services: wireguard: image: ghcr.io/wg-easy/wg-easy restart: unless-stopped volumes: - /home/nick/configs/vpn/wireguard:/etc/wireguard environment: - WG_HOST=${WG_URL} - WG_DEFAULT_DNS=1.1.1.1, 1.0.0.1 ports: - 51820:51820/udp networks: - default - routing cap_add: - NET_ADMIN - SYS_MODULE sysctls: - net.ipv4.ip_forward=1 - net.ipv4.conf.all.src_valid_mark=1 networks: routing: external: true name: routing