Package: wireguard-tools
Version: 1.0.20210914-1+b1
Severity: important

The systemd unit file /lib/systemd/system/wg-quick@.service sets

Environment=WG_ENDPOINT_RESOLUTION_RETRIES=infinity

With WireGuard configurations that use DNS names as endpoint definitions,
this results in an indefinite hang on system bootup when DNS is not available
or misconfigured.

The environment variable should be set to some sensible value, like 3 or 5.


-- System Information:
Debian Release: 12.6
  APT prefers stable-updates
  APT policy: (500, 'stable-updates'), (500, 'stable-security'), (500, 'stable')
Architecture: amd64 (x86_64)

Kernel: Linux 6.1.0-23-amd64 (SMP w/4 CPU threads; PREEMPT)
Locale: LANG=C, LC_CTYPE=C.UTF-8 (charmap=UTF-8), LANGUAGE not set
Shell: /bin/sh linked to /usr/bin/dash
Init: systemd (via /run/systemd/system)
LSM: AppArmor: enabled

Versions of packages wireguard-tools depends on:
ii  libc6  2.36-9+deb12u7

Versions of packages wireguard-tools recommends:
ii  iptables                               1.8.9-2
ii  linux-image-amd64 [wireguard-modules]  6.1.99-1
ii  nftables                               1.0.6-2+deb12u2

Versions of packages wireguard-tools suggests:
pn  openresolv | resolvconf  <none>

-- no debconf information

Reply via email to