WireGuard Mesh

Create and manage WireGuard profiles that extend approved devices into the private One-Click infrastructure mesh.

One-Click documentation · Step-by-step guide

The WireGuard engine creates cryptographic client profiles for remote devices and controlled access into private Fleet networks.

Commands

one-click --wireguard add-user
one-click --wireguard delete-user
one-click --wireguard view

Design

Client profiles are treated as explicit access grants. Remove stale profiles when devices or administrators leave the environment, and keep private keys local to their intended endpoint.

Typical Uses

  • Administrator access to NAT-isolated guests.
  • Private service routing between infrastructure zones.
  • Temporary device onboarding without exposing additional public ports.