kate3
Member
OP
- Joined:
- Jul 2024
- Posts:
- 208
- From:
- Utrecht, NL
Running WireGuard on OpenVZ 6
You will need the userspace implementation. The kernel module is not available on most OpenVZ 6 nodes because the host kernel is typically 2.6.32 with a custom patchset that never merged WireGuard. Install wireguard-go and use it as a fallback. Expect higher virtualization tax—userspace forwarding burns CPU cycles that a paravirt KVM guest would not pay.
I am documenting this because a legacy client has 200+ OpenVZ 6 containers that cannot be migrated before Q3 2026. This is not an endorsement. If you have cgroup limits on net_cls you may hit throughput ceilings around 150 Mbps. Test your specific host kernel revision.
virsh list --all | wc -l: 47
Carl
Member
Rack & Stack
- Joined:
- May 2024
- Posts:
- 227
- From:
- Chicago, US
Legacy client has 200+ OpenVZ 6 containers
Just dont use OpenVZ 6. Those nodes are running on Ivy Bridge or Sandy Bridge hardware at this point. 95W TDP chips, DDR3, probably pulling 1.2A per U. The power cost alone to keep that generation online is eating whatever margin the provider had. I have shipped two pallets of R320s to scrap this year. Legacy is one thing but you are burning electricity on 14 year old silicon.
visit twice: install and decom
lucgone
Member
Le Baguette
- Joined:
- Jul 2024
- Posts:
- 296
- From:
- Lyon, FR
I try with wireguard-go and it is ok for my small vpn. But my cpu is very high. Since 2 days I search why. Your guide help me franchement. I think I will migrate soon but not now. My provider is Hostinger and they say me "no problem" when I ask for OpenVZ 6 lol. Thank you for this.
Vive la résistance... électrique