{"enrichment":{"faq":[{"a":"homelab-wireguard-vpn guides you through setting up a WireGuard VPN server on Linux to enable secure remote access to your home network. The skill covers installing WireGuard, generating server keypairs, configuring the interface with IP forwarding and iptables rules, and opening firewall ports (typically 51820 UDP). You'll learn to set persistent keepalive for mobile stability and manage peer configurations for each device connecting to your homelab.","q":"How do I configure WireGuard server on Linux for home network access?"},{"a":"homelab-wireguard-vpn explains that split tunnel routes only home network traffic through your VPN (via restricted AllowedIPs), letting other internet traffic go directly from your phone or laptop. Full tunnel routes all traffic through your home connection. Split tunnel is ideal for accessing homelab services while preserving bandwidth; full tunnel encrypts everything but uses more resources. The skill helps you choose based on your security and performance needs.","q":"What's the difference between split tunnel and full tunnel routing in WireGuard?"},{"a":"homelab-wireguard-vpn covers keypair generation using wg genkey and wg pubkey commands, plus scripting approaches for batch peer creation. You'll learn to securely store private keys, distribute public keys to clients, and organize peer configurations. The skill includes methods for adding new devices without restarting the server and managing multiple peers for phones, laptops, and other homelab machines.","q":"How do I generate and manage WireGuard keypairs for peers?"},{"a":"homelab-wireguard-vpn walks through configuring WireGuard clients on mobile and desktop platforms. You'll create client config files with your device's keypair, the server's public key and endpoint, and appropriate AllowedIPs for your routing strategy. The skill covers installing the WireGuard app on iOS/Android and Linux/macOS, importing configs, and testing connectivity to your home network services.","q":"How can I set up WireGuard clients on my phone and laptop?"},{"a":"homelab-wireguard-vpn provides troubleshooting steps for common WireGuard issues: verify IP forwarding is enabled, check iptables rules and firewall port 51820, confirm AllowedIPs match your routing intent, test with wg show output, and enable persistent keepalive for mobile clients behind NAT. The skill covers diagnosing DNS issues, endpoint resolution with DDNS for dynamic IPs, and validating peer handshakes.","q":"What should I do if my WireGuard connection isn't working or routing fails?"},{"a":"homelab-wireguard-vpn supports deploying WireGuard on Raspberry Pi and pfSense/OPNsense routers as your VPN server. Setup differs slightly: Raspberry Pi uses standard Linux installation, while pfSense has a WireGuard package in its UI. Both approaches let you centralize VPN access to your homelab. The skill covers resource considerations for Pi performance and leveraging router-level VPN for all connected devices.","q":"Can I run WireGuard on a Raspberry Pi or pfSense router?"}],"shadow_tags":["vpn-tunneling","network-security","remote-connectivity","key-management","routing-config","firewall-rules","mobile-access","dns-privacy","nat-traversal","infrastructure-automation"],"summary_rewrite":"Deploy a WireGuard VPN server to securely access your home network remotely from phones and laptops. This skill covers server setup on Linux and pfSense, keypair generation, client configuration, and routing choices like split tunneling for home-only traffic or full tunnel for all internet through your home connection."},"files":[{"bytes":10510,"path":"skills/homelab-wireguard-vpn/SKILL.md","sha256":"f6f8cc2d0efc0873e4c153b3ebba9e4c4efc367244dca9316886d7f2a54dad0f","url":"https://skillfed.io/files/affaan-m/ECC/homelab-wireguard-vpn/021d7506/SKILL.md"}],"id":"affaan-m/ECC/homelab-wireguard-vpn","links":{"html":"https://skillfed.io/affaan-m/ECC/homelab-wireguard-vpn","md":"https://skillfed.io/affaan-m/ECC/homelab-wireguard-vpn.md","repo":"https://github.com/affaan-m/ECC"},"meta":{"agents_supported":[],"first_seen":"2026-07-28","forks":35692,"language":"JavaScript","last_updated":"2026-07-27","license":"MIT","name":"homelab-wireguard-vpn","publisher":"affaan-m","stars":234207},"relations":{"similar":[{"id":"BagelHole/DevOps-Security-Agent-Skills/vpn-setup"},{"id":"chaterm/terminal-skills/vpn"},{"id":"Aradotso/security-skills/edgesecurityaccess-wireguard-vpn"},{"id":"Aradotso/security-skills/macos-security-privacy-hardening"},{"id":"Aradotso/security-skills/palisade-security-nexus-bitdefender"},{"id":"RightNow-AI/openfang/linux-networking"},{"id":"blacklanternsecurity/red-run/pivoting-tunneling"},{"id":"BagelHole/DevOps-Security-Agent-Skills/startup-it-troubleshooting"},{"id":"xobotyi/cc-foundry/networking"},{"id":"sway913/wsl-singbox-tun/wsl-singbox-tun"}]},"slug":{"owner":"affaan-m","repo":"ECC","skill":"homelab-wireguard-vpn"},"version":"021d7506"}
