> ## Content Index
> Fetch the complete content index at: https://www.blackvoid.club/llms.txt
> Use this file to discover other available public pages before exploring further.

# Wireguard SPK for your Synology NAS
- URL: https://www.blackvoid.club/wireguard-spk-for-your-synology-nas/
- Published: 2022-07-22T22:46:42.000Z
- Updated: 2026-07-25T12:57:49.000Z
- Author: Luka Manestar
- Tags: vpn, docker, wireguard, nas, dsm71

💡

This article is the ****first** out of the ****two** Wireguard ones. This article is about building your SPK package for your Synology NAS using Docker in order to enable Wireguard support! For information on how to run your Wireguard server on your NAS use the second article, [****Wireguard VPN for your Synology NAS**](https://www.blackvoid.club/wireguard-vpn-for-your-synology-nas/).

## Download sections

: [DSM 6.2 SPKs](#62)  
: [DSM 7.1 SPKs](#71)  
: [DSM 7.2 SPKs](#72)  
: [DSM 7.3 SPKs](#73)  
: [DSM 7.4 SPKs](#74)

## Building your own Docker image

: [Wireguard SPK Docker images](#build)

## Install and run the package

: [Install and start the Wireguard SPK](#install)

🔈

****INFO**: 15/07/2026 - ****A new 7.4 section** has been added with already built SPKs for the current DSM.

💡

****UPDATE**: 16/06/2026 - The new DSM 7.4 toolchains for all the NAS models (apart from the PAS lineup) are still not available. ****Still, the DSM 7.3 packages work fine with the new DSM 7.4**

💡

****INFO: 27/05/2026** \- All docker images have been updated with the correction in the `build.sh` file to accommodate the `netfilter.org/pub/libmnl/` URL path change

🔈

****INFO**: 10/02/2026 - ****New 7.3 section** has been added with already built SPKs for the current DSM

🔈

****INFO**: 03/12/2025 - SPKs under the 7.2 section ****work with the new DSM 7.3.2-86009** that has been released.

🔈

****INFO**: 09/10/2025 - SPKs under the 7.2 section ****work with the new DSM 7.3-81180** that has been released.

🔈

****INFO**: 07/07/2025 - New DS 7.2 ****X25 SPKs have been added** for DS225+, DS425+, DS725+, DS925+, DS1525+, DS1825+, and RS2825RP+

🔈

****INFO**: 26/08/2024 - SPKs under the 7.2 section ****work with the new DSM 7.2.2-72803** that has been released today.

![](https://www.blackvoid.club/content/images/2024/08/Screenshot-2024-08-26-at-20.08.08.png)

WG SPK running under DSM 7.2.2

🔈

****INFO**: 15/11/2023 - SPKs under the 7.2 section ****work with the new DSM 7.2.1-69057** that has been released today including UP1-UP5.

📢

****INFO**: 24/08/2023 - Added (finally) the ****DSM 7.2 Braswell** and ****RTD1619B** ****SPK** to the list! Many ****thanks to Orphee** for the help on this build!

---

## 
  
  
## SPKs for DSM 6.2

**Denverton models**:  
DVA3221, RS820+/RS820RP+, DS2419+II, DS2419+, DS1819+, DVA3219, RS2818RP+, RS2418+/RS2418RP+, DS1618+

[WireGuard-denverton-1.0.20220627DSM 6.2 denventron WG supportWireGuard-denverton-1.0.20220627.spk1 MBdownload-circle](https://www.blackvoid.club/content/files/2024/10/WireGuard-denverton-1.0.20220627.spk "Download")

---

## 
  
  
## SPKs for DSM 7.1

💡

In case you are getting into the ****error 93 problems described below**, or you ****do not want to build your own SPKs**, here are the ones that I have already compiled for the CPU architectures that were requested.

Use [**this page**](https://kb.synology.com/en-global/DSM/tutorial/What%5Fkind%5Fof%5FCPU%5Fdoes%5Fmy%5FNAS%5Fhave?ref=blackvoid.club) to identify your Synology CPU architecture.

**Apollolake models**:  
DS620slim, DS1019+, DS918+, DS718+, DS418play\*, DS218+

[WireGuard apollolake 1020220627DSM 7.1 appollolake WG supportWireGuard-apollolake-1.0.20220627.spk2 MBdownload-circle](https://www.blackvoid.club/content/files/2022/08/WireGuard-apollolake-1.0.20220627.spk "Download")

**Avoton models:**  
RS1219+, RS818+/RS818RP+, DS1817+, DS1517+, RS2416+/RS2416RP+, RS815+/RS815RP+, DS2415+, DS1815+, DS1515+, DS415+

[WireGuard avoton 1020220627DSM 7.1 avoton WG supportWireGuard-avoton-1.0.20220627.spk2 MBdownload-circle](https://www.blackvoid.club/content/files/2022/11/WireGuard-avoton-1.0.20220627.spk "Download")

**Braswell models**:  
DS916+, DS716+II, DS716+, DS416play, DS216+II, DS216+

[WireGuard braswell 1020220627DSM 7.1 braswell WG supportWireGuard-braswell-1.0.20220627.spk2 MBdownload-circle](https://www.blackvoid.club/content/files/2022/08/WireGuard-braswell-1.0.20220627.spk "Download")

**Broadwellnk models**:  
FS3600, FS1018, SA3600, SA3400, DS3622xs+, RS4021xs+, RS3621xs+, RS3621RPxs, DS1621xs+, RS1619xs+, DS3018xs

[WireGuard broadwellnk 1020220627DSM 7.1 broadwellnk WG supportWireGuard-broadwellnk-1.0.20220627.spk2 MBdownload-circle](https://www.blackvoid.club/content/files/2022/08/WireGuard-broadwellnk-1.0.20220627.spk "Download")

**Cedarview models:**  
DS713+, DS1513+, DS1813+ DS2413+, RS814+, RS2414+,

[WireGuard-cedarview-1.0.20220627DSM 7.1 cedar view WG supportWireGuard-cedarview-1.0.20220627.spk2 MBdownload-circle](https://www.blackvoid.club/content/files/2023/10/WireGuard-cedarview-1.0.20220627.spk "Download")

**Denverton models**:  
DVA3221, RS820+/RS820RP+, DS2419+II, DS2419+, DS1819+, DVA3219, RS2818RP+, RS2418+/RS2418RP+, DS1618+

[WireGuard denverton 1020220627DSM 7.1 denverton WG supportWireGuard-denverton-1.0.20220627.spk2 MBdownload-circle](https://www.blackvoid.club/content/files/2022/08/WireGuard-denverton-1.0.20220627.spk "Download")

**Geminilake models**:  
DVA1622, DS1520+, DS920+, DS720+, DS420+, DS220+, DS423+, DS224+

[WireGuard geminilake 1020220627DSM 7.1 geminilake WG supportWireGuard-geminilake-1.0.20220627.spk2 MBdownload-circle](https://www.blackvoid.club/content/files/2022/08/WireGuard-geminilake-1.0.20220627.spk "Download")

**R1000 models**:  
RS422+, DS1522+, DS923+, DS723+

[WireGuard r1000 1020220627DSM 7.1 r1000 WG supportWireGuard-r1000-1.0.20220627.spk2 MBdownload-circle](https://www.blackvoid.club/content/files/2022/11/WireGuard-r1000-1.0.20220627.spk "Download")

**v1000 models**:  
FS2500, RS822+/RS822RP+, DS2422+, RS2821RP+, RS2423+/RS2423RP+, RS2421+/RS2421RP+, RS1221+/RS1221RP+, DS1821+, DS1621+

[WireGuard v1000 1020220627DSM 7.1 v1000 WG supportWireGuard-v1000-1.0.20220627.spk2 MBdownload-circle](https://www.blackvoid.club/content/files/2022/08/WireGuard-v1000-1.0.20220627.spk "Download")

**vDSM**:

[WireGuard kvmx64 1020220627DSM 7.1 Virtual DSM WG supportWireGuard-kvmx64-1.0.20220627.spk2 MBdownload-circle](https://www.blackvoid.club/content/files/2022/08/WireGuard-kvmx64-1.0.20220627.spk "Download")

---

## 
  
  
## SPKs for DSM 7.2

⚠️

****NOTE**: After installing the package (following the steps below), ****be sure to reboot the NAS**, and then ****log in via SSH as root** to run the startup script! Also, if you are already running WG under DSM 7.1, be sure to uninstall it and reinstall it after you install DSM 7.2 if there is "****invalid file format**" error!

**Apollolake models**:  
DS620slim, DS1019+, DS918+, DS718+, DS418play\*, DS218+

[WireGuard apollolake 1020220627DSM 7.2 appololake WG supportWireGuard-apollolake-1.0.20220627.spk1 MBdownload-circle](https://www.blackvoid.club/content/files/2023/03/WireGuard-apollolake-1.0.20220627.spk "Download")

**Avoton models:**  
RS1219+, RS818+/RS818RP+, DS1817+, DS1517+, RS2416+/RS2416RP+, RS815+/RS815RP+, DS2415+, DS1815+, DS1515+, DS415+

[WireGuard-avoton-1.0.20220627DSM 7.2 avoton WG supportWireGuard-avoton-1.0.20220627.spk1 MBdownload-circle](https://www.blackvoid.club/content/files/2024/05/WireGuard-avoton-1.0.20220627.spk "Download")

**Armada37xx models:**  
DS119j, DS120j

[WireGuard-armada37xx-1.0.20220627DSM 7.2 armada37xx WG supportWireGuard-armada37xx-1.0.20220627.spk1 MBdownload-circle](https://www.blackvoid.club/content/files/2023/12/WireGuard-armada37xx-1.0.20220627.spk "Download")

**Armada38x models:**  
DS419slim, DS218j, RS217, RS816, DS416j, DS416slim, DS216, DS216j, DS116

[WireGuard-armada38x-1.0.20220627DSM 7.2 armada38x WG supportWireGuard-armada38x-1.0.20220627.spk1 MBdownload-circle](https://www.blackvoid.club/content/files/2023/11/WireGuard-armada38x-1.0.20220627.spk "Download")

**Braswell models**:  
DS916+, DS716+II, DS716+, DS416play, DS216+II, DS216+

[WireGuard braswell 1020220627DSM 7.2 braswell WG supportWireGuard-braswell-1.0.20220627.spk1 MBdownload-circle](https://www.blackvoid.club/content/files/2023/08/WireGuard-braswell-1.0.20220627.spk "Download")

**Broadwell models**:  
FS3400, FS2017, RS3618xs, RS18017xs+, RS4017xs+, RS3617xs+, RS3617RPxs, DS3617xsII, DS3617xs

[WireGuard broadwell 1020220627DSM 7.2 broadwell WG supportWireGuard-broadwell-1.0.20220627.spk1 MBdownload-circle](https://www.blackvoid.club/content/files/2023/06/WireGuard-broadwell-1.0.20220627.spk "Download")

**Broadwellnk models**:  
FS3600, FS1018, SA3600, SA3400, DS3622xs+, RS4021xs+, RS3621xs+, RS3621RPxs, DS1621xs+, RS1619xs+, DS3018xs

[WireGuard broadwellnk 1020220627DSM 7.2 broadwellnk WG supportWireGuard-broadwellnk-1.0.20220627.spk1 MBdownload-circle](https://www.blackvoid.club/content/files/2023/04/WireGuard-broadwellnk-1.0.20220627.spk "Download")

**Denverton models**:  
DVA3221, RS820+/RS820RP+, DS2419+II, DS2419+, DS1819+, DVA3219, RS2818RP+, RS2418+/RS2418RP+, DS1618+

[WireGuard denverton 1020220627DSM 7.2 denverton WG supportWireGuard-denverton-1.0.20220627.spk1 MBdownload-circle](https://www.blackvoid.club/content/files/2023/04/WireGuard-denverton-1.0.20220627.spk "Download")

**Epyc 7002 models**:  
SA6400

[WireGuard epyc7002 1020220627DSM 7.2 epyc7002 WG supportWireGuard-epyc7002-1.0.20220627.spk1 MBdownload-circle](https://www.blackvoid.club/content/files/2023/08/WireGuard-epyc7002-1.0.20220627.spk "Download")

**Geminilake models**:  
DVA1622, DS1520+, DS920+, DS720+, DS420+, DS220+, DS423+, DS224+

[WireGuard geminilake 1020220627DSM 7.2 geminilake WG supportWireGuard-geminilake-1.0.20220627.spk1 MBdownload-circle](https://www.blackvoid.club/content/files/2023/03/WireGuard-geminilake-1.0.20220627.spk "Download")

**Geminilakenk models**:  
DS225+, DS425+

[WireGuard-geminilakenk-1.0.20220627DSM 7.2 geminilakenk WG supportWireGuard-geminilakenk-1.0.20220627.spk1 MBdownload-circle](https://www.blackvoid.club/content/files/2025/07/WireGuard-geminilakenk-1.0.20220627.spk "Download")

**R1000 models**:  
RS422+, DS1522+, DS923+, DS723+

[WireGuard r1000 1020220627DSM 7.2 r1000 WG supportWireGuard-r1000-1.0.20220627.spk1 MBdownload-circle](https://www.blackvoid.club/content/files/2023/03/WireGuard-r1000-1.0.20220627.spk "Download")

**R1000nk models**:  
DS725+

[WireGuard-r1000nk-1.0.20220627DSM 7.2 r1000nk WG supportWireGuard-r1000nk-1.0.20220627.spk1 MBdownload-circle](https://www.blackvoid.club/content/files/2025/07/WireGuard-r1000nk-1.0.20220627.spk "Download")

**RTD1296 models**:  
DS420j, DS220j, RS819, DS418, DS418j, DS218, DS218play, DS118

[WireGuard-rtd1296-1.0.20220627DSM 7.2 RTD1296 WG supportWireGuard-rtd1296-1.0.20220627.spk1 MBdownload-circle](https://www.blackvoid.club/content/files/2023/09/WireGuard-rtd1296-1.0.20220627.spk "Download")

**RTD1619B models**:  
DS124, DS423, DS223j, DS223

[WireGuard rtd1619b 1020220627DSM 7.2 RTD1619b WG supportWireGuard-rtd1619b-1.0.20220627.spk1 MBdownload-circle](https://www.blackvoid.club/content/files/2023/08/WireGuard-rtd1619b-1.0.20220627.spk "Download")

**v1000 models**:  
FS2500, RS822+/RS822RP+, DS2422+, RS2821RP+, RS2423+/RS2423RP+, RS2421+/RS2421RP+, RS1221+/RS1221RP+, DS1821+, DS1621+

[WireGuard v1000 1020220627DSM 7.2 v1000 WG supportWireGuard-v1000-1.0.20220627.spk1 MBdownload-circle](https://www.blackvoid.club/content/files/2023/03/WireGuard-v1000-1.0.20220627.spk "Download")

**v1000nk models**:  
DS925+, DS1525+, DS1825+, RS2825RP+

[WireGuard-v1000nk-1.0.20220627DSM 7.2 v1000nk WG supportWireGuard-v1000nk-1.0.20220627.spk1 MBdownload-circle](https://www.blackvoid.club/content/files/2025/07/WireGuard-v1000nk-1.0.20220627.spk "Download")

**vDSM**:

[WireGuard kvmx64 1020220627DSM 7.2 Virtual DSM WG supportWireGuard-kvmx64-1.0.20220627.spk1 MBdownload-circle](https://www.blackvoid.club/content/files/2023/03/WireGuard-kvmx64-1.0.20220627.spk "Download")

---

## 
  
  
## SPKs for DSM 7.3

⚠️

****NOTE**: After installing the package (following the steps below), ****be sure to reboot the NAS**, and then ****log in via SSH as root** to run the startup script! Also, if you are already running WG under DSM 7.1/7.2, be sure to uninstall it and reinstall it after you install DSM 7.3 if there is an "****invalid file format**" error!

💡

****NOTE**: All ****installation steps described below still apply**. Be sure to **reboot the NAS after the Package Center installation**, before you ****run the startup script via SSH** (as `root`)

**Apollolake models**:  
DS620slim, DS1019+, DS918+, DS718+, DS418play\*, DS218+

[WireGuard-apollolake-73-1.0.20220627DSM 7.3 ApolloLake WG supportWireGuard-apollolake-73-1.0.20220627.spk1 MBdownload-circle](https://www.blackvoid.club/content/files/2026/02/WireGuard-apollolake-73-1.0.20220627.spk "Download")

**Broadwellnk models**:  
FS3600, FS1018, SA3600, SA3400, DS3622xs+, RS4021xs+, RS3621xs+, RS3621RPxs, DS1621xs+, RS1619xs+, DS3018xs

[WireGuard-broadwellnk-1.0.20220627.spkDSM 7.3 BroadwellNK WG supportWireGuard-broadwellnk-1.0.20220627.spk.zip1 MBdownload-circle](https://www.blackvoid.club/content/files/2026/07/WireGuard-broadwellnk-1.0.20220627.spk.zip "Download")

**Denverton models**:  
DVA3221, RS820+/RS820RP+, DS2419+II, DS2419+, DS1819+, DVA3219, RS2818RP+, RS2418+/RS2418RP+, DS1618+

[WireGuard-denverton-73-1.0.20220627DSM 7.3 Denverton WG supportWireGuard-denverton-73-1.0.20220627.spk1 MBdownload-circle](https://www.blackvoid.club/content/files/2026/02/WireGuard-denverton-73-1.0.20220627.spk "Download")

**Geminilake models**:  
DVA1622, DS1520+, DS920+, DS720+, DS420+, DS220+, DS423+, DS224+

[WireGuard-geminilake-73-1.0.20220627DSM 7.3 GeminiLake WG supportWireGuard-geminilake-73-1.0.20220627.spk1 MBdownload-circle](https://www.blackvoid.club/content/files/2026/02/WireGuard-geminilake-73-1.0.20220627.spk "Download")

**Geminilakenk models**:  
DS225+, DS425+

[WireGuard-geminilakenk-73-1.0.20220627DSM 7.3 GeminiLakeNK WG supportWireGuard-geminilakenk-73-1.0.20220627.spk1 MBdownload-circle](https://www.blackvoid.club/content/files/2026/02/WireGuard-geminilakenk-73-1.0.20220627.spk "Download")

**R1000 models**:  
RS422+, DS1522+, DS923+, DS723+

[WireGuard-r1000-73-1.0.20220627DSM 7.3 R1000 WG supportWireGuard-r1000-73-1.0.20220627.spk1 MBdownload-circle](https://www.blackvoid.club/content/files/2026/02/WireGuard-r1000-73-1.0.20220627.spk "Download")

**R1000nk models**:  
DS725+

[WireGuard-r1000nk-73-1.0.20220627DSM 7.3 R1000NK WG supportWireGuard-r1000nk-73-1.0.20220627.spk1 MBdownload-circle](https://www.blackvoid.club/content/files/2026/02/WireGuard-r1000nk-73-1.0.20220627.spk "Download")

**RTD1619B models**:  
DS124, DS423, DS223j, DS223

[WireGuard-rtd1619b-73-1.0.20220627DSM 7.3 RTD1619B WG supportWireGuard-rtd1619b-73-1.0.20220627.spk1 MBdownload-circle](https://www.blackvoid.club/content/files/2026/02/WireGuard-rtd1619b-73-1.0.20220627.spk "Download")

**v1000 models**:  
FS2500, RS822+/RS822RP+, DS2422+, RS2821RP+, RS2423+/RS2423RP+, RS2421+/RS2421RP+, RS1221+/RS1221RP+, DS1821+, DS1621+

[WireGuard-v1000-73-1.0.20220627DSM 7.3 V1000 WG supportWireGuard-v1000-73-1.0.20220627.spk1 MBdownload-circle](https://www.blackvoid.club/content/files/2026/02/WireGuard-v1000-73-1.0.20220627.spk "Download")

**v1000nk models**:  
DS925+, DS1525+, DS1825+, RS2825RP+

[WireGuard-v1000nk-73-1.0.20220627DSM 7.3 V100NK WG supportWireGuard-v1000nk-73-1.0.20220627.spk1 MBdownload-circle](https://www.blackvoid.club/content/files/2026/02/WireGuard-v1000nk-73-1.0.20220627.spk "Download")

**vDSM**:

[WireGuard-kvmx64-73-1.0.20220627DSM 7.3 Virtual DSM WG supportWireGuard-kvmx64-73-1.0.20220627.spk1 MBdownload-circle](https://www.blackvoid.club/content/files/2026/02/WireGuard-kvmx64-73-1.0.20220627.spk "Download")

---

## 
  
  
## SPKs for DSM 7.4

⚠️

****NOTE**: Be sure to ****unzip the file** to get the needed SPK inside it. After installing the package (following the steps below), ****be sure to reboot the NAS**, and then ****log in via SSH as root** to run the startup script! Also, if you are already running WG under DSM 7.1/7.2/7.3, be sure to uninstall it and reinstall it after you install DSM 7.4 if there is an "****invalid file format**" error!

💡

****NOTE**: All ****installation steps described below still apply**. Be sure to **reboot the NAS after the Package Center installation**, before you ****run the startup script via SSH** (as `root`)

**Apollolake models**:  
DS620slim, DS1019+, DS918+, DS718+, DS418play\*, DS218+

[WireGuard-apollolake-1.0.20220627DSM 7.4 Apollolake WG supportWireGuard-apollolake-1.0.20220627.zip1 MBdownload-circle](https://www.blackvoid.club/content/files/2026/07/WireGuard-apollolake-1.0.20220627.zip "Download")

**Broadwellnk models**:  
FS3600, FS1018, SA3600, SA3400, DS3622xs+, RS4021xs+, RS3621xs+, RS3621RPxs, DS1621xs+, RS1619xs+, DS3018xs

[WireGuard-broadwellnk-1.0.20220627.spkDSM 7.4 BroadwellNK WG supportWireGuard-broadwellnk-1.0.20220627.spk.zip1 MBdownload-circle](https://www.blackvoid.club/content/files/2026/07/WireGuard-broadwellnk-1.0.20220627.spk-1.zip "Download")

**Geminilake models**:  
DVA1622, DS1520+, DS920+, DS720+, DS420+, DS220+, DS423+, DS224+

[WireGuard-geminilake-1.0.20220627DSM 7.4 Geminilake WG supportWireGuard-geminilake-1.0.20220627.zip1 MBdownload-circle](https://www.blackvoid.club/content/files/2026/07/WireGuard-geminilake-1.0.20220627.zip "Download")

**Geminilakenk models**:  
DS225+, DS425+

[WireGuard-geminilakenk-1.0.20220627DSM 7.4 GeminilakeNK WG supportWireGuard-geminilakenk-1.0.20220627.zip1 MBdownload-circle](https://www.blackvoid.club/content/files/2026/07/WireGuard-geminilakenk-1.0.20220627.zip "Download")

**R1000 models**:  
RS422+, DS1522+, DS923+, DS723+

[WireGuard-r1000-1.0.20220627.spkDSM 7.4 R1000 WG supportWireGuard-r1000-1.0.20220627.spk.zip1 MBdownload-circle](https://www.blackvoid.club/content/files/2026/07/WireGuard-r1000-1.0.20220627.spk.zip "Download")

**R1000nk models**:  
DS725+

[WireGuard-r1000nk-1.0.20220627.spkDSM 7.4 R1000NK WG supportWireGuard-r1000nk-1.0.20220627.spk.zip1 MBdownload-circle](https://www.blackvoid.club/content/files/2026/07/WireGuard-r1000nk-1.0.20220627.spk.zip "Download")

**v1000 models**:  
FS2500, RS822+/RS822RP+, DS2422+, RS2821RP+, RS2423+/RS2423RP+, RS2421+/RS2421RP+, RS1221+/RS1221RP+, DS1821+, DS1621+

[WireGuard-v1000-1.0.20220627.spkDSM 7.4 V1000 WG supportWireGuard-v1000-1.0.20220627.spk.zip1 MBdownload-circle](https://www.blackvoid.club/content/files/2026/07/WireGuard-v1000-1.0.20220627.spk.zip "Download")

**v1000nk models**:  
DS925+, DS1525+, DS1825+, RS2825RP+

[WireGuard-v1000nk-1.0.20220627DSM 7.4 V1000NK WG supportWireGuard-v1000nk-1.0.20220627.zip1 MBdownload-circle](https://www.blackvoid.club/content/files/2026/07/WireGuard-v1000nk-1.0.20220627.zip "Download")

---

If you have ever tried to connect outside your LAN back into it in order to get to certain content or devices, you were probably quickly suggested to make a [**VPN connection**](https://www.blackvoid.club/vpn-or-how-to-access-your-data-securely-the-right-way/) as a prerequisite.

While VPN is still the most secure way to do it, there are various methods, protocols, and solutions to do it. In the linked article above, you can find what methods Synology uses in its VPN package, but they have yet to support a new player in this field, **Wireguard**.

In short, Wireguard is a new standard and protocol that has made huge leaps in performance over the very popular OpenVPN or IPSec. While still not implemented out of the box like other protocols, it will be soon enough.

So what is this all about then? Well, if you want to use your NAS as a Wireguard **server** or **client,** you will need to have certain modules in place in order to be able to use it. As it was said, Synology still doesn't officially support it, but you can install 3rd party packages that will solve this problem.

⚠️

****WARNING**: This article contains steps that will require you to have root access to your NAS, knowledge of Docker, and ultimately install 3rd party package to your NAS. If you are not comfortable with this, best not get into it. Also, the ****author of this article takes zero responsibility** if any step will cause any problems with your NAS setup. ****You have been warned**!

This article will help you describe what you need to do (and how to do it) in order to get a valid Wireguard SPK (DSM Package Centar compatible installer) for your NAS CPU architecture, and if all else fails, build your own with Docker.

🗒️

****NOTE**: Even though Docker is used in this article, this does not mean that you will have to have a Docker-capable NAS in order to be able to install the SPK. Still saying this, both server and client Wireguard deployments out there are mostly in a container (Docker) form, but you can install them on your NAS in bare metal form as well, hence why you do not need Docker as mandatory.

First off, the credits go to **Andreas Runfalk** for making the effort to make this happen. His [**Github repository**](https://github.com/runfalk/synology-wireguard?ref=blackvoid.club) has all the info that I will cover in this article, but I will show the execution of it as well on a real-world device.

The already precompiled list of Wireguard SPK packages (for DSM 6.2) can be found [here](https://github.com/runfalk/synology-wireguard/releases?ref=blackvoid.club). If your device is not on the list, or you are looking for how to make this happen for DSM 7.1, keep reading.

Using the process described on the Github repository, you can make your own Docker images, and of course containers, that will be used to build the valid SPKs that you need.

I have already done that for both DSM 6.2 and 7.1\. So if you want to get into the action, just use them by following the process below.

## 
  
  
## Wireguard SPK Docker images (6.2, 7.1, 7.2, 7.3 & 7.4)

All images are uploaded to [**hub.docker.com**](https://hub.docker.com/u/blackvoidclub?ref=blackvoid.club), so you are welcome to pull them and build your own SPK.

Each image is used identically, depending on the DSM in question, so make sure that you are using the correct one.

[blackvoidclub/synowgbuild](https://hub.docker.com/r/blackvoidclub/synowgbuild?ref=blackvoid.club) \- Wireguard SPK builder for DSM 6.2

[blackvoidclub/synobuild71](https://hub.docker.com/r/blackvoidclub/synobuild71?ref=blackvoid.club) \- Wireguard SPK builder for DSM 7.1

[blackvoidclub/synobuild72](https://hub.docker.com/r/blackvoidclub/synobuild72?ref=blackvoid.club) \- Wireguard SPK builder for DSM 7.2

[blackvoidclub/synobuild73](https://hub.docker.com/r/blackvoidclub/synobuild73?ref=blackvoid.club) \- Wireguard SPK builder for DSM 7.3

[blackvoidclub/synobuild74](https://hub.docker.com/r/blackvoidclub/synobuild74?ref=blackvoid.club) \- Wireguard SPK builder for DSM 7.4

### How to build an SPK?

As with any Docker operation, you will need to use it with `root` account on your NAS via `SSH`.

Make sure that you have access to your NAS via SSH by enabling it via **Control Panel > Terminal and SNMP**, and **activating the SSH checkbox**.

Next, use any SSH-compatible application (like Terminal on macOS, or Putty on Windows), and log in with your default DSM user.

Once that is done, elevate to `root` by entering `sudo -i` command and repeat your default password. This will land you at the *root* command prompt, and you will be ready to move along.

Now that you have *root* access make sure to run the following command as a single line but before that change two (2) parameters needed.

```
sudo docker run --rm --privileged --env PACKAGE_ARCH=<yourNASarch> --env DSM_VER=7.1 -v /volume1/docker/synowirespk71:/result_spk blackvoidclub/synobuild71

```

The Docker run command takes `PACKAGE_ARCH` and `DSM_VER` parameters that you need to change depending on your NAS and its DSM version.

To get your NAS CPU architecture, consult the following [**Synology KB article.**](https://kb.synology.com/en-uk/DSM/tutorial/What%5Fkind%5Fof%5FCPU%5Fdoes%5Fmy%5FNAS%5Fhave?ref=blackvoid.club)

Examples of values that you can put in here are:

```
    apollolake
    armada38x
    avoton
    braswell
    broadwell
    broadwellnk
    bromolow
    cedarview
    denverton
    geminilake
    kvmx64
    monaco
    rtd1296
    x64

```

The `DSM_VER` parameter needs to be set to either to `6.2`, `7.1`, `7.2` or `7.3` depending on your need and, of course, what image you are using.

Finally, add the location that will be a volume bound to the container's `result_spk` folder by doing it like this:`/your_local_folder_path:/result_spk`.

Optionally, we can use this single-line command line that includes the local folder of the already downloaded toolkits, to improve the speed of the process:

```
docker run --rm --privileged --env PACKAGE_ARCH=<yourNASarch> --env DSM_VER=7.1 -v /volume1/docker/toolkit_tarballs:/toolkit_tarballs -v /volume1/docker/synowirespk71:/result_spk blackvoidclub/synobuild71

```

Again, make sure that the local toolkit location already exists at the mentioned location of your choice.

![](https://www.blackvoid.club/content/images/2022/07/Screenshot-2022-07-21-at-15.11.52.png)

Executing the 7.1 build for Apollolake NAS (DS718+/DS918+)

You will have to be patient with the progress, as it can take a long time (about 10 minutes or so) to pull the corresponding toolkit, so just let it do its thing.

```
Cloning into 'pkgscripts-ng'...
[2022-07-21 13:10:49,508] INFO: Download... https://dataupdate7.synology.com/toolchain/v1/get_download_list?identify=toolkit&version=7.1&platform=base
[2022-07-21 13:11:18,372] INFO: Download... https://dataupdate7.synology.com/toolchain/v1/get_download_list?identify=toolkit&version=7.1&platform=apollolake
[2022-07-21 13:15:09,513] INFO: tar -xhf /toolkit_tarballs/base_env-7.1.txz -C /build_env/ds.apollolake-7.1
[2022-07-21 13:18:23,801] INFO: tar -xhf /toolkit_tarballs/ds.apollolake-7.1.env.txz -C /build_env/ds.apollolake-7.1
[2022-07-21 13:19:36,459] INFO: tar -xhf /toolkit_tarballs/ds.apollolake-7.1.dev.txz -C /build_env/ds.apollolake-7.1
[2022-07-21 13:21:12,766] INFO: All task finished.
--2022-07-21 13:21:12--  https://crt.sh/?d=8395
Resolving crt.sh (crt.sh)... 91.199.212.73, 2a0e:ac00:c7:d449::5bc7:d449
Connecting to crt.sh (crt.sh)|91.199.212.73|:443... connected.
HTTP request sent, awaiting response... 200 OK
Length: 1200 (1.2K) [application/pkix-cert]
Saving to: 'DSTRootCAX3_Extended.crt'

     0K .                                                     100%  608M=0s

2022-07-21 13:21:13 (608 MB/s) - 'DSTRootCAX3_Extended.crt' saved [1200/1200]

```

Once that is all done, the rest will go really quickly, generating a long (and I do mean long) log. The task of creating the SPK will be another minute or so, and you are done!

```
----------------- Time cost statistics -----------------
Time cost: 00:01:11 [Build-->WireGuard]

1 projects, 0 failed, 0 blocked.

```

The final project will be an SPK file that will have a similar name, depending on your CPU architecture, `WireGuard-apollolake-1.0.20220627.spk`.

## 
  
  
### Install and start the Wireguard SPK

Now that you know how to build any SPK needed, it is time to install it and run it so that your NAS will be ready for future Wireguard operations.

Log in to your NAS, and open **Package Center**. Use the **Manual** install button and locate the SPK in order to upload and install it.

‼️

****NOTE**: Make sure to ****uncheck** the option to ****run the package after installation**. You will run the package via SSH after the installation is complete.

![](https://www.blackvoid.club/content/images/2022/07/Screenshot-2022-07-23-at-00.23.49.png)

Select the SPK for your NAS and move to the next step

![](https://www.blackvoid.club/content/images/2022/07/Screenshot-2022-07-23-at-00.24.56.png)

Click Yes to continue

![](https://www.blackvoid.club/content/images/2022/07/Screenshot-2022-07-23-at-00.26.23.png)

Uncheck the option ****Run after installation**, and apply

⚠️

****NOTE**: ****If you are on DSM 7.2 (or later), be sure to reboot the NAS before running the startup script!**

Next, jump back to the SSH prompt as `root` and run the following command to start the package: `/var/packages/WireGuard/scripts/start`.

![](https://www.blackvoid.club/content/images/2022/07/Screenshot-2022-07-21-at-22.13.06.png)

Once that is done, a quick check inside the Package Center will also confirm that Wireguard support is running.

![](https://www.blackvoid.club/content/images/2022/07/Screenshot-2022-07-21-at-22.13.50.png)

Wireguard support is ready!

That's it. Your NAS now has Wireguard support and is ready to be configured as a Wireguard server or client. 

🗒️

****NOTE**: the ****package will automatically start** after a NAS reboot for example following a DSM update

### ERROR: line 93: /dev/null: Permission denied

In case you have tried to follow this article and failed to run this on your own, one of the reasons might be the `line 93: /dev/null: Permission denied` error. There is an [**open ticket on GitHub**](https://github.com/runfalk/synology-wireguard/issues/162?ref=blackvoid.club) for this particular matter, so try to follow it in case there is development on that front.

Some users have found out that running this image on a different machine runs just fine, and in some other cases, it does not. At the moment, I have no idea why this is happening, as I am unable to reproduce the issue (on any of my 4 NAS boxes).

If you do get in a similar situation, let me know in the comment section below, or contact me over the support chat (upper right corner of the site, visible on desktop only), and I will gladly build you an SPK for your model.

---

In the [**follow-up article**](https://www.blackvoid.club/wireguard-vpn-for-your-synology-nas/), we will see how you can configure an incoming Wireguard VPN server that will serve as your "access point" from outside your network as an alternative to popular VPN methods linked at the start of this article.

Comment on the topic in the section below if you have any questions or suggestions on the matter.