ื‘ืึทืฉื˜ืขื˜ื™ืงืŸ WireGuard ืื•ื™ืฃ ืึท ืžื™ืงืจืึธื˜ื™ืง ืจืึทื•ื˜ืขืจ ืžื™ื˜ OpenWrt

ื‘ืึทืฉื˜ืขื˜ื™ืงืŸ WireGuard ืื•ื™ืฃ ืึท ืžื™ืงืจืึธื˜ื™ืง ืจืึทื•ื˜ืขืจ ืžื™ื˜ OpenWrt
ืื™ืŸ ืจื•ื‘ึฟ ืงืึทืกืขืก, ืงืึทื ืขืงื˜ื™ื ื’ ืึท ืจืึทื•ื˜ืขืจ ืฆื• ืึท ื•ื•ืคึผืŸ ืื™ื– ื ื™ืฉื˜ ืฉื•ื•ืขืจ, ืึธื‘ืขืจ ืื•ื™ื‘ ืื™ืจ ื•ื•ื™ืœืŸ ืฆื• ื‘ืึทืฉื™ืฆืŸ ื“ื™ ื’ืื ืฆืข ื ืขืฅ ืื•ืŸ ืื™ืŸ ื“ืขืจ ื–ืขืœื‘ื™ืงืขืจ ืฆื™ื™ื˜ ื”ืึทืœื˜ืŸ ืึธืคึผื˜ื™ืžืึทืœ ืงืฉืจ ื’ื™ื›ืงื™ื™ึทื˜, ื“ืขืจ ื‘ืขืกื˜ืขืจ ืœื™ื™ื–ื•ื ื’ ืื™ื– ืฆื• ื ื•ืฆืŸ ืึท VPN ื˜ื•ื ืขืœ. WireGuard.

ืจืึธื•ื˜ืขืจืก ืžื™ืงืจืึธื˜ื™ืง ืคึผืจื•ื•ื•ื“ ืฆื• ื–ื™ื™ืŸ ืคืึทืจืœืึธื–ืœืขืš ืื•ืŸ ื–ื™ื™ืขืจ ืคืœืขืงืกืึทื‘ืึทืœ ืกืึทืœื•ืฉืึทื ื–, ืึธื‘ืขืจ ืœื™ื™ื“ืขืจ WireGurd ืฉื˜ื™ืฆืŸ ืื•ื™ืฃ RouterOS ื ืึธืš ื ื™ืฉื˜ ืื•ืŸ ืขืก ืื™ื– ื ื™ืฉื˜ ื‘ืืงืื ื˜ ื•ื•ืขืŸ ืขืก ื•ื•ืขื˜ ื“ืขืจืฉื™ื™ึทื ืขืŸ ืื•ืŸ ืื™ืŸ ื•ื•ืึธืก ืคืึธืจืฉื˜ืขืœื•ื ื’. ืœืขืฆื˜ื ืก ัั‚ะฐะปะพ ะธะทะฒะตัั‚ะฝะพ ื•ื•ืขื’ืŸ ื•ื•ืึธืก ื“ื™ ื“ืขื•ื•ืขืœืึธืคึผืขืจืก ืคื•ืŸ ื“ื™ WireGuard VPN ื˜ื•ื ืขืœ ืกืึทื’ื“ื–ืฉืขืกื˜ื™ื“ ืœืึทื˜ืข ืฉื˜ืขืœืŸ, ื•ื•ืึธืก ื•ื•ืขื˜ ืžืึทื›ืŸ ื–ื™ื™ืขืจ ื•ื•ืคึผืŸ ื˜ืึทื ืึทืœื™ื ื’ ื•ื•ื™ื™ื›ื•ื•ืืจื’ ื˜ื™ื™ืœ ืคื•ืŸ ื“ื™ ืœื™ื ื•ืงืก ืงืขืจืŸ, ืžื™ืจ ื”ืึธืคืŸ ืึทื– ื“ืึธืก ื•ื•ืขื˜ ื‘ื™ื™ืฉื˜ื™ื™ืขืจืŸ ืฆื• ื“ื™ ืงื™ื ื“ืขืจ ืื™ืŸ RouterOS.

ืึธื‘ืขืจ, ืœื™ื™ื“ืขืจ, ืฆื• ืงืึทื ืคื™ื’ื™ืขืจ WireGuard ืื•ื™ืฃ ืึท ืžื™ืงืจืึธื˜ื™ืง ืจืึทื•ื˜ืขืจ, ืื™ืจ ื“ืึทืจืคึฟืŸ ืฆื• ื˜ื•ื™ืฉืŸ ื“ื™ ืคื™ืจืžื•ื•ืึทืจืข.

ืคืœืึทืฉื™ื ื’ ืžื™ืงืจืึธื˜ื™ืง, ื™ื ืกื˜ืึทืœื™ืจืŸ ืื•ืŸ ืงืึทื ืคื™ื’ื™ืขืจ OpenWrt

ืขืจืฉื˜ืขืจ ืื™ืจ ื“ืึทืจืคึฟืŸ ืฆื• ืžืึทื›ืŸ ื–ื™ื›ืขืจ ืึทื– OpenWrt ืฉื˜ื™ืฆื˜ ื“ื™ื™ืŸ ืžืึธื“ืขืœ. ื–ืขืŸ ืื•ื™ื‘ ืึท ืžืึธื“ืขืœ ื’ืœื™ื™ึทื›ืŸ ื–ื™ื™ืŸ ืคึฟืึทืจืงื•ื™ืฃ ื ืึธืžืขืŸ ืื•ืŸ ื‘ื™ืœื“ ืื™ืจ ืงืขื ื˜ ื‘ืึทื–ื•ื›ืŸ mikrotik.com.

ื’ื™ื™ืŸ ืฆื• openwrt.com ืฆื• ื“ื™ ืคื™ืจืžื•ื•ืึทืจืข ืืจืืคืงืืคื™ืข ืึธืคึผื˜ื™ื™ืœื•ื ื’.

ืคึฟืึทืจ ื“ืขื ืžื™ื˜ืœ, ืžื™ืจ ื“ืึทืจืคึฟืŸ 2 ื˜ืขืงืขืก:

downloads.openwrt.org/releases/18.06.2/targets/ar71xx/mikrotik/openwrt-18.06.2-ar71xx-mikrotik-rb-nor-flash-16M-initramfs-kernel.bin|elf

downloads.openwrt.org/releases/18.06.2/targets/ar71xx/mikrotik/openwrt-18.06.2-ar71xx-mikrotik-rb-nor-flash-16M-squashfs-sysupgrade.bin

ืื™ืจ ื“ืึทืจืคึฟืŸ ืฆื• ืึธืคึผืœืึธื“ื™ืจืŸ ื‘ื™ื™ื“ืข ื˜ืขืงืขืก: ื™ื ืกื˜ืึทืœื™ืจืŸ ะธ ื•ืคึผื’ืจืึทื“ืข.

ื‘ืึทืฉื˜ืขื˜ื™ืงืŸ WireGuard ืื•ื™ืฃ ืึท ืžื™ืงืจืึธื˜ื™ืง ืจืึทื•ื˜ืขืจ ืžื™ื˜ OpenWrt

1. ื ืขืฅ ืกืขื˜ืึทืคึผ, ืืจืืคืงืืคื™ืข ืื•ืŸ ืกืขื˜ืึทืคึผ ืคึผืงืกืข ืกืขืจื•ื•ืขืจ

ืืจืืคืงืืคื™ืข ืงืœื™ื™ื ื˜ืฉื™ืง ืคึผืงืกืข ืกืขืจื•ื•ื™ืจืขืจ ืคึฟืึทืจ ื“ื™ ืœืขืฆื˜ืข ื•ื•ืขืจืกื™ืข ืคื•ืŸ โ€‹โ€‹โ€‹โ€‹Windows.

ืึทื ื–ื™ืคึผ ืฆื• ืึท ื‘ืึทื–ื•ื ื“ืขืจ ื˜ืขืงืข. ืื™ืŸ ื“ื™ config.ini ื˜ืขืงืข ืœื™ื™ื’ืŸ ื“ืขื ืคึผืึทืจืึทืžืขื˜ืขืจ rfc951=1 ืึธืคึผื˜ื™ื™ืœื•ื ื’ [dhcp]. ื“ืขืจ ืคึผืึทืจืึทืžืขื˜ืขืจ ืื™ื– ื“ืขืจ ื–ืขืœื‘ื™ืงืขืจ ืคึฟืึทืจ ืึทืœืข ืžื™ืงืจืึธื˜ื™ืง ืžืึธื“ืขืœืก.

ื‘ืึทืฉื˜ืขื˜ื™ืงืŸ WireGuard ืื•ื™ืฃ ืึท ืžื™ืงืจืึธื˜ื™ืง ืจืึทื•ื˜ืขืจ ืžื™ื˜ OpenWrt

ืœืึธืžื™ืจ ื’ื™ื™ืŸ ืฆื• ื“ื™ ื ืขืฅ ืกืขื˜ื˜ื™ื ื’ืก: ืื™ืจ ื“ืึทืจืคึฟืŸ ืฆื• ืจืขื’ื™ืกื˜ืจื™ืจืŸ ืึท ืกื˜ืึทื˜ื™ืง ื™ืคึผ ืึทื“ืจืขืก ืื•ื™ืฃ ืื™ื™ื ืขืจ ืคื•ืŸ ื“ื™ ื ืขืฅ ื™ื ื˜ืขืจืคื™ื™ืกื™ื– ืคื•ืŸ ื“ื™ื™ืŸ ืงืึธืžืคึผื™ื•ื˜ืขืจ.

ื‘ืึทืฉื˜ืขื˜ื™ืงืŸ WireGuard ืื•ื™ืฃ ืึท ืžื™ืงืจืึธื˜ื™ืง ืจืึทื•ื˜ืขืจ ืžื™ื˜ OpenWrt

IP ืึทื“ืจืขืก: 192.168.1.10
ื ืขื˜ืžืึทืกืง: 255.255.255.0

ื‘ืึทืฉื˜ืขื˜ื™ืงืŸ WireGuard ืื•ื™ืฃ ืึท ืžื™ืงืจืึธื˜ื™ืง ืจืึทื•ื˜ืขืจ ืžื™ื˜ OpenWrt

ืœื•ื™ืคืŸ ืงืœื™ื™ื ื˜ืฉื™ืง ืคึผืงืกืข ืกืขืจื•ื•ื™ืจืขืจ ืื•ื™ืฃ ื‘ื™ื›ืึทืฃ ืคื•ืŸ ื“ื™ ืึทื“ืžื™ื ื™ืกื˜ืจืึทื˜ืึธืจ ืื•ืŸ ืกืขืœืขืงื˜ื™ืจืŸ ืื™ืŸ ื“ืขื ืคืขืœื“ ื“ื”ืงืคึผ ืกืขืจื•ื•ืขืจ ืกืขืจื•ื•ืขืจ ืžื™ื˜ ืึทื“ืจืขืก 192.168.1.10

ืื•ื™ืฃ ืขื˜ืœืขื›ืข ื•ื•ืขืจืกื™ืขืก ืคื•ืŸ Windows, ื“ืขื ืฆื•ื‘ื™ื ื“ ืงืขืŸ ื–ื™ื™ืŸ ื‘ืœื•ื™ื– ื ืึธืš ืึทืŸ ืขื˜ื”ืขืจื ืขื˜ ืงืฉืจ. ืื™ืš ืจืขืงืึธืžืขื ื“ื™ืจืŸ ืงืึทื ืขืงื˜ื™ื ื’ ืึท ืจืึทื•ื˜ืขืจ ืื•ืŸ ื’ืœื™ื™ืš ื‘ืึทืฉื˜ื™ืžืขืŸ ื“ื™ ืจืึทื•ื˜ืขืจ ืื•ืŸ ืคึผื™ืกื™ ืžื™ื˜ ืึท ืœืึทื˜ืข ืฉื ื•ืจ.

ื‘ืึทืฉื˜ืขื˜ื™ืงืŸ WireGuard ืื•ื™ืฃ ืึท ืžื™ืงืจืึธื˜ื™ืง ืจืึทื•ื˜ืขืจ ืžื™ื˜ OpenWrt

ื“ืจื™ืงืŸ ื“ื™ "..." ืงื ืขืคึผืœ (ื“ื ืึธ ืจืขื›ื˜) ืื•ืŸ ืกืคึผืขืฆื™ืคื™ืฆื™ืจืŸ ื“ื™ ื˜ืขืงืข ื•ื•ื• ืื™ืจ ื“ืึทื•ื ืœืึธื•ื“ื™ื“ ื“ื™ ืคื™ืจืžื•ื•ืึทืจืข ื˜ืขืงืขืก ืคึฟืึทืจ ืžื™ืงืจืึธื˜ื™ืง.

ืงืœื™ื™ึทื‘ืŸ ืึท ื˜ืขืงืข ื•ื•ืขืžืขื ืก ื ืึธืžืขืŸ ืขื ื“ืก ืžื™ื˜ "initramfs-kernel.bin or elf"

ื‘ืึทืฉื˜ืขื˜ื™ืงืŸ WireGuard ืื•ื™ืฃ ืึท ืžื™ืงืจืึธื˜ื™ืง ืจืึทื•ื˜ืขืจ ืžื™ื˜ OpenWrt

2. ื‘ื•ื˜ื™ื ื’ ื“ื™ ืจืึทื•ื˜ืขืจ ืคื•ืŸ ื“ื™ ืคึผืงืกืข ืกืขืจื•ื•ืขืจ

ืžื™ืจ ืคืึทืจื‘ื™ื ื“ืŸ ื“ื™ ืคึผื™ืกื™ ืžื™ื˜ ืึท ื“ืจืึธื˜ ืื•ืŸ ื“ืขืจ ืขืจืฉื˜ืขืจ ืคึผืึธืจื˜ (ื•ื•ืึทืŸ, ืื™ื ื˜ืขืจื ืขื˜, ืคึผืึธืข ืื™ืŸ, ...) ืคื•ืŸ ื“ื™ ืจืึทื•ื˜ืขืจ. ื ืึธืš ื“ืขื, ืžื™ืจ ื ืขืžืขืŸ ืึท ืฆื™ื™ื ืฉื˜ืขื›ืขืจ, ืฉื˜ืขืงืŸ ืขืก ืื™ืŸ ื“ื™ ืœืึธืš ืžื™ื˜ ื“ื™ ื™ื ืกืงืจื™ืคึผืฉืึทืŸ "ื‘ืึทืฉื˜ืขื˜ื™ืง".

ื‘ืึทืฉื˜ืขื˜ื™ืงืŸ WireGuard ืื•ื™ืฃ ืึท ืžื™ืงืจืึธื˜ื™ืง ืจืึทื•ื˜ืขืจ ืžื™ื˜ OpenWrt

ืžื™ืจ ืงืขืจ ืื•ื™ืฃ ื“ื™ ืžืึทื›ื˜ ืคื•ืŸ ื“ื™ ืจืึทื•ื˜ืขืจ ืื•ืŸ ื•ื•ืึทืจื˜ืŸ 20 ืกืขืงื•ื ื“ืขืก, ืื•ืŸ ืœืึธื–ืŸ ื“ื™ ืฆื™ื™ื ืฉื˜ืขื›ืขืจ.
ืื™ืŸ ื“ืขืจ ื•ื•ื™ื™ึทื˜ืขืจ ืžื™ื ื•ื˜, ื“ื™ ืคืืœื’ืขื ื“ืข ืึทืจื˜ื™ืงืœืขืŸ ื–ืึธืœ ื“ืขืจืฉื™ื™ึทื ืขืŸ ืื™ืŸ ื“ื™ ืงืœื™ื™ื ื˜ืฉื™ืง ืคึผืงืกืข ืกืขืจื•ื•ื™ืจืขืจ ืคึฟืขื ืฆื˜ืขืจ:

ื‘ืึทืฉื˜ืขื˜ื™ืงืŸ WireGuard ืื•ื™ืฃ ืึท ืžื™ืงืจืึธื˜ื™ืง ืจืึทื•ื˜ืขืจ ืžื™ื˜ OpenWrt

ืื•ื™ื‘ ื“ืขืจ ืึธื ื–ืึธื’ ืื™ื– ืืจื•ื™ืก, ืื™ืจ ื–ืขื ื˜ ืื™ืŸ ื“ื™ ืจืขื›ื˜ ืจื™ื›ื˜ื•ื ื’!

ื•ืžืงืขืจืŸ ื“ื™ ืกืขื˜ื˜ื™ื ื’ืก ืื•ื™ืฃ ื“ื™ ื ืขืฅ ืึทื“ืึทืคึผื˜ืขืจ ืื•ืŸ ืฉื˜ืขืœืŸ ื“ื™ ืึทื“ืจืขืก ื“ื™ื ืึทืžื™ืงืึทืœืœื™ (ื“ื•ืจืš DHCP).

ืคืึทืจื‘ื™ื ื“ืŸ ืฆื• ื“ื™ ืœืึทืŸ ืคึผืึธืจืฅ ืคื•ืŸ ื“ื™ ืžื™ืงืจืึธื˜ื™ืง ืจืึทื•ื˜ืขืจ (2โ€ฆ5 ืื™ืŸ ืื•ื ื“ื–ืขืจ ืคืึทืœ) ืžื™ื˜ ื“ืขืจ ื–ืขืœื‘ื™ืงืขืจ ืœืึทื˜ืข ืฉื ื•ืจ. ื ืึธืจ ื‘ืึทืฉื˜ื™ืžืขืŸ ืขืก ืคื•ืŸ 1 ืคึผืึธืจื˜ ืฆื• 2 ืคึผืึธืจื˜. ืขืคืขื ืขืŸ ืึทื“ืจืขืก 192.168.1.1 ืื™ืŸ ื“ืขื ื‘ืœืขื˜ืขืจืขืจ.

ื‘ืึทืฉื˜ืขื˜ื™ืงืŸ WireGuard ืื•ื™ืฃ ืึท ืžื™ืงืจืึธื˜ื™ืง ืจืึทื•ื˜ืขืจ ืžื™ื˜ OpenWrt

ืงืœืึธืฅ ืื™ืŸ ืฆื• ื“ื™ OpenWRT ืึทื“ืžื™ื ื™ืกื˜ืจืึทื˜ื™ื•ื•ืข ืฆื•ื‘ื™ื ื“ ืื•ืŸ ื’ื™ื™ืŸ ืฆื• ื“ื™ "ืกื™ืกื˜ืขื -> ื‘ืึทืงืงื•ืคึผ / ืคืœืึทืฉ ืคื™ืจืžื•ื•ืึทืจืข" ืžืขื ื™ื• ืึธืคึผื˜ื™ื™ืœื•ื ื’

ื‘ืึทืฉื˜ืขื˜ื™ืงืŸ WireGuard ืื•ื™ืฃ ืึท ืžื™ืงืจืึธื˜ื™ืง ืจืึทื•ื˜ืขืจ ืžื™ื˜ OpenWrt

ืื™ืŸ ื“ื™ ืกืึทื‘ืกืขืงืฉืึทืŸ "ืคืœืึทืฉ ื ื™ื™ึท ืคื™ืจืžื•ื•ืึทืจืข ื‘ื™ืœื“", ื’ื™ื˜ ื“ื™ "ืกืขืœืขืงื˜ื™ืจืŸ ื˜ืขืงืข (ืึธืคึผืคืœื™ืงืŸ)" ืงื ืขืคึผืœ.

ื‘ืึทืฉื˜ืขื˜ื™ืงืŸ WireGuard ืื•ื™ืฃ ืึท ืžื™ืงืจืึธื˜ื™ืง ืจืึทื•ื˜ืขืจ ืžื™ื˜ OpenWrt

ืกืคึผืขืฆื™ืคื™ืฆื™ืจืŸ ื“ืขื ื“ืจืš ืฆื• ืึท ื˜ืขืงืข ื•ื•ืขืžืขื ืก ื ืึธืžืขืŸ ืขื ื“ืก ืžื™ื˜ "-squashfs-sysupgrade.bin".

ื‘ืึทืฉื˜ืขื˜ื™ืงืŸ WireGuard ืื•ื™ืฃ ืึท ืžื™ืงืจืึธื˜ื™ืง ืจืึทื•ื˜ืขืจ ืžื™ื˜ OpenWrt

ื ืึธืš ื“ืขื, ื’ื™ื˜ ื“ื™ "ืคืœืึทืฉ ื‘ื™ืœื“" ืงื ืขืคึผืœ.

ืื™ืŸ ื“ืขืจ ื•ื•ื™ื™ึทื˜ืขืจ ืคึฟืขื ืฆื˜ืขืจ, ื’ื™ื˜ ื“ื™ "ืคืึธืจื–ืขืฆืŸ" ืงื ืขืคึผืœ. ื“ื™ ืคื™ืจืžื•ื•ืึทืจืข ื•ื•ืขื˜ ืึธื ื”ื™ื™ื‘ืŸ ื“ืึทื•ื ืœืึธื•ื“ื™ื ื’ ืฆื• ื“ื™ ืจืึทื•ื˜ืขืจ.

ื‘ืึทืฉื˜ืขื˜ื™ืงืŸ WireGuard ืื•ื™ืฃ ืึท ืžื™ืงืจืึธื˜ื™ืง ืจืึทื•ื˜ืขืจ ืžื™ื˜ OpenWrt

!!! ืื™ืŸ ืงื™ื™ืŸ ื’ืขืฉืขืขื ื™ืฉ ื˜ืึธืŸ ื ื™ื˜ ื“ื™ืกืงืึทื ืขืงื˜ ื“ื™ ืžืึทื›ื˜ ืคื•ืŸ ื“ื™ ืจืึทื•ื˜ืขืจ ื‘ืขืฉืึทืก ื“ื™ ืคื™ืจืžื•ื•ืึทืจืข ืคึผืจืึธืฆืขืก !!!

ื‘ืึทืฉื˜ืขื˜ื™ืงืŸ WireGuard ืื•ื™ืฃ ืึท ืžื™ืงืจืึธื˜ื™ืง ืจืึทื•ื˜ืขืจ ืžื™ื˜ OpenWrt

ื ืึธืš ืคืœืึทืฉื™ื ื’ ืื•ืŸ ืจืขื‘ืึธืึธื˜ ื“ื™ ืจืึทื•ื˜ืขืจ, ืื™ืจ ื•ื•ืขื˜ ื‘ืึทืงื•ืžืขืŸ ืžื™ืงืจืึธื˜ื™ืง ืžื™ื˜ OpenWRT ืคื™ืจืžื•ื•ืึทืจืข.

ืžืขื’ืœืขืš ืคึผืจืึธื‘ืœืขืžืก ืื•ืŸ ืกืึทืœื•ืฉืึทื ื–

ืคื™ืœืข ืžื™ืงืจืึธื˜ื™ืง ื“ืขื•ื•ื™ืกืขืก ื‘ืืคืจื™ื™ื˜ ืื™ืŸ 2019 ื ื•ืฆืŸ ืึท FLASH-NOR ื–ื›ึผืจื•ืŸ ืฉืคึผืึธืŸ ืคื•ืŸ ื“ื™ GD25Q15 / Q16 ื˜ื™ืคึผ. ื“ื™ ืคึผืจืึธื‘ืœืขื ืื™ื– ืึทื– ื•ื•ืขืŸ ืคืœืึทืฉื™ื ื’, ื“ืึทื˜ืŸ ื•ื•ืขื’ืŸ ื“ื™ ืžื™ื˜ืœ ืžืึธื“ืขืœ ื–ืขื ืขืŸ ื ื™ืฉื˜ ื’ืขืจืื˜ืขื•ื•ืขื˜.

ืื•ื™ื‘ ืื™ืจ ื–ืขืŸ ื“ื™ ื˜ืขื•ืช "ื“ื™ ื•ืคึผืœืึธืึทื“ืขื“ ื‘ื™ืœื“ ื˜ืขืงืข ื˜ื•ื˜ ื ื™ืฉื˜ ืึทื ื˜ื”ืึทืœื˜ืŸ ืึท ืฉื˜ื™ืฆื˜ ืคึฟืึธืจืžืึทื˜. ืžืึทื›ืŸ ื–ื™ื›ืขืจ ืึทื– ืื™ืจ ืงืœื™ื™ึทื‘ืŸ ื“ื™ ื“ื–ืฉืึทื ืขืจื™ืง ื‘ื™ืœื“ ืคึฟืึธืจืžืึทื˜ ืคึฟืึทืจ ื“ื™ื™ืŸ ืคึผืœืึทื˜ืคืึธืจืžืข." ื“ืขืžืึธืœื˜ ืจื•ื‘ึฟ ืžืกืชึผืžื ื“ื™ ืคึผืจืึธื‘ืœืขื ืื™ื– ืื™ืŸ ื‘ืœื™ืฅ.

ืขืก ืื™ื– ื’ืจื™ื ื’ ืฆื• ืงืึธื ื˜ืจืึธืœื™ืจืŸ ื“ืขื: ืœื•ื™ืคืŸ ื“ื™ ื‘ืึทืคึฟืขืœ ืฆื• ืงืึธื ื˜ืจืึธืœื™ืจืŸ ื“ื™ ืžืึธื“ืขืœ ืฉื™ื™ึทืŸ ืื™ืŸ ื“ื™ ืžื™ื˜ืœ ื•ื•ืึธืงื–ืึทืœ

root@OpenWrt: cat /tmp/sysinfo/board_name

ืื•ืŸ ืื•ื™ื‘ ืื™ืจ ื‘ืึทืงื•ืžืขืŸ ื“ื™ ืขื ื˜ืคืขืจ "ืื•ืžื‘ืึทืงืึทื ื˜", ืื™ืจ ื“ืึทืจืคึฟืŸ ืฆื• ืžืึทื ื™ื•ืึทืœื™ ืกืคึผืขืฆื™ืคื™ืฆื™ืจืŸ ื“ื™ ืžื™ื˜ืœ ืžืึธื“ืขืœ ืื™ืŸ ื“ื™ ืคืึธืจืขื "ืจื‘-951-2"

ืฆื• ื‘ืึทืงื•ืžืขืŸ ื“ื™ ืžื™ื˜ืœ ืžืึธื“ืขืœ, ืœื•ื™ืคืŸ ื“ื™ ื‘ืึทืคึฟืขืœ

root@OpenWrt: cat /tmp/sysinfo/model
MikroTik RouterBOARD RB951-2nd

ื ืึธืš ืจื™ืกื™ื•ื•ื™ื ื’ ื“ื™ ืžื™ื˜ืœ ืžืึธื“ืขืœ, ื™ื ืกื˜ืึทืœื™ืจืŸ ืขืก ืžืึทื ื™ื•ืึทืœื™:

echo 'rb-951-2nd' > /tmp/sysinfo/board_name

ื ืึธืš ื“ืขื, ืื™ืจ ืงืขื ืขืŸ ื‘ืœื™ืฅ ื“ื™ ืžื™ื˜ืœ ื“ื•ืจืš ื“ื™ ื•ื•ืขื‘ ืฆื•ื‘ื™ื ื“ ืึธื“ืขืจ ื ื™ืฆืŸ ื“ื™ "ืกื™ืกื•ืคึผื’ืจืึทื“ืข" ื‘ืึทืคึฟืขืœ

ืฉืึทืคึฟืŸ ืึท VPN ืกืขืจื•ื•ืขืจ ืžื™ื˜ WireGuard

ืื•ื™ื‘ ืื™ืจ ืฉื•ื™ืŸ ื”ืึธื‘ืŸ ืึท ืกืขืจื•ื•ืขืจ ืžื™ื˜ WireGuard ืงืึทื ืคื™ื’ื™ืขืจื“, ืื™ืจ ืงืขื ืขืŸ ื”ืึธืคึผืงืขืŸ ื“ืขื ืฉืจื™ื˜.
ืื™ืš ื•ื•ืขืœ ื ื•ืฆืŸ ื“ื™ ืึทืคึผืœืึทืงื™ื™ืฉืึทืŸ ืฆื• ืฉื˜ืขืœืŸ ืึท ืคืขืจื–ืขื ืœืขื›ืข ื•ื•ืคึผืŸ ืกืขืจื•ื•ืขืจ MyVPN.RUN ื•ื•ืขื’ืŸ ื“ื™ ืงืึทืฅ ืื™ืš ืฉื•ื™ืŸ ืืจื•ื™ืก ืึท ืจืขืฆืขื ื–ื™ืข.

ืงืึทื ืคื™ื’ื™ืขืจ WireGuard ืงืœื™ืขื ื˜ ืื•ื™ืฃ OpenWRT

ืคืึทืจื‘ื™ื ื“ืŸ ืฆื• ื“ื™ ืจืึทื•ื˜ืขืจ ื“ื•ืจืš SSH ืคึผืจืึธื˜ืึธืงืึธืœ:

ssh [email protected]

ื™ื ืกื˜ืึทืœื™ืจืŸ WireGuard:

opkg update
opkg install wireguard

ืฆื•ื’ืจื™ื™ื˜ืŸ ื“ื™ ืงืึทื ืคื™ื’ื™ืขืจื™ื™ืฉืึทืŸ (ืงืึธืคึผื™ ื“ื™ ืงืึธื“ ืื•ื ื˜ืŸ ืฆื• ืึท ื˜ืขืงืข, ืคืึทืจื‘ื™ื™ึทื˜ืŸ ื“ื™ ืกืคึผืขืกื™ืคื™ืขื“ ื•ื•ืึทืœื•ืขืก ืžื™ื˜ ื“ื™ื™ืŸ ืื™ื™ื’ืขื ืข ืื•ืŸ ืœื•ื™ืคืŸ ืื™ืŸ ื“ื™ ื•ื•ืึธืงื–ืึทืœ).

ืื•ื™ื‘ ืื™ืจ ื ื•ืฆืŸ MyVPN, ืื™ืŸ ื“ื™ ืงืึทื ืคื™ื’ื™ืขืจื™ื™ืฉืึทืŸ ืื•ื ื˜ืŸ ืื™ืจ ื ืึธืจ ื“ืึทืจืคึฟืŸ ืฆื• ื˜ื•ื™ืฉืŸ WG_SERV - ืกืขืจื•ื•ื™ืจืขืจ IP WG_KEY - ืคึผืจื™ื•ื•ืึทื˜ ืฉืœื™ืกืœ ืคึฟื•ืŸ ื“ื™ ื•ื•ื™ืจืขื’ื•ืึทืจื“ ืงืึทื ืคื™ื’ื™ืขืจื™ื™ืฉืึทืŸ ื˜ืขืงืข ืื•ืŸ WG_PUB - ืฆื™ื‘ื•ืจ ืฉืœื™ืกืœ.

WG_IF="wg0"
WG_SERV="100.0.0.0" # ip ะฐะดั€ะตั ัะตั€ะฒะตั€ะฐ
WG_PORT="51820" # ะฟะพั€ั‚ wireguard
WG_ADDR="10.8.0.2/32" # ะดะธะฐะฟะฐะทะพะฝ ะฐะดั€ะตัะพะฒ wireguard

WG_KEY="xxxxx" # ะฟั€ะธะฒะฐั‚ะฝั‹ะน ะบะปัŽั‡
WG_PUB="xxxxx" # ะฟัƒะฑะปะธั‡ะฝั‹ะน ะบะปัŽั‡ 

# Configure firewall
uci rename firewall.@zone[0]="lan"
uci rename firewall.@zone[1]="wan"
uci rename firewall.@forwarding[0]="lan_wan"
uci del_list firewall.wan.network="${WG_IF}"
uci add_list firewall.wan.network="${WG_IF}"
uci commit firewall
/etc/init.d/firewall restart

# Configure network
uci -q delete network.${WG_IF}
uci set network.${WG_IF}="interface"
uci set network.${WG_IF}.proto="wireguard"
uci set network.${WG_IF}.private_key="${WG_KEY}"

uci add_list network.${WG_IF}.addresses="${WG_ADDR}"

# Add VPN peers
uci -q delete network.wgserver
uci set network.wgserver="wireguard_${WG_IF}"
uci set network.wgserver.public_key="${WG_PUB}"
uci set network.wgserver.preshared_key=""
uci set network.wgserver.endpoint_host="${WG_SERV}"
uci set network.wgserver.endpoint_port="${WG_PORT}"
uci set network.wgserver.route_allowed_ips="1"
uci set network.wgserver.persistent_keepalive="25"
uci add_list network.wgserver.allowed_ips="0.0.0.0/1"
uci add_list network.wgserver.allowed_ips="128.0.0.0/1"
uci add_list network.wgserver.allowed_ips="::/0"
uci commit network
/etc/init.d/network restart

ื“ืึธืก ืงืึทืžืคึผืœื™ืฅ ื“ื™ WireGuard ืกืขื˜ืึทืคึผ! ืื™ืฆื˜ ืึทืœืข ืคืึทืจืงืขืจ ืื•ื™ืฃ ืึทืœืข ืงืึธื ื ืขืงื˜ืขื“ ื“ืขื•ื•ื™ืกืขืก ืื™ื– ืคึผืจืึธื˜ืขืงื˜ืขื“ ื“ื•ืจืš ืึท ื•ื•ืคึผืŸ ืงืฉืจ.

ืจืขืคึฟืขืจืขื ืฆืŸ

ืžืงื•ืจ #1
ืžืึธื“ื™ืคื™ืขื“ ื™ื ืกื˜ืจืึทืงืฉืึทื ื– ืื•ื™ืฃ MyVPN (ืึทื“ื™ืฉื ืึทืœื™ ื‘ื ื™ืžืฆื ื™ื ืกื˜ืจืึทืงืฉืึทื ื– ืคึฟืึทืจ ื‘ืึทืฉื˜ืขื˜ื™ืงืŸ L2TP, PPTP ืื•ื™ืฃ ื ืึธืจืžืึทืœ ืžื™ืงืจืึธื˜ื™ืง ืคื™ืจืžื•ื•ืึทืจืข)
OpenWrt WireGuard ืงืœื™ืขื ื˜

ืžืงื•ืจ: www.habr.com

ืœื™ื™ื’ืŸ ืึท ื‘ืึทืžืขืจืงื•ื ื’