mirror of
https://github.com/linuxkit/linuxkit.git
synced 2025-07-20 09:39:08 +00:00
wireguard: update links
WireGuard moved from .io to .com. Signed-off-by: Jason A. Donenfeld <Jason@zx2c4.com>
This commit is contained in:
parent
6e0da8877b
commit
0441a379af
@ -1,16 +1,16 @@
|
|||||||
# WireGuard
|
# WireGuard
|
||||||
|
|
||||||
[WireGuard](https://wireguard.io) is a modern VPN released for the Linux kernel that can replace IPSec.
|
[WireGuard](https://www.wireguard.com) is a modern VPN released for the Linux kernel that can replace IPSec.
|
||||||
|
|
||||||
We can use WireGuard in Moby to better secure container networking.
|
We can use WireGuard in Moby to better secure container networking.
|
||||||
WireGuard transparently encrypts *and* authenticates traffic between all peers, and uses state-of-the-art cryptography
|
WireGuard transparently encrypts *and* authenticates traffic between all peers, and uses state-of-the-art cryptography
|
||||||
from the [Noise protocol](http://www.noiseprotocol.org/). Moreover, WireGuard is implemented in less than a few thousand
|
from the [Noise protocol](https://noiseprotocol.org/). Moreover, WireGuard is implemented in less than a few thousand
|
||||||
lines of code, making it auditable for security.
|
lines of code, making it auditable for security.
|
||||||
|
|
||||||
Moreover, WireGuard provides a `wg0` (`wg1`, `wg2`,... etc) network interface that can be passed directly to containers,
|
Moreover, WireGuard provides a `wg0` (`wg1`, `wg2`,... etc) network interface that can be passed directly to containers,
|
||||||
such that all intercontainer traffic would benefit from encrypted and authenticated networking.
|
such that all intercontainer traffic would benefit from encrypted and authenticated networking.
|
||||||
|
|
||||||
A full technical paper from NDSS 2017 is available [here](https://www.wireguard.io/papers/wireguard.pdf).
|
A full technical paper from NDSS 2017 is available [here](https://www.wireguard.com/papers/wireguard.pdf). The protocol has been formally verified, with a paper describing the security proofs available [here](https://www.wireguard.com/papers/wireguard-formal-verification.pdf).
|
||||||
|
|
||||||
## Contents
|
## Contents
|
||||||
|
|
||||||
@ -27,8 +27,8 @@ This is built into the `mobylinux/init-wireguard` image that is generated by `cd
|
|||||||
## Quickstart
|
## Quickstart
|
||||||
The quickest way to get started is to use the provided `examples/wireguard.yml` in this directory and use the prebuilt images.
|
The quickest way to get started is to use the provided `examples/wireguard.yml` in this directory and use the prebuilt images.
|
||||||
|
|
||||||
To give WireGuard a spin, the [official quick start](https://www.wireguard.io/quickstart/) is a good way to get going. For containers,
|
To give WireGuard a spin, the [official quick start](https://www.wireguard.com/quickstart/) is a good way to get going. For containers,
|
||||||
WireGuard has a [network namespace integration](https://www.wireguard.io/netns/) that we could use for Moby's containers.
|
WireGuard has a [network namespace integration](https://www.wireguard.com/netns/) that we could use for Moby's containers.
|
||||||
|
|
||||||
## Roadmap
|
## Roadmap
|
||||||
|
|
||||||
|
Loading…
Reference in New Issue
Block a user