PrivateKeyFile=/var/lib/systemd/wireguard/private.key
<% end -%>
ListenPort=51820
-<% node[:networking][:wireguard][:peers].each do |peer| -%>
+<% node[:networking][:wireguard][:peers].sort_by { |p| p[:public_key] }.each do |peer| -%>
[WireGuardPeer]
PublicKey=<%= peer[:public_key] %>
[Route]
Destination=fd43:e709:ea6d:1::/64
-<% node[:networking][:wireguard][:peers].each do |peer| -%>
+<% node[:networking][:wireguard][:peers].sort_by { |p| p[:public_key] }.each do |peer| -%>
<% Array(peer[:allowed_ips]).sort.each do |ip| -%>
<% unless ip =~ /^fd43:e709:ea6d:1::/ -%>