• v0.3.0 1fe9b4e619

    Redetzke released this 2026-10-04 18:57:15 +00:00 | 10 commits to main since this release

    Changes

    • Two-step sign-in: under My account, each user can add an authenticator app (6-digit codes), security keys such as a YubiKey, and passkeys that sign in on their own, without username and password. The first method brings 10 one-time recovery codes.
      • Admins can require two-step sign-in for everyone (Settings → Sign-in) and reset it for a user who lost their phone or key (Edit user, or the iOS app).
      • Security keys and passkeys use WebAuthn and need the server's domain name with a trusted certificate (Let's Encrypt, certificate files, or a reverse proxy). On a self-signed certificate or an IP address, only the authenticator app is offered.
      • API tokens, like the iOS app's, never need a second step.
    • Sortable peers table: click any column header on the Peers page to sort by it; click again to reverse.
    • Shorter connection history: a peer's page shows the 8 newest sessions, with "Show all" for the rest.
    • Fresh files after every update: the web interface loads its scripts and styles with a version fingerprint, so browsers pick up new versions without a hard reload.
    • Sign-in page: the "WireGuard server manager" line is gone.

    Update

    Copy the binary for your server to it and run, as root:

    chmod +x GHOSTWIRE-v0.3.0-linux-amd64
    sudo ./GHOSTWIRE-v0.3.0-linux-amd64 update
    

    Coming from v0.2.x or v0.1.x, nothing else changes. Two-step sign-in stays off until a user sets it up. For a new installation, use install instead of update; see the README.

    Files

    File For
    GHOSTWIRE-v0.3.0-linux-amd64 64-bit x86 servers
    GHOSTWIRE-v0.3.0-linux-arm64 64-bit ARM, e.g. Raspberry Pi OS 64-bit
    GHOSTWIRE-v0.3.0-linux-armv7 Raspberry Pi OS 32-bit
    SHA256SUMS checksums: shasum -a 256 -c SHA256SUMS
    Downloads