# allow wireguard options
peer PUBLICPEERKEY allowed-ips IFACESSUBNET endpoint PUBLICIP:ALLOWPORT