Major Update: Dedicated IP Complete Guide — WireGuard Direct & One-Click VM Binding
"In-depth guide to the newly released Dedicated IP feature: native WireGuard client support for direct connection, and seamless one-click binding to NAT VPS instances."
To provide users with more flexible, resilient, and cost-effective networking solutions, the Narwhal Cloud Console has officially launched the Dedicated IP (WireGuard Direct) feature!
Whether you need a clean public IP bound to your NAT VPS to host public-facing services or want to establish a direct tunnel on local devices using native WireGuard protocols, Dedicated IP is built to suit your needs.
1. What is Dedicated IP?
In traditional VPS hosting, dedicated IPv4 addresses are permanently tied to a specific virtual machine and cannot be easily migrated. In standard NAT VPS setups, multiple machines share a single public IP.
Dedicated IP bridges the best of both worlds:
- Independent Public Outbound/Inbound: Each rented Dedicated IP comes with a clean, exclusive public IPv4 address.
- Native WireGuard Tunneling: The system automatically generates a WireGuard configuration file (including private/public keys, endpoint, and assigned IP). You can import and use it directly on WireGuard clients across mobile, desktop, or router devices.
- One-Click VM Binding: Route the Dedicated IP dynamically to any NAT VPS instance under your account with a single click in the dashboard. Unbinding restores it back to standalone WireGuard mode anytime.
2. Key Features
- Seamless Dual-Mode Switching
- Standalone Direct Mode: Use standard WireGuard config files to establish secure tunnels on personal devices (macOS, Windows, iOS, Android, Linux).
- VM Binding Mode: Route inbound and outbound traffic of the Dedicated IP directly to a target virtual machine (VM), upgrading a NAT VPS into a “Dedicated IP VPS” instantly.
- Safety Checks & Auto-Synchronization
- Active Session Conflict Protection: If the Dedicated IP is actively connected on an external WireGuard client, the platform automatically blocks VM binding attempts to prevent packet collisions and ghost tunnels.
- One-Click Key Reset: Generate new WireGuard keypairs at any time. If the IP is bound to a VM, the platform will automatically synchronize new keys to host gateways without requiring machine reboots.
- Transparent & Flexible Management
- Monthly subscription model with toggleable auto-renewal.
- Convenient online viewing, one-click copying, and
.conffile downloads. - Custom remarks/labels for effective multi-resource management.
3. Quick Start Guide
Step 1: Renting a Dedicated IP
- Log into the Narwhal Cloud Console and click “Dedicated IP” in the sidebar navigation.
- Switch to the “IP Pools” tab.
- Select your desired region/node and pool, review the monthly fee, and click “Rent Dedicated IP”.
Step 2: Using Standalone Direct Mode
After renting, go to the “My Dedicated IPs” list:
- Click “Download/View WireGuard Config” on the target IP row.
- In the modal, click “Copy Config Text” or “Download .conf File”.
- Import the file into your WireGuard client app and turn on the connection.
Step 3: Binding to a Virtual Machine (VM)
To assign a dedicated public IP to one of your NAT VPS instances:
- Find your IP resource under “My Dedicated IPs”, then click “Actions” -> “Bind to VM”.
- Select an active running virtual machine from the dropdown.
- Confirm the action. The system will issue routing rules down to the physical host agent. In moments, the binding takes effect!
Tip: To remove the binding later, simply click “Unbind VM”. Traffic forwarding will stop immediately, reverting the IP back to standalone WireGuard mode.
4. FAQ & Troubleshooting
Q1: Why do I get an error saying “WireGuard config is actively in use” during VM binding?
Answer: To protect routing security, if your phone or PC currently has an active WireGuard connection using that IP, the platform will block binding attempts. Disconnect the WireGuard tunnel on your client device first, then retry binding in the console.
Q2: What happens after I reset my keypair?
Answer: Resetting keys will immediately invalidate old configuration files. If you are using the IP in direct mode, download the updated .conf file and import it. If the IP is bound to a VM, the backend will automatically sync new keys to the gateway—no manual changes needed inside the VM.
Q3: Why is an IP Pool marked as “Gateway Offline”?
Answer: If the gateway server for a specific node goes offline for maintenance, new purchases for that pool are temporarily suspended to protect users. Existing active bindings will auto-reconnect once the gateway is restored.
The Dedicated IP feature is now available to all Narwhal Cloud users. Head over to the console to try it out! Feel free to submit a support ticket if you have any questions.