VPN-Übersicht · Toschke-Net

Alle Peers am Hub vpn.toschke.de (OpenWrt LXC 1014144, WireGuard UDP 51820). Formate für Import/Rollout ohne Geheimnisse.

URL: http://intranet.tos.zone/vpn-uebersicht/
Stand: 2026-07-25
← Dashboard
1Hub
7Standorte (Spokes)
2Infrastruktur
14Road Warriors
WGProtokoll überall
Hub-Endpoint: vpn.toschke.de:51820 (IPv4 94.130.14.144, IPv6 2a01:4f8:10b:12c7:a::144). Tunnelnetz 10.10.10.0/24 · DNS im Tunnel 10.10.10.1 · Keepalive 25 s. Keine Private Keys auf dieser Seite.

Hub

Name Verbindung Tunnel-IP Profil / Modus Formate
OpenWrt VPN-Hub
vpn.toschke.de
WireGuard Server 10.10.10.1 Hub-and-Spoke, Transitrouter UCI / apply-hub.sh LuCI

Standorte (FRITZ!Box / GL.iNet)

Name Verbindung Tunnel-IP LAN Profil / Modus Formate
Home-Rechenzentrum WireGuard Spoke → Hub 10.10.10.2 192.168.46.0/23
+ 172.30.33.0/24
Standort Split · Address /32 wireguard-home.conf FRITZ Import Hub-Peer live
Zahnarztpraxis (FB1) WireGuard Spoke → Hub 10.10.10.3 192.168.1.0/24 Standort Split · Address /32 wireguard-praxis.conf FRITZ Import Hub-Peer live
Standort FB16 WireGuard Spoke → Hub 10.10.10.4 192.168.16.0/24 Standort Split · Address /32 wireguard-fb16.conf FRITZ Import Hub-Peer live
Standort FB28 WireGuard Spoke → Hub 10.10.10.7 192.168.28.0/24 Standort Split · Address /32 wireguard-fb28.conf FRITZ Import Hub-Peer live
Standort FB97 WireGuard Spoke → Hub 10.10.10.6 192.168.97.0/24 Standort Split · Address /32 wireguard-fb97.conf FRITZ Import Import vor Ort offen
Standort FB77 WireGuard Spoke → Hub 10.10.10.8 192.168.77.0/24 Standort Split · nur Route zu Home wireguard-fb77.conf FRITZ Import Import vor Ort offen
GL.iNet mobil WireGuard Client → Hub 10.10.10.10 192.168.8.0/24 Mobil · outbound; inbound gesperrt wg-client.conf GL.iNet Import Hub-Peer live

Infrastruktur

Name Verbindung Tunnel-IP Profil / Modus Formate
Proxmox srv01 WireGuard Peer → Hub 10.10.10.5 Split Tunnel (Infrastruktur) wg-Conf / Host Hub-Peer live
Synology DiskStation WireGuard Peer → Hub 10.10.10.20 Split Tunnel · mDNS-Reflector wg-Conf / Synology Hub-Peer angelegt

Road Warriors (Geräte)

Gerät Verbindung Tunnel-IP Profil / Modus Formate
iPhone Daniel WireGuard App → Hub 10.10.10.11 Full Tunnel (0.0.0.0/0, ::/0) wg-ios-iphone.conf .mobileconfig (iMazing) QR Hub-Peer live
iPad Daniel WireGuard App → Hub 10.10.10.12 Full Tunnel wg-ios-ipad.conf .mobileconfig (iMazing) QR Hub-Peer live
MacBook Daniel WireGuard App → Hub 10.10.10.13 Full Tunnel wg-macos-macbook.conf Hub-Peer live
HP-LAVE-TOS Windows WireGuard App → Hub 10.10.10.14 Full Tunnel wg-windows-hp_lave_tos.conf Hub-Peer angelegt
Android Bernie WireGuard App → Hub 10.10.10.15 Full Tunnel wg-android-bernie_android.conf QR Hub-Peer angelegt
Notebook Bernie WireGuard App → Hub 10.10.10.16 Full Tunnel wg-windows-bernie_notebook.conf Hub-Peer angelegt
iPhone Michaela WireGuard App → Hub 10.10.10.17 Full Tunnel wg-ios-iphone_michaela.conf .mobileconfig (iMazing) QR Hub-Peer live
iPhone Raphael WireGuard App → Hub 10.10.10.18 Full Tunnel wg-ios-iphone_raphael.conf .mobileconfig (iMazing) QR Hub-Peer live
iPhone Rainer WireGuard App → Hub 10.10.10.19 Full Tunnel wg-ios-iphone_rainer.conf .mobileconfig (iMazing) QR Hub-Peer live
iPhone Marius WireGuard App → Hub 10.10.10.21 Full Tunnel wg-ios-iphone_marius.conf .mobileconfig (iMazing) QR Hub-Peer live
iWatch Daniel WireGuard (via iPhone / Profil) 10.10.10.22 Full Tunnel · kein natives watchOS-WG wg-ios-watch_daniel.conf .mobileconfig (iMazing) QR praktisch über iPhone Hub-Peer live
iWatch Raphael WireGuard (via iPhone / Profil) 10.10.10.23 Full Tunnel · kein natives watchOS-WG wg-ios-watch_raphael.conf .mobileconfig (iMazing) QR praktisch über iPhone Hub-Peer live
iWatch Michaela WireGuard (via iPhone / Profil) 10.10.10.24 Full Tunnel · kein natives watchOS-WG wg-ios-watch_michaela.conf .mobileconfig (iMazing) QR praktisch über iPhone Hub-Peer live
iPad Heidi WireGuard App → Hub 10.10.10.25 Full Tunnel wg-ios-ipad_heidi.conf .mobileconfig (iMazing) QR Hub-Peer live

Format-Legende

FormatBedeutungTypischer Einsatz
*.conf (wg-quick) WireGuard-Konfigurationsdatei App-Import iOS/macOS/Windows/Android, FRITZ!, GL.iNet
.mobileconfig Apple-Konfigurationsprofil (com.wireguard.ios) iMazing-Ausrollen auf iPhone/iPad
QR QR-Code der wg-quick-Config Schneller App-Import auf Mobilgeräten
FRITZ Import WireGuard-Verbindung in FRITZ!OS Standort-Spokes Home/Praxis/FB*
UCI / apply-hub.sh OpenWrt-Hub-Peerdefinition Server-Seite LXC 1014144

Quellen (Mac / Repo)

Inventar: srv01.toschke.de/openwrt-vpn-fritzbox/inventory/sites.yml
Configs: …/output/mobile/, …/output/fritzbox/, …/output/mobile/imazing/
Diese Seite: homenet46/vpn-uebersicht/