Wg Easy
FreeNot checkedMCP server for administering wg-easy (WireGuard Easy) instances, enabling listing, creating, updating, enabling/disabling, and deleting WireGuard clients, fetch
About
MCP server for administering wg-easy (WireGuard Easy) instances, enabling listing, creating, updating, enabling/disabling, and deleting WireGuard clients, fetching configs and QR codes, and inspecting server status via the wg-easy REST API.
README
A Model Context Protocol (MCP) server for administering wg-easy (WireGuard Easy) instances.
Lets MCP clients like Claude Code, Claude Desktop or Codex manage your WireGuard VPN: list, create, update, enable/disable and delete clients, fetch configuration files and QR codes, and inspect the server status — all through the wg-easy v15 REST API.
Requirements
- Node.js ≥ 20
- A running wg-easy v15+ instance
- 2FA (TOTP) must be disabled for the account used by this server — the wg-easy API only supports Basic Authentication and does not work with 2FA enabled
Note: The wg-easy REST API is not yet declared stable and may change between releases. This server targets wg-easy v15.
Configuration
Configuration is provided via environment variables:
| Variable | Required | Description |
|---|---|---|
WG_EASY_URL |
yes | Base URL of the wg-easy web UI, e.g. http://vpn.example.com:51821 |
WG_EASY_USERNAME |
yes | Username of a wg-easy admin account |
WG_EASY_PASSWORD |
yes | Password of that account |
WG_EASY_INSECURE_TLS |
no | Set to true to accept self-signed TLS certificates |
Installation
Claude Code
claude mcp add wg-easy -s user \
-e WG_EASY_URL=http://vpn.example.com:51821 \
-e WG_EASY_USERNAME=admin \
-e WG_EASY_PASSWORD=your-password \
-- npx -y wg-easy-mcp
Claude Desktop
Add to your claude_desktop_config.json:
{
"mcpServers": {
"wg-easy": {
"command": "npx",
"args": ["-y", "wg-easy-mcp"],
"env": {
"WG_EASY_URL": "http://vpn.example.com:51821",
"WG_EASY_USERNAME": "admin",
"WG_EASY_PASSWORD": "your-password"
}
}
}
}
Codex
Add to your ~/.codex/config.toml:
[mcp_servers.wg-easy]
command = "npx"
args = ["-y", "wg-easy-mcp"]
env = { WG_EASY_URL = "http://vpn.example.com:51821", WG_EASY_USERNAME = "admin", WG_EASY_PASSWORD = "your-password" }
From source
git clone https://github.com/ni-c/wg-easy-mcp.git
cd wg-easy-mcp
npm install
npm run build
# then use `node /path/to/wg-easy-mcp/dist/index.js` as the command
Tools
| Tool | Description |
|---|---|
list_clients |
List all WireGuard clients with status and traffic statistics |
get_client |
Get the full details of a single client |
create_client |
Create a new client (name, optional expiresAt) |
update_client |
Update a client; only the provided fields are changed |
enable_client / disable_client |
Enable or disable a client |
delete_client |
Permanently delete a client — requires confirm=true |
get_client_config |
Get the client's WireGuard .conf file |
get_client_qrcode |
Get the client configuration as a QR code (SVG) |
generate_one_time_link |
Generate a one-time config download link (requires one-time links to be enabled in wg-easy) |
get_server_info |
Release/update status, general settings and interface configuration |
Safety
delete_clientrefuses to run without an explicitconfirm=trueparameter and reports the client name, so an MCP client can ask the user for confirmation first.- Tools carry MCP annotations (
readOnlyHint,destructiveHint,idempotentHint) so hosts can apply appropriate permission policies. - Keep in mind that
get_client_configandget_client_qrcodereturn the client's private key — treat tool output as sensitive.
Development
npm install
npm run build # compile TypeScript to dist/
npm test # run the vitest test suite
npm run lint # eslint + prettier check
License
Installing Wg Easy
This server has no published package — it is built from source. Open the repository and follow its README.
▸ github.com/ni-c/wg-easy-mcpFAQ
Is Wg Easy MCP free?
Yes, Wg Easy MCP is free — one-click install via Unyly at no cost.
Does Wg Easy need an API key?
No, Wg Easy runs without API keys or environment variables.
Is Wg Easy hosted or self-hosted?
A hosted option is available: Unyly runs the server in the cloud, no local setup required.
How do I install Wg Easy in Claude Desktop, Claude Code or Cursor?
Open Wg Easy on unyly.org, pick your client tab (Claude Desktop, Claude Code, Cursor) and press Install — the config is generated automatically, no JSON editing.
Related MCPs
GitHub
PRs, issues, code search, CI status
by GitHubFilesystem
Secure file operations with configurable access controls.
Memory
Knowledge graph-based persistent memory system.
Template MCP Server
A CLI tool to create a new Model Context Protocol server project with TypeScript support, dual transport options, and an extensible structure
by mcpdotdirectCompare Wg Easy with
Not sure what to pick?
Find your stack in 60 seconds
Author?
Embed badge for your README
Browse similar
All development MCPs
