|
|
|
|
|
by Karrot_Kream
441 days ago
|
|
Why not just have nginx listen on the Wireguard interface itself? That way you drop all traffic coming inbound from sources not on your Wireguard network and you don't even have to send packets in response nor let external actors know you have a listener on that port. |
|