@wesmason Non standard port, plus no password login allowed, only keys.
@wesmason But also: check out Tailscale.
@ben I just finished setting up WireGuard. I use UniFi at home and it was built in. I tried their 'Teleport' option, but I use site-to-site with another UniFi router and because Teleport's VPN address range is not configurable, you can't access sites over the site-to-site.
@wesmason Ironically, I have the same complaint about Tailscale, and was thinking of shutting that down and using plain WG instead.
@wesmason On Tailscale, the non-configurable address range means you can't join two tailnets at once.
@ben @wesmason I keep wondering about https://headscale.net/stable/about/faq/ (not that I use Tailscale)
@ben @mWare @wesmason Better handling of multiple Tailnets is on Tailscale's radar, but I don't know how high up their priority list it is (and it's not something that's been done in the ~year ish since we talked to them about it).
(We're looking at Tailscale at work and one of the issues for a university-wide usage, including departmental private networking, is this sort of multi-Tailnet stuff.)
@ben WG's client on Windows and Android aren't bad. UniFi's interface does not let you use all the features preconfigured in the client config files, but they are text so you can add them as needed. The Linux client had me flipping tables in Linux Mint until I realized there was an applet I could enable to get it on the desktop. I haven't tried OSX or iPhone.
Also figured out that the client's pre-name the VPN cased off the imported config file. So a long descriptive filename looks awful once imported.