How to make your own VPN with Wireguard on a VPS

Sdílet
Vložit
  • čas přidán 6. 06. 2024
  • In this episode we will set up our own VPN Service. I live in Germany and rented a server in the USA, installed Wireguard VPN Software on it and can connect to it with a Windows or Mac or Linux client or I can quickly scan a QR Code to connect to the VPN with my iPhone. I'll explain the Wireguard setup on a Linux VPS so that you can connect to Wireguard with your iphone or any other Wireguard client. I will do this on Ubuntu.
    Please visit my channel / @onemarcfifty
    In a nutshell you will build your own VPN Service on a cheap virtual Server for 1$ per month, install Wireguard vpn on linux and access it from your home network or anywhere else
    0:00 Intro
    2:30 Provider choice
    5:00 Setting up the software
    9:00 Call to action and Script details
    The scripts are on my github repository: github.com/onemarcfifty/wireg...
    Build your own cheap VPN service on a rented server. While Streaming services like Netflix block a lot of VPN providers, building your own VPN service might be a way to stream Netflix content while you are abroad. But Netflix is not the only reason for your own VPN service. Increasing your privacy by using your own VPN service is a more than welcome side effect. Obviously, if you were using a VPN for gaming then a VPN on a VPS with a lower latency would be preferable. In this video I use a server in the USA from Germany in order to change my geo-location. This comes at the cost of higher latency.
    Marc on Twitter: / onemarcfifty
    Marc on Facebook: / onemarcfifty
    Marc on Reddit: / onemarcfifty
    Chat with me on Discord: / discord
    Acknowledgement: The Linux penguin ("tux") is based on an initial suggestion on the linux-kernel mailing list by Alan Cox. The design is by lewing@isc.tamu.edu - many thanks !!!
    Licence-free music on / Lizenzfreie Musik von www.terrasound.de/lizenzfreie...
  • Věda a technologie

Komentáře • 149

  • @pipoviola
    @pipoviola Před 10 měsíci

    This is the way that most of the CZcams videos has to be made. Concise and pragmatic. VERY NICE JOB!

  • @kravchenko51m
    @kravchenko51m Před rokem +1

    Thanks a lot for all the work you’ve done to help other people and explain such interesting topic!

    • @OneMarcFifty
      @OneMarcFifty  Před rokem

      Hi Andrey, you are welcome. I am glad you find the videos helpful.

  • @ciberconntrol
    @ciberconntrol Před 2 lety +1

    very good explained look forward for nest sessions

  • @markllego
    @markllego Před 3 lety +2

    Love your videos, OneMarcFifty! I am currently using Cloudflare Warp Plus with Wireguard on Windows 10.

    • @OneMarcFifty
      @OneMarcFifty  Před 3 lety

      Hey Mark Anthony, many thanks ! Much appreciated.

  • @yezhang2947
    @yezhang2947 Před 2 lety +1

    Well done! Thank you!

    • @OneMarcFifty
      @OneMarcFifty  Před 2 lety

      Thank you very much ! czcams.com/channels/G5Ph9Mm6UEQLJJ-kGIC2AQ.html

  • @OneMarcFifty
    @OneMarcFifty  Před 4 lety +3

    CALL TO ACTION - please let me know if you are using a VPN and why - which problem is the biggest concern for you ? Privacy ? Security ? Accessing home/office resources ? PLEASE WRITE A COMMENT - I am planning to do a couple more videos on VPN / Privacy and Security and it would be helpful to understand where your mind is ;-) Thanks guys !!!! If you are having issues with building the VPN etc, please join me on discord - see details in this video czcams.com/video/VouCBt1NTjw/video.html and we can troubleshoot it LIFE!!!

  • @dursunselcuk9296
    @dursunselcuk9296 Před 2 lety +2

    good work. nice performence

    • @OneMarcFifty
      @OneMarcFifty  Před 2 lety

      Thank you very much ! czcams.com/channels/G5Ph9Mm6UEQLJJ-kGIC2AQ.html

  • @MultiMarcoco
    @MultiMarcoco Před rokem +1

    Hello Marc, just stumbled on your YT chanel. Great videos
    Regarding to your question about VPN I use Surfshark (would not recommend it. Slow connecting )
    Its for safe browsing and the provider doesn't log my visited sites.
    Keep up the good work and all for free. You don't see much ppl like you.
    I started my Linux journy with Knoppix on a CD some 20 years ago. later I had my own Debian server with LAMP, Samba etc. Man those were the days.
    Haven't look after Linux for 7 years or so. Now I see how much has changed in in meantime for the good

    • @OneMarcFifty
      @OneMarcFifty  Před rokem

      Hi Marco - thank you very much - yes - only change is constant ;-)

  • @LysdexicGamer
    @LysdexicGamer Před 2 lety +1

    I'm setting up a VPN currently so I can get my Helium hotspot out of relay, and bypass the closed port I'm unable to open up due to certain limitations. Super excited!

    • @OneMarcFifty
      @OneMarcFifty  Před 2 lety +1

      Awesome, many thanks for the feedback ;-)

  • @pkcdb
    @pkcdb Před 2 lety +1

    Hi, loved the video. I'm planning on using a vpn for privacy and I want to learn more about them and some networking in general.

  • @godai08kun
    @godai08kun Před 3 lety +1

    Hi Marc, short & sweet tutorial on how to set up Wireguard. I plan to use Wireguard for secure connections between my Raspberry Pis and a central server (in the cloud). Cheers, Brian

    • @OneMarcFifty
      @OneMarcFifty  Před 3 lety

      Hey Brian, many thanks for your feedback!

  • @Mikesco3
    @Mikesco3 Před 10 měsíci

    I would love to find out whether I could setup a VPS to route a local mail server through it.
    For example host a mail server in my own home network but use the VPS as a gateway but not storing mail at the VPS

  • @alaudet
    @alaudet Před 4 lety +3

    I use a VPN to access my home network only. I setup Wireguard on an dedicated OpenWRT device behind my own router. Seemed like a good use for a $10 used router. Mainly to replace ssh access to a raspberry pi I use as a sump pit monitor. It gives me more flexibility as now I can access my whole lan without tunneling through ssh. I have cheap vps's as well and I may spin up another in the States to have an american ip as well and for secure browsing. I'm in Canada.

    • @OneMarcFifty
      @OneMarcFifty  Před 4 lety +2

      Wow - thank you! So you are close to 100% within the described use cases - impressive - do you use anything like pihole or adblocker etc. and would you be interested in videos on this? Accessing remote linux with RDP will be one of the next vids - could be interesting for you as well ? Anyhow, many thanks for your feed-back!!!

    • @alaudet
      @alaudet Před 4 lety +1

      @@OneMarcFifty yes been running pihole for a couple of years probably. Been mostly using the rpi's for interfacing with ultrasonic sensors for measuring distances and volumes. It's what lead to my project Raspi-Sump (on github). I have wanted to setup a home vpn for some time but I never really dug into it and when I did I felt OpenVPN was overly complicated. I wanted to try wireguard and was already using openwrt when I saw your post on reddit. You made it pretty simple, dug out a router I bought at a yard sale and boom. Thanks for the videos, very professionally done, it's not easy to put out quality content like you do. Site to site VPN with two raspberry pi's would be an interesting topic. Connecting soho colleagues. So have the devices create the tunnel and both sides on the same subnet without messing with the client side of it. It's something I have been thinking of messing around with in my downtime. Cheers

    • @OneMarcFifty
      @OneMarcFifty  Před 4 lety +1

      First many thanks for the compliments ;-) So your use case would be to connect and route two networks... hmmm. will need to give this a thought - might need a couple of adjustments such as common DNS etc so that the resources can be seen from either side. Routing itself can probably be done easily with custom preup/postdown.. I'll think this over ;-) Had a look at Raspi-Sump - very nice ;-)

  • @henning7801
    @henning7801 Před 3 lety +2

    Another great video.
    I have ordered a IONOS server a few days ago :)
    So far I have used OpenVPN to set up a family network across multiple locations.
    We use it to replicate the data stored in our ZFS-based NAS systems.
    We also have a local Nextcloud instance and want to switch all VPN connections to Wireguard because establishing the connections seems to work much faster.
    Actually we are changing to glass fiber instead of copper based DSL. Since the provider does not support ipv4 anymore we have to build a solution to access it via ipv4 again.
    Maybe a Wireguard tunnel ...
    I have a few more suggestions for more videos:
    - sshfs based acces to remote filesystems
    - key based ssh connection

    • @OneMarcFifty
      @OneMarcFifty  Před 3 lety +1

      Many thanks Henning. You're lucky to get fiber! Yes, a VPS + VPN could hep you "proxy" IP V4 traffic. ssh / sshfs sounds very interesting. I'll have a look into that ;-)

    • @henning7801
      @henning7801 Před 3 lety

      @@OneMarcFifty
      My IONOS Server uses Ubuntu 20.04. Seems to be the new default.
      Maybe its helpful for some users to extend your scripts with version detection.
      I.E. "lsb_release -r | cut -f2" gives me "20.04" @ IONOS

    • @henning7801
      @henning7801 Před 3 lety

      I found, that the parm "SaveConfig=true" in wg0.conf is sometimes a bad thing.
      After connecting a peer with dynamic address this address is added as "endpoint" in wg0.conf.
      After restarting the VPS and/or the peer. The peer is unable to connect, if its IP has changed.

  • @deepumb678
    @deepumb678 Před rokem +1

    Your sound is awesome

  • @makonnen2112
    @makonnen2112 Před 3 lety +1

    Hey Marc, is there a way to use proxy address to browse from different ip address not just canada or the US? you'd be interest for instance in buying something from an IP in India to get a better price?
    thanks, great videos

    • @OneMarcFifty
      @OneMarcFifty  Před 3 lety

      Hi Khris, I think there are providers who sell servers in different countries. Not sure about India though...

  • @greencrunchy
    @greencrunchy Před 2 lety +1

    Hey, thanks again for this! I have built my own vps using this guide. Question though, are you able to use netflix with this? After a bit of research, looks like vps hosting are mostly blocked by Netflix now.

    • @OneMarcFifty
      @OneMarcFifty  Před 2 lety

      Hi Donald, w/r to Netflix it looks like they (and many other providers) have blocked data center IP ranges. So this would only work if the VPN endpoint would be a residential IP, i.e. a friend or so.

  • @arb84
    @arb84 Před 2 lety +1

    I am not a native speaker and your language for me is very clear. Thanks a lot. God bless you, Man!!!

    • @OneMarcFifty
      @OneMarcFifty  Před 2 lety +1

      Hi Herman, many thanks for the feedback !

  • @Redbackss
    @Redbackss Před 3 lety +2

    G'day OneMarcFifty
    I can across ya channel by fluke and so far you're the easies fella to follow and ya layout are well thought out with a great teacher, now, enough with the sucking up. I have been using VPN services for about 5-6yrs full time on the router since the Australian Government decided to record msg, txt, IP logs and etc of all Aussies since 16/10/2016 by law and it was enforced upon all carries and ISP companies to comply and it was done quietly also. But lucky for me I was ahead of the nightmare by a full year so the Privacy aspect of the VPN was met, the browsing aspect is getting out of control with fingerprinting, canvas and etc so now I'm running DNSMASQ to do adblock etc but that will change to Unbound, once I can learn all that need to be for it to be both a private DNS service and adblock in one. At present I using DD-WRT for ease of use but will change to Openwrt when I learn some more about the OS, it about just getting use to the openwrt layout. In this video when talking about VPN on a VPS to watch Netflix or Amazon Prime, do you have another VPN services that is different for your browsing given I'm thinking if you have your our VPN services on the VPS you will standout from the crowd, is this correct.
    Cheers

    • @OneMarcFifty
      @OneMarcFifty  Před 3 lety

      G‘day mate, thanks for the nice words 😂 glad you found me! There will be an episode on building a virtual OpenWrt environment with Virtualbox very soon - might give you the opportunity to get hands on with OpenWrt without having to re-flash your router 😉

    • @OneMarcFifty
      @OneMarcFifty  Před 3 lety

      W/r to your question on own vpn - it depends... the content providers have started to block non-resident ip addresses - might work as long as there aren‘t too many using the same ip range for this

  • @wallieshere
    @wallieshere Před rokem +1

    love your humour

  • @marcelsomers3404
    @marcelsomers3404 Před 2 lety +1

    Hi Marc, thank you for your clear video.
    I installed wireguard on one of the ip addresses of my vps.
    I want to create a second wireguard user which should be directed to a second ip address of that same vps and a third user which should also be directed to a third ip address of that same vps. I only have one wg0 file.
    Can you tell me how I can do this.
    THanks,
    Marcel

    • @OneMarcFifty
      @OneMarcFifty  Před 2 lety

      Hi Marcel, why would you want to direct users to different IP's? You could just use different ports or just let everyone connect to the same instance. If you use different IPs then routing can quickly become a nightmare

  • @rklauco
    @rklauco Před rokem +1

    Great video. Using wireguard myself.
    It would be great to have video showing how to use wireguard on cellphone to use your home as default GW.
    My problem is - my home does not have public IP. My VPS server is in different country. So if I want to continue watching episode of currently started TV show and it's not available in my VPS server's country, I am done.
    Thanks in advance!

    • @OneMarcFifty
      @OneMarcFifty  Před rokem +1

      Hi Robert, I've had a discussion on Discord about a year and a half ago about this very exact thing and it has made me think ever since. I am positive that I will find the time at some point to tackle the issue (Wireguard on the phone).

    • @rklauco
      @rklauco Před rokem

      @@OneMarcFifty My solution for PC was simple - I made another WG on the router at home and made that one my default GW, but on Android, you can only have one WG tunnel at a time turned on, so it is not really a solution :(
      Any advise would be appreciated.

  • @enredao_electronico2737
    @enredao_electronico2737 Před 3 lety +1

    Awesome video !! . I have a cloud IPPBX which I would like to "bridge" with my SOHO IPPBX . Wondering if this would work for 2-3 concurrent calls . I can install VPN server same VPS where the IPPBX is I imagine ...Any hint ?

    • @OneMarcFifty
      @OneMarcFifty  Před 3 lety +1

      Hi Cesar, it depends on the cloud provider / the VPS provider and on the free resources there. If you have a linux running on a VPS and enough free CPU/RAM/Disk then nothing should hold you back from doing so...

    • @enredao_electronico2737
      @enredao_electronico2737 Před 3 lety

      @@OneMarcFifty Already implemented and works properly ... You are an awesome instructor !! Thanks for sharing your knowledge

  • @lovetriathlon
    @lovetriathlon Před 2 lety +1

    Great video.
    I'm not using the VPN, but I'm planning to.
    My workplace allows me to work remotely, but only if I stay in the country. I would love to try the digital nomad lifestyle, but I'm afraid that my IP (or any VPN apps on the company's device) would give me away.
    BTW I spoke with HR about working from Asia, and they told me that I can't because my colleagues would get jealous.

    • @OneMarcFifty
      @OneMarcFifty  Před 2 lety

      OK - can’t comment on the HR aspects ;-) from a technical point of view however VPN over VPN can be a challenge though.

  • @okanerdem
    @okanerdem Před 2 lety +1

    Hey Marc, I want to ask something about vpn server. There is something that I can't quite understand the logic of. I will be glad if you are help about that. For example I'm using a raspberry pi for vpn server at home and it's connected to the my home network. My home internet speed is 25 Mbps download and 5 mbps upload. For example i go to the office and internet speed is 100 mbps download and 100 mbps upload at office. If i connected to the my vpn server. What should be speedtest/fast test result? I mean my home network upload speed should be my download speed at outsite? Could you please explain about that? Because when i test at office i can see 30-40 mbps but normally my home network download speed 25 and upload speed is 5 mbps.

    • @OneMarcFifty
      @OneMarcFifty  Před 2 lety

      Hi, yes - it can be a headache to calculate speeds - it's actually even worse - From the Office to home you will get a max of 25 Mbps. If you do stuff in your home LAN /watch the camera at home etc.) then the speed back to the office is your home upload speed, i.e. 5 Mbps. But if you are using the home VPN to surf the internet from there, the speed will be worse because you have multiple hops (into the VPN, out to the internet, back to the LAN, back to the internet) which will in fact half the speeds. So worst case you get 2.5 Mbps with this config...

  • @DIGmbl
    @DIGmbl Před rokem +2

    I’m using a VPN with external server primarily to overcome the state’s censorship.

  • @danielyoutube8960
    @danielyoutube8960 Před rokem +1

    I cant find the episode with the remote browser. Isn't it available?

    • @OneMarcFifty
      @OneMarcFifty  Před rokem +1

      Hi Daniel, no - sorry - I have never made it ;-(

  • @jaykelly2490
    @jaykelly2490 Před 3 lety +1

    Excellent video, I primarily use my VPN to easily and safe access home office files when away from home and for better security when on public Wi-Fi. I have been hosting wireguard on my own home server, but may look into storing mine in the cloud

    • @OneMarcFifty
      @OneMarcFifty  Před 3 lety +1

      Great feedback, many thanks Jay!

    • @terewamooney3535
      @terewamooney3535 Před rokem

      Isn't it more safer to host wireguard on your home server than cloud, or does cloud offer more storage?

  • @rblx_tuan1393
    @rblx_tuan1393 Před 2 lety +1

    Hey is it possibility that you can have both protocols like open VPN and wireguard? Could you make instructions about that because both combined is secure! Any way to contact you like email or discord?

    • @OneMarcFifty
      @OneMarcFifty  Před 2 lety

      If you go to my channel page czcams.com/channels/G5Ph9Mm6UEQLJJ-kGIC2AQ.html then you'll find the link to Discord: discord.com/invite/DXnfBUG

  • @aleksandarlogate
    @aleksandarlogate Před 3 lety +1

    Good post! I am just wondering how you rent that VPN from Canada Ionos without having Canada postal address. I cannot do that. Good Luck!

    • @OneMarcFifty
      @OneMarcFifty  Před 3 lety +1

      I am not renting it from Canada but from Ionos in Germany - I say so in the video btw ;-)

    • @aleksandarlogate
      @aleksandarlogate Před 3 lety +1

      @@OneMarcFifty Thank you, I must be listening bad :) From Canada Ionos it is very low price 1CAD :)

  • @juanpablomorenomendez3005

    how would you insert a half note in the channel rack

    • @OneMarcFifty
      @OneMarcFifty  Před rokem

      Hi, I am not sure if I understand what you mean?

  • @CzAerox
    @CzAerox Před 3 lety +2

    I have just found this amazing video. Now I am thinking if it's possible to make it for Homeassistant (hassio) just to provide HA public IP. Here in Czech, there is not many ISPs that provide public IP for a good price, sometimes they never allow you having one.. I would probably choose the german one, just in case I would like to use VPN for other devices. Do you think it would be possible?

    • @OneMarcFifty
      @OneMarcFifty  Před 3 lety +1

      Sure, why not? You would just need to lock it down from a security standpoint (Firewall, VPN, TLS etc.).

    • @CzAerox
      @CzAerox Před 3 lety +1

      ​@@OneMarcFifty That's what I worrying about. There is a WireGuard addon for HA so it should be pretty easy to connect, I hope. The security standpoint is probably the new video you have published " 3 basic Linux security settings for a VPS " right? Would you consider making a video about connection HA to WireGuard + ionos, please? I am not really sure how long or short it may be from the beginning of making your own VPN to providing public IP to HA, but I think you just proved that it is possible to achieve it for only 1 USD. Many HA users are trying to access their HA remotely using weird tricks with webhook relay, some weird WeChat addon, and others pretty untrusty ways to connect or pair with other services which require public IP. I and many users would appreciate having this access and also own VPN for such cheap as 1 USD if their IPS does not allow them to have public IP. I don't know how others but for me, some videos about VPS and configuration Linux are above my head, anyway I would still try that. Also thank you for the videos you make, they are amazing!

    • @OneMarcFifty
      @OneMarcFifty  Před 3 lety +1

      Hi @Aerox , the 3 basic settings are - as the title stipulates - basic in the sense that depending on your use case you might need to do a bit more. Keep in mind that if you extend your home network to a machine in the cloud (and effectively that is what you would do) then you are opening a second potential vector into your home network. With regards to Home Assistant that would just be one specific use case, but there would be many many more. In essence you could install and run any software on that machine. I am definitely planning on doing additional episodes on VPN, on VPS, on security etc. There is however one thing which I do not fully understand yet and that - what is the reason why you would want a public IP in the first place - or let me ask this way : What are you trying to achieve with a public IP that you can't do from inside ?

    • @CzAerox
      @CzAerox Před 3 lety +1

      @@OneMarcFifty I would like to use homeasistant app in my phone outside my network, getting notifications, turning switches on and also connecting alexa to my HA which requires public IP for either duckdns or having static IP. Also using IFTT to connect other platforms also doesn't work for me without public IP, In my friend's house with public IP everything works fine. Not having public IP making me troubles to connect to some of the services or even game servers or services requiring port forwarding.

    • @OneMarcFifty
      @OneMarcFifty  Před 3 lety +1

      @@CzAerox Many thanks for your reply, OK I see - that's definitely a great use case - the online gamers often have the same where they need public IP plus Port forwarding - I might indeed address this in a future video. Seems to look like the ISPs are running out of IP4 addresses ;-)

  • @alsjogren7890
    @alsjogren7890 Před rokem +1

    We have a VPN site-to-site routed using DD-WRT. I am looking to convert to newer, faster VPN. Wireguard keeps coming up in my research. Our need for VPN is geographical - not security. We live in Mexico in the Winter and the USA in the summer. The choices seem to be using OpenWRT and either OpenVPN or Wireguard on a router based solution. Or, a PC in the USA running Wireguard. Or, a virtual server in the cloud.

    • @OneMarcFifty
      @OneMarcFifty  Před rokem

      Hi Al, those are good options indeed. Wireguard or OpenVPN, either on a router or PC or VPS.

  • @JaimeGonzalez-tt4kk
    @JaimeGonzalez-tt4kk Před rokem +1

    Hi Marc! I setup a VPN using IONOS in the US. Unfortunately it seems IONOS IPs are already blocked by Netflix =~(

    • @OneMarcFifty
      @OneMarcFifty  Před rokem

      Oh yes, they are. Most Datacenter IP ranges are blacklisted ;-(

  • @DrLohTW
    @DrLohTW Před 2 lety +1

    When using on AWS, you need to allow UDP on port 51820 in the Security Group settings.

  • @anvardjamalov736
    @anvardjamalov736 Před 3 lety +1

    Could you please make a video specially about wireguard

    • @OneMarcFifty
      @OneMarcFifty  Před 3 lety

      That’s a great idea! I have gotten a lot of feedback where viewers ask for help for the implementation. I’ll put it on the list-thank you!

  • @vjv3217
    @vjv3217 Před 2 lety +1

    hi, I have watch you youtube and subscribed to your channel, I'm planning to get a
    VPN but its too expensive 65$ a month, I like your video but I'm not computer geek,
    is there a ready software to install your VPN Thanks?

    • @OneMarcFifty
      @OneMarcFifty  Před 2 lety

      Hi, unfortunately no - this is really just DIY - sorry ;-(

  • @Lillfot
    @Lillfot Před 4 lety +2

    I would love to set up a VPN at home for both security purposes and home access when travelling and also get a Raspberry Pi with PiHole going so I don't have to see ads when using CZcams on my phone.

    • @OneMarcFifty
      @OneMarcFifty  Před 4 lety +1

      Great, thank you very much ! I have in fact already been thinking if it would be worth adding a PiHole to the config for exactly this purpose - you say you would run the VPN rather at home than on a cloud server - would you run PiHole on a Raspberry Pi or rather on a different hardware (Laptop etc ?)

    • @Lillfot
      @Lillfot Před 4 lety +1

      @@OneMarcFifty I'd like to run I on a Pi as a first project. I have several boards that I haven't even powered up previously and you really can't beat the power usage of a Pi compared to a dedicated PC of any description. I can possibly even run a Pi Zero off the USB port on my router if I tweak it.

    • @OneMarcFifty
      @OneMarcFifty  Před 4 lety +2

      Very true - can't beat it on low power - I had just been thinking in the past "how to extent my Raspi to multiple ethernet ports?" - and when I did my VLAN videos I thought - that's it - you just add the Raspberry pi to 2 VLANs and hook it up to a switch or router - now that you tell me you could power it over the router's USB that gives me plenty of ideas for setup - even better than extroot (i.e. extending your OpenWrt router's memory) because not everybody has OpenWRT - I might be doing a video on this very soon ;-) MANY THANKS FOR YOUR FEED-BACK ! HIGHLY APPRECIATED!

    • @Lillfot
      @Lillfot Před 4 lety +1

      @@OneMarcFifty Do bear in mind that USB ports don't supply an awful lot of current, so something like my silly idea is probably an edge case for an undervolted and underclocked RPi-Zero on a USB3 properly specced port with 900mA delivery. I'm very glad to help! :)

    • @alaudet
      @alaudet Před 4 lety +2

      Pihole doesn't really work for youtube adblocking. Hard to block via dns when youtube hosts their own ad network and make it look like normal content. Pihole in conjunction with client side ad blocker works great though.

  • @stephenbutler3105
    @stephenbutler3105 Před 3 lety +1

    Hi Marc,
    I live in Ottawa, Canada and use Private Internet Access for machines that I want to keep private from my ISP, but I don't have tunnels outside of Canada, it is just for privacy. Yes I know I am choosing one company over another, but I hope PIA is honest when they say they don't log. I know my ISP logs. I also have OpenVPN connections to my in-laws and mother's homes so I can more easily do remote support.

    • @OneMarcFifty
      @OneMarcFifty  Před 3 lety

      Hi Stephen, many thanks for the feed back ;-)

  • @DanteBasso
    @DanteBasso Před 3 lety +2

    One question: I can use WIREGUARD to "only connect to REMOTE LAN not use internet from there"...
    Like: I need to access my server, using VPN but I does not wont that VPN use the internet from remote VPN server, only LOCAL ACCESS... all internet traffic still using from where I'm connected on my device.
    Did you understand me?

    • @OneMarcFifty
      @OneMarcFifty  Před 3 lety

      Fully understood 😉 - you might try to put the wg0 interface into a separate firewall zone and then activate zone forwarding and masquerading to the wan zone.

    • @DanteBasso
      @DanteBasso Před 3 lety +1

      @@OneMarcFifty A little bit complex for me now. If you make a video explaning that will be better! ahahah Thanks for fast reply! I will try as soon as possible

    • @OneMarcFifty
      @OneMarcFifty  Před 3 lety

      Ok Dante - you may join my discord session on Sunday if you want to - check the last video 😉

    • @OneMarcFifty
      @OneMarcFifty  Před 3 lety

      Actually - my bad - my answer was more related to a different video (Wireguard on OpenWrt, not Wireguardd on VPS) - I was confused. So you have a Virtual Server (VPS), right - or are you connecting to your VPN at home ? If you have a VPS it might be that your VPS is in a NATted environment. People using the OpenVPN Bonding have the same issue. If you run the following command in an ssh session - what does it give you ?
      1. Command: curl -s ipinfo.io/ip
      (this should give you the public IP address of your VPS Server
      2. Command: ip -br addr
      This show you all the IP addresses on your VPS.
      I assume that the first (public) IP address does not show up in the second command, right ? But only private addresses like 10.x.x.x, 172.x.x.x and 192.168.x.x
      I'll need to add the same fix like for the OpenVPN bonding scripts to this script.

    • @OneMarcFifty
      @OneMarcFifty  Před 3 lety

      I have added the fix to the Github repository. It should work now. Can you give it a try with the new version please ?

  • @wdaswwqads
    @wdaswwqads Před rokem +1

    When I try to paste it in the wireguard tunnel it says Invalid endpoint host:""

    • @wdaswwqads
      @wdaswwqads Před rokem +1

      There is no ip in the endpoint host, just 5 digits

    • @OneMarcFifty
      @OneMarcFifty  Před rokem

      Hey, that question is difficult to address here in CZcams comments really. Maybe you want to hop on the Discord server and create a /support thread there ?

  • @JonatanDiRocca
    @JonatanDiRocca Před 3 lety +2

    HI Mark! First of all.. thanks for all these knowledge! I have a few problems with the script... It Does Not create me the WG0 interface and because this I can connect to the server with the client but i have no transfer. Can you give me a clue? This are the last three lines of the output of wireguard.sh , after installing everything.
    net.ipv4.ip_forward = 1
    our interface:ens192:
    Created symlink /etc/systemd/system/multi-user.target.wants/wg-quick@wg0.service → /lib/systemd/system/wg-quick@.service.
    Thanks in advance!

    • @JonatanDiRocca
      @JonatanDiRocca Před 3 lety +1

      I keep trying... now I see the log and it repeats all the time "Sending handshake initiation" , and stays there.

    • @OneMarcFifty
      @OneMarcFifty  Před 3 lety

      @@JonatanDiRocca Hey, many thanks for your feedback and question. Has the WG0 interface been created in the meanwhile ? If you need assistance then the best way would probably be to join my weekly discord session on sunday. Watch the video "Chat with Mac on Discord" for details. Happy to help !!!

  • @BlackWolF_1374
    @BlackWolF_1374 Před rokem +1

    I have learn how to code my own vpn because I must help my people inside IRan. please explaine about diffrents proocols and V2ray, how they work etc . . .

    • @OneMarcFifty
      @OneMarcFifty  Před rokem

      Hi, I am personally only using Wireguard as VPN - I am afraid that I can't really be of any help with other protocols...

    • @BlackWolF_1374
      @BlackWolF_1374 Před rokem

      @@OneMarcFifty I have not tried wireguard for the moment but normal vpn such as NordVpn and ExpressVpn doesn't work and if they work, they don't provide any stable connection at the moment in Iran.

  • @GeorgeValkov
    @GeorgeValkov Před 2 lety +1

    Please show Wireguard on OpenWRT! Can you do a Layer 2 bridge with Wireguard? I use Layer 2 bridge with OpenVPN. You should flash a custom image of OpenWRT on the VPS.

    • @OneMarcFifty
      @OneMarcFifty  Před 2 lety

      Hi George, unfortunately you can't do layer 2 on Wireguard....

  • @qusshinemark
    @qusshinemark Před 3 lety +1

    Can you explain wirespeed vpn😥

    • @OneMarcFifty
      @OneMarcFifty  Před 3 lety

      Seems to be a commercial offering with Wireguard on it

  • @jonathanpayne9956
    @jonathanpayne9956 Před 3 lety +2

    Hi mark! i am starting to feel like a @onemarkfity wanna be! so i set up a vps used your scrip and set up a wg server and 5 clients. so my setup is open-wrt router - odroid server and now vps running wireguard (docker also installed but unused atm), so i have two issues i would like you to advise on please! offcourse i use cloudflare and a docker script to update the ddns adress , so that failed ! my naff hack is to vpn bypass the server ip - the openwrt script dont seem to be an option as i proxy my adress - the vpn bypass means i have services on the server that are not protected, have you got a better solution? my media pc running android x86 works well on all the geo locked services (vps is in the uk as am i) except one the one i use the most - virgin tv go it reports the wrong region! could this be ip 6 ? how does it know? ps my wife is French too!

    • @OneMarcFifty
      @OneMarcFifty  Před 3 lety

      Hey Jonathan - great news, so I got you on the hook right 😂 I am not 100% sure if I understand all the details. Your VPS runs Wireguard but you need to bypass it why exactly? Could you maybe post a drawing - or alternatively of course we can walk this through tomorrow on discord...

    • @jonathanpayne9956
      @jonathanpayne9956 Před 3 lety +1

      @@OneMarcFifty sorry! i diddnt explain well,! the vps is the wireguard server - openwrt router is the client and the odroid server is running docker behind the router . so the cloudflare ddns update docker container failed becouse it was getting the vps public adress and updating cloudflalre to that so i needed to exclude the odroid server from the vpn using openwrt vpn bypass and the local adress of the odroid server. not ideal as i would like to run docker services that are protected by vpn and are now exposed to my real public ip.

    • @OneMarcFifty
      @OneMarcFifty  Před 3 lety +1

      @@jonathanpayne9956 OK, now I see. I could think of three solutions here. First way would be to define VLANs. VLAN1 with the VPN and VLAN2 without the VPN. Then connect the ODROID tagged with both VLANs to the router. So let's say you would have eth0.1 on VLAN1 with VPN and eth0.2 on VLAN2 without VPN. You would then have to bind the ddns daemon or script to the eth0.2 interface and everything else to the eth0.1 interface on the ODROID. Disable ip4 forwarding on the odroid to avoid building a loop between VPN and no VPN. Second solution would be to solve on layer3 (IP routing). But this would involve to have knowledge on how the odroid figures out the public IP. Is it doing a tracert to some IP, is it checking the default GW etc. You could then add rules on the router for the odroid MAC and the corresponding IPs/ports that the DDNS client tries to reach and forward them to the right interface, maybe SNAT into the WAN zone and add an ip rule for that IP. Third possibility to investigate - a bit more complex - could be to have the router send its public IP to the odroid using some other protocol (MQTT? or an ssh command that gives back the public IP of the router) and hard write that IP into the DDNS config files if you can, so basically tell DDNS which address to publish.

    • @jonathanpayne9956
      @jonathanpayne9956 Před 3 lety +1

      @@OneMarcFifty thankyou! very helpfull! i have in the past attempted vlan to the odroid and failed but i think i must try again! i already publish via mqtt ip associations and client events witch i use with some esp6266 promiscuous wifi sniffing to determine the mac of unknown persons in the house and who is home, so adding the wan ip to that is also doable and i think i will! but the vlan solution certainly rings the good engineering bell in my ear and separate lans for vpn and non vptn traffic sounds like something i want!. i did for some time run a script to update cloudflare but now it is done on docker and i try to keep the odroid as clean as i can ( i got reverseproxy, nextcoud , nodered and mosquito running on it and i get sweaty when it crashes!). thankyou so much!

    • @jonathanpayne9956
      @jonathanpayne9956 Před 3 lety +1

      now i have my openwrt vm my life should be easer getting the setup right! thanks for you video on that!

  • @crazypict
    @crazypict Před rokem +1

    Yes I am using a VPN, OpenVPN. I have been too lazy to set up my own...

  • @Ntinosg
    @Ntinosg Před 2 lety +1

    all of them

  • @gordslater
    @gordslater Před 4 lety +2

    awesome THIS CHANNEL IS WELL WORTH A SUB+LIKE FOLKS

  • @hansnielsen1989
    @hansnielsen1989 Před 2 lety +1

    all 3

  • @cyanoure
    @cyanoure Před 2 lety +1

    You can SSH in CMD in Windows.

    • @OneMarcFifty
      @OneMarcFifty  Před 2 lety

      Yes that's correct - you had to use Power shell for that explicitely in the past but seems like "cmd" now actually runs Powershell. I think that happened in the April 2018 update of Windows 10 and I had totally missed it until recently ;-)

  • @devsunny10
    @devsunny10 Před 3 lety

    Hey man do you reply to comments I have one big interesting problem which is related to the stuff you have been working on let's discuss the problem n the solution
    I want to access my home network remotely from a different country and pass all the traffic through it as if I'm sitting at my home
    Basically spoofing my location without using a paid VPN
    I'm eagerly waiting for your response

    • @OneMarcFifty
      @OneMarcFifty  Před 3 lety

      For this you need a VPN Server. There is a video on my channel on how to do this with OpenWrt

    • @devsunny10
      @devsunny10 Před 3 lety

      @@OneMarcFifty hey man thanks for replying ....... do you think wireguard works perfectly ?????

    • @OneMarcFifty
      @OneMarcFifty  Před 3 lety

      I like it - alternatively you could use Openvpn

    • @devsunny10
      @devsunny10 Před 2 lety

      @@OneMarcFifty hello man I have set up the wire guard VPN server with Raspberry Pi at my home but now I'm facing some problem that many apps on my mobile phone do not connect or work properly when I'm connected to wireguard VPN on my phone .... do you have any idea ?? please help

  • @Newtube_Channel
    @Newtube_Channel Před 3 lety +3

    Why?? If content is not available to you then why beat the system? It's deceitful. You're proudly hacking away at it, so clever.

    • @OneMarcFifty
      @OneMarcFifty  Před 3 lety +1

      Thanks Newtube - Even though I am more of a techie and just interested in the technical feasibility of things ;-) However, the story I tell is true, because at the time I tried to sign up to Netflix in Canada but I couldn't so now I am actually a Netflix customer here in Germany ;-)