘ื—ื™ื ื ื‘-AWS

2.2.5. ื”ืงืฆืืช IP ื—ื™ืฆื•ื ื™ ืœืžื•ืคืข

ื‘ืจืฉื™ืžื” ื–ื•, ืื ื• ื‘ื•ื—ืจื™ื ืืช ื›ืชื•ื‘ืช ื”-IP ืฉืงื™ื‘ืœื ื•, ื•ืœื•ื—ืฆื™ื ืขืœ ืœื—ืฆืŸ ื”ืขื›ื‘ืจ ื”ื™ืžื ื™ ื›ื“ื™ ืœื”ืขืœื•ืช ืชืคืจื™ื˜ ื ืคืชื—. ื‘ื•, ื‘ื—ืจ ืืช ื”ืคืจื™ื˜ ื›ืชื•ื‘ืช ืฉื•ืชืคื”ื›ื“ื™ ืœื”ืงืฆื•ืช ืื•ืชื• ืœืžื•ืคืข ืฉื™ืฆืจื ื• ืงื•ื“ื ืœื›ืŸ.

Wireguard ืฉื™ืจื•ืช VPN ื‘ื—ื™ื ื ื‘-AWS

2.2.6. ื”ื’ื“ืจืช ื”ืงืฆืืช IP ื—ื™ืฆื•ื ื™ืช

ื‘ืฉืœื‘ ื”ื‘ื, ื‘ื—ืจ ืืช ื”ืžื•ืคืข ืฉืœื ื• ืžื”ืจืฉื™ืžื” ื”ื ืคืชื—ืช ื•ืœื—ืฅ ืขืœ ื”ื›ืคืชื•ืจ ืขืžื™ืช

Wireguard ืฉื™ืจื•ืช VPN ื‘ื—ื™ื ื ื‘-AWS

2.2.7. ืกืงื™ืจื” ื›ืœืœื™ืช ืฉืœ ืชื•ืฆืื•ืช ื”ืงืฆืืช IP ื—ื™ืฆื•ื ื™ืช

ืœืื—ืจ ืžื›ืŸ, ืื ื• ื™ื›ื•ืœื™ื ืœืจืื•ืช ืฉื”ืžื•ืคืข ืฉืœื ื• ื•ื›ืชื•ื‘ืช ื”-IP ื”ืคืจื˜ื™ืช ืฉืœื• ืงืฉื•ืจื™ื ืœื›ืชื•ื‘ืช ื”-IP ื”ืฆื™ื‘ื•ืจื™ืช ื”ืงื‘ื•ืขื” ืฉืœื ื•.

Wireguard ืฉื™ืจื•ืช VPN ื‘ื—ื™ื ื ื‘-AWS

ื›ืขืช ืื ื• ื™ื›ื•ืœื™ื ืœื”ืชื—ื‘ืจ ืœืžื•ืคืข ื”ื—ื“ืฉ ืฉืœื ื• ืžื‘ื—ื•ืฅ, ืžื”ืžื—ืฉื‘ ืฉืœื ื• ื‘ืืžืฆืขื•ืช SSH.

3. ื”ืชื—ื‘ืจ ืœืžื•ืคืข AWS

SSH ื”ื•ื ืคืจื•ื˜ื•ืงื•ืœ ืžืื•ื‘ื˜ื— ืœืฉืœื™ื˜ื” ืžืจื—ื•ืง ืฉืœ ื”ืชืงื ื™ ืžื—ืฉื‘.

3.1. ื—ื™ื‘ื•ืจ ื‘ืืžืฆืขื•ืช SSH ืžืžื—ืฉื‘ Windows

ื›ื“ื™ ืœื”ืชื—ื‘ืจ ืœืžื—ืฉื‘ Windows, ืชื—ื™ืœื” ืขืœื™ืš ืœื”ื•ืจื™ื“ ื•ืœื”ืชืงื™ืŸ ืืช ื”ืชื•ื›ื ื™ืช ืžืจืง.

3.1.1. ื™ื™ื‘ื•ื โ€‹โ€‹ืžืคืชื— ืคืจื˜ื™ ืขื‘ื•ืจ Putty

3.1.1.1. ืœืื—ืจ ื”ืชืงื ืช Putty, ืขืœื™ืš ืœื”ืคืขื™ืœ ืืช ื›ืœื™ ื”ืฉื™ืจื•ืช PuTTYgen ืฉืžื’ื™ืข ืื™ืชื• ื›ื“ื™ ืœื™ื™ื‘ื ืืช ืžืคืชื— ื”ืื™ืฉื•ืจ ื‘ืคื•ืจืžื˜ PEM, ื‘ืคื•ืจืžื˜ ื”ืžืชืื™ื ืœืฉื™ืžื•ืฉ ื‘- Putty. ืœืฉื ื›ืš, ื‘ื—ืจ ืืช ื”ืคืจื™ื˜ ื‘ืชืคืจื™ื˜ ื”ืขืœื™ื•ืŸ ื”ืžืจื•ืช-> ืžืคืชื— ื™ื™ื‘ื•ื

Wireguard ืฉื™ืจื•ืช VPN ื‘ื—ื™ื ื ื‘-AWS

3.1.1.2. ื‘ื—ื™ืจืช ืžืคืชื— AWS ื‘ืคื•ืจืžื˜ PEM

ืœืื—ืจ ืžื›ืŸ, ื‘ื—ืจ ืืช ื”ืžืคืชื— ืฉืฉืžืจื ื• ื‘ืขื‘ืจ ื‘ืฉืœื‘ 2.1.7.1, ื‘ืžืงืจื” ืฉืœื ื• ืฉืžื• wireguard-awsky.pem

Wireguard ืฉื™ืจื•ืช VPN ื‘ื—ื™ื ื ื‘-AWS

3.1.1.3. ื”ื’ื“ืจืช ืืคืฉืจื•ื™ื•ืช ื™ื™ื‘ื•ื โ€‹โ€‹ืžืคืชื—

ื‘ืฉืœื‘ ื–ื”, ืขืœื™ื ื• ืœืฆื™ื™ืŸ ื”ืขืจื” ืขื‘ื•ืจ ืžืคืชื— ื–ื” (ืชื™ืื•ืจ) ื•ืœื”ื’ื“ื™ืจ ืกื™ืกืžื” ื•ืื™ืฉื•ืจ ืœืฆื•ืจืš ืื‘ื˜ื—ื”. ื–ื” ื™ืชื‘ืงืฉ ื‘ื›ืœ ืคืขื ืฉืชืชื—ื‘ืจ. ืœืคื™ื›ืš, ืื ื• ืžื’ื ื™ื ืขืœ ื”ืžืคืชื— ื‘ืืžืฆืขื•ืช ืกื™ืกืžื” ืžืคื ื™ ืฉื™ืžื•ืฉ ื‘ืœืชื™ ื”ื•ืœื. ืœื ืฆืจื™ืš ืœื”ื’ื“ื™ืจ ืกื™ืกืžื”, ืื‘ืœ ื–ื” ืคื—ื•ืช ื‘ื˜ื•ื— ืื ื”ืžืคืชื— ื ื•ืคืœ ืœื™ื“ื™ื™ื ื”ืœื ื ื›ื•ื ื•ืช. ืœืื—ืจ ืฉื ืœื—ืฅ ืขืœ ื”ื›ืคืชื•ืจ ืฉืžื•ืจ ืžืคืชื— ืคืจื˜ื™

Wireguard ืฉื™ืจื•ืช VPN ื‘ื—ื™ื ื ื‘-AWS

3.1.1.4. ืฉืžื™ืจืช ืžืคืชื— ืžื™ื•ื‘ื

ื ืคืชื—ืช ืชื™ื‘ืช ื“ื•-ืฉื™ื— ืฉืœ ืฉืžื™ืจืช ืงื•ื‘ืฅ ื•ืื ื• ืฉื•ืžืจื™ื ืืช ื”ืžืคืชื— ื”ืคืจื˜ื™ ืฉืœื ื• ื›ืงื•ื‘ืฅ ืขื ื”ืกื™ื•ืžืช .ppkืžืชืื™ื ืœืฉื™ืžื•ืฉ ื‘ืชื•ื›ื ื™ืช ืžืจืง.
ืฆื™ื™ืŸ ืืช ืฉื ื”ืžืคืชื— (ื‘ืžืงืจื” ืฉืœื ื• wireguard-awskey.ppk) ื•ืœื—ืฅ ืขืœ ื”ื›ืคืชื•ืจ ืฉื•ืžืจ.

Wireguard ืฉื™ืจื•ืช VPN ื‘ื—ื™ื ื ื‘-AWS

3.1.2. ื™ืฆื™ืจื” ื•ื”ื’ื“ืจืช ื—ื™ื‘ื•ืจ ื‘- Putty

3.1.2.1. ืฆื•ืจ ืงืฉืจ

ืคืชื— ืืช ืชื•ื›ื ื™ืช Putty, ื‘ื—ืจ ืงื˜ื’ื•ืจื™ื” ืžื•ึนืฉืึธื‘ (ื”ื•ื ืคืชื•ื— ื›ื‘ืจื™ืจืช ืžื—ื“ืœ) ื•ื‘ืฉื“ื” ืฉื ืžืืจื— ื”ื–ืŸ ืืช ื›ืชื•ื‘ืช ื”-IP ื”ืฆื™ื‘ื•ืจื™ืช ืฉืœ ื”ืฉืจืช ืฉืœื ื•, ืฉืงื™ื‘ืœื ื• ื‘ืฉืœื‘ 2.2.3. ื‘ืฉื˜ื— ื”ืคืขืœื” ื ืฉืžืจื” ื”ื–ืŸ ืฉื ืฉืจื™ืจื•ืชื™ ืœื—ื™ื‘ื•ืจ ืฉืœื ื• (ื‘ืžืงืจื” ืฉืœื™ wireguard-aws-london), ื•ืœืื—ืจ ืžื›ืŸ ืœื—ืฅ ืขืœ ื”ืœื—ืฆืŸ ืฉืžื•ืจ ื›ื“ื™ ืœืฉืžื•ืจ ืืช ื”ืฉื™ื ื•ื™ื™ื ืฉืขืฉื™ื ื•.

Wireguard ืฉื™ืจื•ืช VPN ื‘ื—ื™ื ื ื‘-AWS

3.1.2.2. ื”ื’ื“ืจืช ื”ืชื—ื‘ืจื•ืช ืื•ื˜ื•ืžื˜ื™ืช ืœืžืฉืชืžืฉ

ืขื•ื“ ื‘ืงื˜ื’ื•ืจื™ื” ื”ืงืฉืจ, ื‘ื—ืจ ืงื˜ื’ื•ืจื™ื™ืช ืžืฉื ื” ื ืชื•ื ื™ื ื•ื‘ืฉื˜ื— ืฉื ืžืฉืชืžืฉ ืœื›ื ื™ืกื” ืื•ื˜ื•ืžื˜ื™ืช ื”ื›ื ืก ืฉื ืžืฉืชืžืฉ ืื•ื‘ื•ื ื˜ื• ื”ื•ื ื”ืžืฉืชืžืฉ ื”ืจื’ื™ืœ ืฉืœ ื”ืžื•ืคืข ื‘-AWS ืขื ืื•ื‘ื•ื ื˜ื•.

Wireguard ืฉื™ืจื•ืช VPN ื‘ื—ื™ื ื ื‘-AWS

3.1.2.3. ื‘ื—ื™ืจืช ืžืคืชื— ืคืจื˜ื™ ืœื—ื™ื‘ื•ืจ ื‘ืืžืฆืขื•ืช SSH

ืœืื—ืจ ืžื›ืŸ ืขื‘ื•ืจ ืืœ ืชืช ื”ืงื˜ื’ื•ืจื™ื” ื—ื™ื‘ื•ืจ/SSH/ืื™ืฉื•ืจ ื•ืœื™ื“ ื”ืฉื“ื” ืงื•ื‘ืฅ ืžืคืชื— ืคืจื˜ื™ ืœืื™ืžื•ืช ืœื—ืฅ ืขืœ ื”ื›ืคืชื•ืจ ืœึฐื“ึทืคื“ึตืฃโ€ฆ ื›ื“ื™ ืœื‘ื—ื•ืจ ืงื•ื‘ืฅ ืขื ืชืขื•ื“ืช ืžืคืชื—.

Wireguard ืฉื™ืจื•ืช VPN ื‘ื—ื™ื ื ื‘-AWS

3.1.2.4. ืคืชื™ื—ืช ืžืคืชื— ืžื™ื•ื‘ื

ืฆื™ื™ืŸ ืืช ื”ืžืคืชื— ืฉื™ื™ื‘ืื ื• ืงื•ื“ื ืœื›ืŸ ื‘ืฉืœื‘ 3.1.1.4, ื‘ืžืงืจื” ืฉืœื ื• ื–ื” ืงื•ื‘ืฅ wireguard-awsky.ppk, ื•ืœื—ืฅ ืขืœ ื”ื›ืคืชื•ืจ ืคืชื•ื—.

Wireguard ืฉื™ืจื•ืช VPN ื‘ื—ื™ื ื ื‘-AWS

3.1.2.5. ืฉืžื™ืจืช ื”ื’ื“ืจื•ืช ื•ื”ืชื—ืœืช ื—ื™ื‘ื•ืจ

ื—ื•ื–ืจ ืœื“ืฃ ื”ืงื˜ื’ื•ืจื™ื•ืช ืžื•ึนืฉืึธื‘ ืœื—ืฅ ืฉื•ื‘ ืขืœ ื”ื›ืคืชื•ืจ ืฉืžื•ืจ, ื›ื“ื™ ืœืฉืžื•ืจ ืืช ื”ืฉื™ื ื•ื™ื™ื ืฉื‘ื™ืฆืขื ื• ืงื•ื“ื ื‘ืฉืœื‘ื™ื ื”ืงื•ื“ืžื™ื (3.1.2.2 - 3.1.2.4). ื•ืื– ืื ื—ื ื• ืœื•ื—ืฆื™ื ืขืœ ื”ื›ืคืชื•ืจ ืœื”ืจื—ื™ื‘ ื›ื“ื™ ืœืคืชื•ื— ืืช ื—ื™ื‘ื•ืจ ื”-SSH ื”ืžืจื•ื—ืง ืฉื™ืฆืจื ื• ื•ื”ื’ื“ืจื ื•.

Wireguard ืฉื™ืจื•ืช VPN ื‘ื—ื™ื ื ื‘-AWS

3.1.2.7. ื”ืงืžืช ืืžื•ืŸ ื‘ื™ืŸ ืžืืจื—ื™ื

ื‘ืฉืœื‘ ื”ื‘ื, ื‘ืคืขื ื”ืจืืฉื•ื ื” ืฉืื ื• ืžื ืกื™ื ืœื”ืชื—ื‘ืจ, ืื ื• ืžืงื‘ืœื™ื ืื–ื”ืจื”, ืื™ืŸ ืœื ื• ืืžื•ืŸ ืžื•ื’ื“ืจ ื‘ื™ืŸ ืฉื ื™ ื”ืžื—ืฉื‘ื™ื, ื•ืฉื•ืืœื™ื ืื ืœืกืžื•ืš ืขืœ ื”ืžื—ืฉื‘ ื”ืžืจื•ื—ืง. ืื ื—ื ื• ื ืœื—ืฅ ืขืœ ื”ื›ืคืชื•ืจ ื›ืŸ, ื•ื‘ื›ืš ืœื”ื•ืกื™ืฃ ืื•ืชื• ืœืจืฉื™ืžืช ื”ืžืืจื—ื™ื ื”ืžื”ื™ืžื ื™ื.

Wireguard ืฉื™ืจื•ืช VPN ื‘ื—ื™ื ื ื‘-AWS

3.1.2.8. ื”ื–ื ืช ืกื™ืกืžื” ื›ื“ื™ ืœื’ืฉืช ืœืžืคืชื—

ืœืื—ืจ ืžื›ืŸ, ื ืคืชื— ื—ืœื•ืŸ ืžืกื•ืฃ, ืฉื‘ื• ืชืชื‘ืงืฉื• ืœื”ื–ื™ืŸ ืืช ื”ืกื™ืกืžื” ืขื‘ื•ืจ ื”ืžืคืชื—, ืื ื”ื’ื“ืจืชื ืื•ืชื” ืžื•ืงื“ื ื™ื•ืชืจ ื‘ืฉืœื‘ 3.1.1.3. ื‘ืขืช ื”ื–ื ืช ืกื™ืกืžื”, ืœื ืžืชืจื—ืฉืช ืคืขื•ืœื” ืขืœ ื”ืžืกืš. ืื ืืชื” ืขื•ืฉื” ื˜ืขื•ืช, ืืชื” ื™ื›ื•ืœ ืœื”ืฉืชืžืฉ ื‘ืžืคืชื— Backspace.

Wireguard ืฉื™ืจื•ืช VPN ื‘ื—ื™ื ื ื‘-AWS

3.1.2.9. ื”ื•ื“ืขืช ื‘ืจื›ื” ืขืœ ื—ื™ื‘ื•ืจ ืžื•ืฆืœื—

ืœืื—ืจ ื”ื–ื ืช ื”ืกื™ืกืžื” ื‘ื”ืฆืœื—ื”, ืžื•ืฆื’ ืœื ื• ื˜ืงืกื˜ ื‘ืจื•ืš ื”ื‘ื ื‘ื˜ืจืžื™ื ืœ, ืฉืื•ืžืจ ืœื ื• ืฉื”ืžืขืจื›ืช ื”ืžืจื•ื—ืงืช ืžื•ื›ื ื” ืœื‘ืฆืข ืืช ื”ืคืงื•ื“ื•ืช ืฉืœื ื•.

Wireguard ืฉื™ืจื•ืช VPN ื‘ื—ื™ื ื ื‘-AWS

4. ื”ื’ื“ืจืช ืฉืจืช ื”-Wireguard

ื ื™ืชืŸ ืœืžืฆื•ื ืืช ื”ื”ื•ืจืื•ืช ื”ืžืขื•ื“ื›ื ื•ืช ื‘ื™ื•ืชืจ ืœื”ืชืงื ื” ื•ืฉื™ืžื•ืฉ ื‘-Wireguard ื‘ืืžืฆืขื•ืช ื”ืกืงืจื™ืคื˜ื™ื ื”ืžืชื•ืืจื™ื ืœื”ืœืŸ ื‘ืžืื’ืจ: https://github.com/isystem-io/wireguard-aws

4.1. ื”ืชืงื ืช WireGuard

ื‘ื˜ืจืžื™ื ืœ, ื”ื–ื™ื ื• ืืช ื”ืคืงื•ื“ื•ืช ื”ื‘ืื•ืช (ื ื™ืชืŸ ืœื”ืขืชื™ืง ืœืœื•ื—, ื•ืœื”ื“ื‘ื™ืง ื‘ื˜ืจืžื™ื ืœ ืขืœ ื™ื“ื™ ืœื—ื™ืฆื” ืขืœ ืœื—ืฆืŸ ื”ืขื›ื‘ืจ ื”ื™ืžื ื™):

4.1.1. ืฉื™ื‘ื•ื˜ ืžืื’ืจ

ืฉื›ืคืœ ืืช ื”ืžืื’ืจ ืขื ืกืงืจื™ืคื˜ื™ื ืฉืœ ื”ื”ืชืงื ื” ืฉืœ Wireguard

git clone https://github.com/pprometey/wireguard_aws.git wireguard_aws

4.1.2. ืžืขื‘ืจ ืœืกืคืจื™ื™ื” ืขื ืกืงืจื™ืคื˜ื™ื

ืขื‘ื•ืจ ืืœ ื”ืกืคืจื™ื™ื” ืขื ื”ืžืื’ืจ ื”ืžืฉื•ื‘ื˜

cd wireguard_aws

4.1.3 ื”ืคืขืœืช ืกืงืจื™ืคื˜ ื”ืืชื—ื•ืœ

ื”ืคืขืœ ื›ืžื ื”ืœ ืžืขืจื›ืช (ืžืฉืชืžืฉ ืฉื•ืจืฉ) ืืช ืกืงืจื™ืคื˜ ื”ื”ืชืงื ื” ืฉืœ Wireguard

sudo ./initial.sh

ืชื”ืœื™ืš ื”ื”ืชืงื ื” ื™ื‘ืงืฉ ื ืชื•ื ื™ื ืžืกื•ื™ืžื™ื ื”ื ื“ืจืฉื™ื ืœื”ื’ื“ืจืช Wireguard

4.1.3.1. ื›ื ื™ืกืช ื ืงื•ื“ืช ื—ื™ื‘ื•ืจ

ื”ื–ืŸ ืืช ื›ืชื•ื‘ืช ื”-IP ื”ื—ื™ืฆื•ื ื™ืช ื•ื”ื™ืฆื™ืื” ื”ืคืชื•ื—ื” ืฉืœ ืฉืจืช ื”-Wireguard. ืงื™ื‘ืœื ื• ืืช ื›ืชื•ื‘ืช ื”-IP ื”ื—ื™ืฆื•ื ื™ืช ืฉืœ ื”ืฉืจืช ื‘ืฉืœื‘ 2.2.3, ื•ืคืชื—ื ื• ืืช ื”ื™ืฆื™ืื” ื‘ืฉืœื‘ 2.1.5. ืื ื• ืžืฆื™ื™ื ื™ื ืื•ืชื ื™ื—ื“, ืžืคืจื™ื“ื™ื ืื•ืชื ืขื ื ืงื•ื“ืชื™ื™ื, ืœืžืฉืœ 4.3.2.1:54321ื•ืœืื—ืจ ืžื›ืŸ ื”ืงืฉ ืขืœ ื”ืžืงืฉ ื–ืŸ
ืคืœื˜ ืœื“ื•ื’ืžื”:

Enter the endpoint (external ip and port) in format [ipv4:port] (e.g. 4.3.2.1:54321): 4.3.2.1:54321

4.1.3.2. ื”ื–ื ืช ื›ืชื•ื‘ืช ื”-IP ื”ืคื ื™ืžื™ืช

ื”ื–ืŸ ืืช ื›ืชื•ื‘ืช ื”-IP ืฉืœ ืฉืจืช Wireguard ื‘ืจืฉืช ื”ืžืฉื ื” ืฉืœ ื”-VPN ื”ืžืื•ื‘ื˜ื—ืช, ืื ืื™ื ืš ื™ื•ื“ืข ืžื”ื™, ืคืฉื•ื˜ ื”ืงืฉ ืขืœ ืžืงืฉ Enter ื›ื“ื™ ืœื”ื’ื“ื™ืจ ืืช ืขืจืš ื‘ืจื™ืจืช ื”ืžื—ื“ืœ (10.50.0.1)
ืคืœื˜ ืœื“ื•ื’ืžื”:

Enter the server address in the VPN subnet (CIDR format) ([ENTER] set to default: 10.50.0.1):

4.1.3.3. ืฆื™ื•ืŸ ืฉืจืช DNS

ื”ื–ืŸ ืืช ื›ืชื•ื‘ืช ื”-IP ืฉืœ ืฉืจืช ื”-DNS, ืื• ืคืฉื•ื˜ ื”ืงืฉ ืขืœ ืžืงืฉ Enter ื›ื“ื™ ืœื”ื’ื“ื™ืจ ืืช ืขืจืš ื‘ืจื™ืจืช ื”ืžื—ื“ืœ 1.1.1.1 (DNS ืฆื™ื‘ื•ืจื™ ืฉืœ Cloudflare)
ืคืœื˜ ืœื“ื•ื’ืžื”:

Enter the ip address of the server DNS (CIDR format) ([ENTER] set to default: 1.1.1.1):

4.1.3.4. ืฆื™ื•ืŸ ืžืžืฉืง ื”-WAN

ืœืื—ืจ ืžื›ืŸ, ืขืœื™ืš ืœื”ื–ื™ืŸ ืืช ืฉื ืžืžืฉืง ื”ืจืฉืช ื”ื—ื™ืฆื•ื ื™ ืฉื™ืื–ื™ืŸ ื‘ืžืžืฉืง ื”ืจืฉืช ื”ืคื ื™ืžื™ ืฉืœ VPN. ืคืฉื•ื˜ ื”ืงืฉ Enter ื›ื“ื™ ืœื”ื’ื“ื™ืจ ืืช ืขืจืš ื‘ืจื™ืจืช ื”ืžื—ื“ืœ ืขื‘ื•ืจ AWS (eth0)
ืคืœื˜ ืœื“ื•ื’ืžื”:

Enter the name of the WAN network interface ([ENTER] set to default: eth0):

4.1.3.5. ืฆื™ื•ืŸ ืฉื ื”ืœืงื•ื—

ื”ื–ืŸ ืืช ืฉื ืžืฉืชืžืฉ ื”-VPN. ื”ืขื•ื‘ื“ื” ื”ื™ื ืฉืฉืจืช ื”-VPN ืฉืœ Wireguard ืœื ื™ื•ื›ืœ ืœื”ืคืขื™ืœ ืขื“ ืฉื™ืชื•ื•ืกืฃ ืœืคื—ื•ืช ืœืงื•ื— ืื—ื“. ื‘ืžืงืจื” ื–ื”, ื”ื–ื ืชื™ ืืช ื”ืฉื Alex@mobile
ืคืœื˜ ืœื“ื•ื’ืžื”:

Enter VPN user name: Alex@mobile

ืœืื—ืจ ืžื›ืŸ, ื™ืฉ ืœื”ืฆื™ื’ ืงื•ื“ QR ืขื ื”ืชืฆื•ืจื” ืฉืœ ื”ืœืงื•ื— ื”ื—ื“ืฉ ืฉื ื•ืกืฃ ืขืœ ื”ืžืกืš, ืื•ืชื• ื™ืฉ ืœืงืจื•ื ื‘ืืžืฆืขื•ืช ืœืงื•ื— Wireguard ื”ื ื™ื™ื“ ื‘-Android ืื• iOS ื›ื“ื™ ืœื”ื’ื“ื™ืจ ืื•ืชื•. ื•ื’ื ืžืชื—ืช ืœืงื•ื“ QR, ื”ื˜ืงืกื˜ ืฉืœ ืงื•ื‘ืฅ ื”ืชืฆื•ืจื” ื™ื•ืฆื’ ื‘ืžืงืจื” ืฉืœ ืชืฆื•ืจื” ื™ื“ื ื™ืช ืฉืœ ืœืงื•ื—ื•ืช. ื›ื™ืฆื“ ืœืขืฉื•ืช ื–ืืช ื ื“ื•ืŸ ืœื”ืœืŸ.

Wireguard ืฉื™ืจื•ืช VPN ื‘ื—ื™ื ื ื‘-AWS

4.2. ื”ื•ืกืคืช ืžืฉืชืžืฉ VPN ื—ื“ืฉ

ื›ื“ื™ ืœื”ื•ืกื™ืฃ ืžืฉืชืžืฉ ื—ื“ืฉ, ืขืœื™ืš ืœื”ืคืขื™ืœ ืืช ื”ืกืงืจื™ืคื˜ ื‘ื˜ืจืžื™ื ืœ add-client.sh

sudo ./add-client.sh

ื”ืกืงืจื™ืคื˜ ืžื‘ืงืฉ ืฉื ืžืฉืชืžืฉ:
ืคืœื˜ ืœื“ื•ื’ืžื”:

Enter VPN user name: 

ื›ืžื• ื›ืŸ, ื ื™ืชืŸ ืœื”ืขื‘ื™ืจ ืืช ืฉื ื”ืžืฉืชืžืฉื™ื ื›ืคืจืžื˜ืจ ืกืงืจื™ืคื˜ (ื‘ืžืงืจื” ื–ื” Alex@mobile):

sudo ./add-client.sh Alex@mobile

ื›ืชื•ืฆืื” ืžื‘ื™ืฆื•ืข ื”ืกืงืจื™ืคื˜, ื‘ืกืคืจื™ื™ื” ืขื ืฉื ื”ืœืงื•ื— ืœืื•ืจืš ื”ื ืชื™ื‘ /etc/wireguard/clients/{ะ˜ะผัะšะปะธะตะฝั‚ะฐ} ื™ื™ื•ื•ืฆืจ ืงื•ื‘ืฅ ืชืฆื•ืจืช ื”ืœืงื•ื— /etc/wireguard/clients/{ะ˜ะผัะšะปะธะตะฝั‚ะฐ}/{ะ˜ะผัะšะปะธะตะฝั‚ะฐ}.conf, ื•ืžืกืš ื”ื˜ืจืžื™ื ืœ ื™ืฆื™ื’ ืงื•ื“ QR ืœื”ื’ื“ืจืช ืœืงื•ื—ื•ืช ื ื™ื™ื“ื™ื ื•ืืช ื”ืชื•ื›ืŸ ืฉืœ ืงื•ื‘ืฅ ื”ืชืฆื•ืจื”.

4.2.1. ืงื•ื‘ืฅ ืชืฆื•ืจืช ื”ืžืฉืชืžืฉ

ื ื™ืชืŸ ืœื”ืฆื™ื’ ืืช ื”ืชื•ื›ืŸ ืฉืœ ืงื•ื‘ืฅ ื”-.conf ืขืœ ื”ืžืกืš, ืœื”ื’ื“ืจื” ื™ื“ื ื™ืช ืฉืœ ื”ืœืงื•ื—, ื‘ืืžืฆืขื•ืช ื”ืคืงื•ื“ื” cat

sudo cat /etc/wireguard/clients/Alex@mobile/[email protected]

ืชื•ืฆืืช ื‘ื™ืฆื•ืข:

[Interface]
PrivateKey = oDMWr0toPVCvgKt5oncLLRfHRit+jbzT5cshNUi8zlM=
Address = 10.50.0.2/32
DNS = 1.1.1.1

[Peer]
PublicKey = mLnd+mul15U0EP6jCH5MRhIAjsfKYuIU/j5ml8Z2SEk=
PresharedKey = wjXdcf8CG29Scmnl5D97N46PhVn1jecioaXjdvrEkAc=
AllowedIPs = 0.0.0.0/0, ::/0
Endpoint = 4.3.2.1:54321

ืชื™ืื•ืจ ืงื•ื‘ืฅ ืชืฆื•ืจืช ื”ืœืงื•ื—:

[Interface]
PrivateKey = ะŸั€ะธะฒะฐั‚ะฝั‹ะน ะบะปัŽั‡ ะบะปะธะตะฝั‚ะฐ
Address = IP ะฐะดั€ะตั ะบะปะธะตะฝั‚ะฐ
DNS = ะ”ะะก ะธัะฟะพะปัŒะทัƒะตะผั‹ะน ะบะปะธะตะฝั‚ะพะผ

[Peer]
PublicKey = ะŸัƒะฑะปะธั‡ะฝั‹ะน ะบะปัŽั‡ ัะตั€ะฒะตั€ะฐ
PresharedKey = ะžะฑั‰ะธ ะบะปัŽั‡ ัะตั€ะฒะตั€ะฐ ะธ ะบะปะธะตะฝั‚ะฐ
AllowedIPs = ะ ะฐะทั€ะตัˆะตะฝะฝั‹ะต ะฐะดั€ะตัะฐ ะดะปั ะฟะพะดะบะปัŽั‡ะตะฝะธั (ะฒัะต -  0.0.0.0/0, ::/0)
Endpoint = IP ะฐะดั€ะตั ะธ ะฟะพั€ั‚ ะดะปั ะฟะพะดะบะปัŽั‡ะตะฝะธั

4.2.2. ืงื•ื“ QR ืขื‘ื•ืจ ืชืฆื•ืจืช ื”ืœืงื•ื—

ืืชื” ื™ื›ื•ืœ ืœื”ืฆื™ื’ ืงื•ื“ QR ืชืฆื•ืจื” ืขื‘ื•ืจ ืœืงื•ื— ืฉื ื•ืฆืจ ื‘ืขื‘ืจ ื‘ืžืกืš ื”ืžืกื•ืฃ ื‘ืืžืฆืขื•ืช ื”ืคืงื•ื“ื” qrencode -t ansiutf8 (ื‘ื“ื•ื’ืžื” ื–ื•, ื ืขืฉื” ืฉื™ืžื•ืฉ ื‘ืœืงื•ื— ื‘ืฉื Alex@mobile):

sudo cat /etc/wireguard/clients/Alex@mobile/[email protected] | qrencode -t ansiutf8

5. ื”ื’ื“ืจืช ืœืงื•ื—ื•ืช VPN

5.1. ื”ื’ื“ืจืช ืœืงื•ื— ืื ื“ืจื•ืื™ื“ ืœื ื™ื™ื“

ืœืงื•ื— Wireguard ื”ืจืฉืžื™ ืขื‘ื•ืจ ืื ื“ืจื•ืื™ื“ ื™ื›ื•ืœ ืœื”ื™ื•ืช ื”ืชืงืŸ ืžื—ื ื•ืช Google Play ื”ืจืฉืžื™ืช

ืœืื—ืจ ืžื›ืŸ, ืขืœื™ืš ืœื™ื™ื‘ื ืืช ื”ืชืฆื•ืจื” ืขืœ ื™ื“ื™ ืงืจื™ืืช ืงื•ื“ ื”-QR ืขื ืชืฆื•ืจืช ื”ืœืงื•ื— (ืจืื” ืกืขื™ืฃ 4.2.2) ื•ืœืชืช ืœื• ืฉื:

Wireguard ืฉื™ืจื•ืช VPN ื‘ื—ื™ื ื ื‘-AWS

ืœืื—ืจ ื™ื™ื‘ื•ื โ€‹โ€‹ืžื•ืฆืœื— ืฉืœ ื”ืชืฆื•ืจื”, ืชื•ื›ืœ ืœื”ืคืขื™ืœ ืืช ืžื ื”ืจืช ื”-VPN. ื—ื™ื‘ื•ืจ ืžื•ืฆืœื— ื™ืฆื•ื™ืŸ ืขืœ ื™ื“ื™ ืžื—ืกืŸ ืžืคืชื— ื‘ืžื’ืฉ ื”ืžืขืจื›ืช ืฉืœ ืื ื“ืจื•ืื™ื“

Wireguard ืฉื™ืจื•ืช VPN ื‘ื—ื™ื ื ื‘-AWS

5.2. ื”ื’ื“ืจืช ืœืงื•ื— Windows

ืจืืฉื™ืช ืขืœื™ืš ืœื”ื•ืจื™ื“ ื•ืœื”ืชืงื™ืŸ ืืช ื”ืชื•ื›ื ื™ืช TunSafe ืขื‘ื•ืจ Windows ื”ื•ื ืœืงื•ื— Wireguard ืขื‘ื•ืจ Windows.

5.2.1. ื™ืฆื™ืจืช ืงื•ื‘ืฅ ืชืฆื•ืจืช ื™ื™ื‘ื•ื

ืœื—ืฅ ืœื—ื™ืฆื” ื™ืžื ื™ืช ื›ื“ื™ ืœื™ืฆื•ืจ ืงื•ื‘ืฅ ื˜ืงืกื˜ ืขืœ ืฉื•ืœื—ืŸ ื”ืขื‘ื•ื“ื”.

Wireguard ืฉื™ืจื•ืช VPN ื‘ื—ื™ื ื ื‘-AWS

5.2.2. ื”ืขืชืง ืืช ืชื•ื›ืŸ ืงื•ื‘ืฅ ื”ืชืฆื•ืจื” ืžื”ืฉืจืช

ืœืื—ืจ ืžื›ืŸ ื ื—ื–ื•ืจ ืœืžืกื•ืฃ Putty ื•ื ืฆื™ื’ ืืช ืชื•ื›ืŸ ืงื•ื‘ืฅ ื”ืชืฆื•ืจื” ืฉืœ ื”ืžืฉืชืžืฉ ื”ืจืฆื•ื™, ื›ืžืชื•ืืจ ื‘ืฉืœื‘ 4.2.1.
ืœืื—ืจ ืžื›ืŸ, ืœื—ืฅ ื‘ืืžืฆืขื•ืช ืœื—ืฆืŸ ื”ืขื›ื‘ืจ ื”ื™ืžื ื™ ืขืœ ื˜ืงืกื˜ ื”ืชืฆื•ืจื” ื‘ืžืกื•ืฃ Putty, ืœืื—ืจ ื”ืฉืœืžืช ื”ื‘ื—ื™ืจื”, ื”ื•ื ื™ื•ืขืชืง ืื•ื˜ื•ืžื˜ื™ืช ืœืœื•ื—.

Wireguard ืฉื™ืจื•ืช VPN ื‘ื—ื™ื ื ื‘-AWS

5.2.3. ื”ืขืชืงืช ื”ืชืฆื•ืจื” ืœืงื•ื‘ืฅ ืชืฆื•ืจื” ืžืงื•ืžื™

ื‘ืฉื“ื” ื–ื” ื ื—ื–ื•ืจ ืœืงื•ื‘ืฅ ื”ื˜ืงืกื˜ ืฉื™ืฆืจื ื• ืงื•ื“ื ืœื›ืŸ ืขืœ ืฉื•ืœื—ืŸ ื”ืขื‘ื•ื“ื” ื•ืžื“ื‘ื™ืงื™ื ืœืชื•ื›ื• ืืช ื˜ืงืกื˜ ื”ืชืฆื•ืจื” ืžื”ืœื•ื—.

Wireguard ืฉื™ืจื•ืช VPN ื‘ื—ื™ื ื ื‘-AWS

5.2.4. ืฉืžื™ืจืช ืงื•ื‘ืฅ ืชืฆื•ืจื” ืžืงื•ืžื™

ืฉืžื•ืจ ืืช ื”ืงื•ื‘ืฅ ืขื ืกื™ื•ืžืช .conf (ื‘ืžืงืจื” ื–ื” ื‘ืฉื london.conf)

Wireguard ืฉื™ืจื•ืช VPN ื‘ื—ื™ื ื ื‘-AWS

5.2.5. ื™ื™ื‘ื•ื โ€‹โ€‹ืงื•ื‘ืฅ ืชืฆื•ืจื” ืžืงื•ืžื™

ืœืื—ืจ ืžื›ืŸ, ืขืœื™ืš ืœื™ื™ื‘ื ืืช ืงื•ื‘ืฅ ื”ืชืฆื•ืจื” ืœืชื•ื›ื ื™ืช TunSafe.

Wireguard ืฉื™ืจื•ืช VPN ื‘ื—ื™ื ื ื‘-AWS

5.2.6. ื”ื’ื“ืจืช ื—ื™ื‘ื•ืจ VPN

ื‘ื—ืจ ืงื•ื‘ืฅ ืชืฆื•ืจื” ื–ื” ื•ื”ืชื—ื‘ืจ ืขืœ ื™ื“ื™ ืœื—ื™ืฆื” ืขืœ ื”ื›ืคืชื•ืจ ืœึฐื—ึทื‘ึผึตืจ.
Wireguard ืฉื™ืจื•ืช VPN ื‘ื—ื™ื ื ื‘-AWS

6. ื‘ื•ื“ืงื™ื ืื ื”ื—ื™ื‘ื•ืจ ื”ืฆืœื™ื—

ื›ื“ื™ ืœื‘ื“ื•ืง ืืช ื”ืฆืœื—ืช ื”ื—ื™ื‘ื•ืจ ื“ืจืš ืžื ื”ืจืช ื”-VPN, ืฆืจื™ืš ืœืคืชื•ื— ื“ืคื“ืคืŸ ื•ืœืขื‘ื•ืจ ืœืืชืจ https://2ip.ua/ru/

Wireguard ืฉื™ืจื•ืช VPN ื‘ื—ื™ื ื ื‘-AWS

ื›ืชื•ื‘ืช ื”-IP ื”ืžื•ืฆื’ืช ื—ื™ื™ื‘ืช ืœื”ืชืื™ื ืœื–ื• ืฉืงื™ื‘ืœื ื• ื‘ืฉืœื‘ 2.2.3.
ืื ื›ืŸ, ืื– ืžื ื”ืจืช ื”-VPN ืคื•ืขืœืช ื‘ื”ืฆืœื—ื”.

ืžืžืกื•ืฃ ืœื™ื ื•ืงืก, ืืชื” ื™ื›ื•ืœ ืœื‘ื“ื•ืง ืืช ื›ืชื•ื‘ืช ื”-IP ืฉืœืš ืขืœ ื™ื“ื™ ื”ืงืœื“ืช:

curl http://zx2c4.com/ip

ืื• ืฉืืชื” ื™ื›ื•ืœ ืคืฉื•ื˜ ืœืœื›ืช ืœ-pornhub ืื ืืชื” ื‘ืงื–ื—ืกื˜ืŸ.

ืžืงื•ืจ: www.habr.com

ื”ื•ืกืคืช ืชื’ื•ื‘ื”