Debian-based configuration for wireguard

Jason A. Donenfeld Jason at
Wed Jul 12 00:48:59 CEST 2017

On Wed, Jul 12, 2017 at 12:19 AM, Daniel Kahn Gillmor
<dkg at> wrote:
> Good point!  it'd be great to be able to separate the private key
> information from the standard network information for that reason; it's
> not like people can't inspect the rest of the network config once the
> device is configured, so it would be nice to be able to just have the
> private key in an isolated file.

It is for this reason that wg(8)'s private-key and preshared-key
arguments take a file to the key, not the actual key itself.

More information about the WireGuard mailing list