#!/usr/bin/env bash
set -euo pipefail
NAME=${1:?peer name}
WG=/etc/wireguard/wg0.conf
umask 077
priv=$(wg genkey)
pub=$(printf %s "$priv" | wg pubkey)
cat <<EOF

[Peer]
# $NAME
PublicKey = $pub
AllowedIPs = 10.44.99.0/24
EOF
