Fortigate Ruckus Hotel Network Setup
Budget: $750 – $1,500 USD
I am rolling out the full network for a small boutique hotel and need a seasoned engineer to take me from bare-metal to production. Hardware on hand is a Fortigate 120G firewall plus four Ruckus PoE switches; nothing is cabled or programmed yet.
Scope
• Build the network topology in line with hotel operations: separate guest Wi-Fi, secure internal staff LAN, and an isolated VLAN for IP cameras.
• Configure the Fortigate 120G with advanced security: site-to-site and remote-access VPN, IDS/IPS profiles, application control, and clean guest isolation.
• Program the Ruckus switches, tag VLANs, enable PoE budgets, and prepare for future Ruckus APs.
• Set up captive portal or equivalent guest-Wi-Fi onboarding, with bandwidth shaping and simple voucher/self-service options.
• Deliver sanitized config backups, a brief hand-over document, and a quick walk-through so I can maintain day-to-day tweaks.
Acceptance
I’ll consider the job complete once:
1. All three networks (guest, staff, cameras) pass connectivity and isolation tests.
2. VPN tunnels and user profiles authenticate and route correctly.
3. Fortigate security logs show active IDS/IPS signatures without false positives over a 24-hour run.
4. I have the final configs and can restore them without errors.
Remote work is fine; I can provide console or out-of-band access and will be on site for cable moves or power cycles. If you are fluent with FortiOS CLI, Ruckus SmartZone, and hospitality Wi-Fi best practices, let’s get started.
Scope
• Build the network topology in line with hotel operations: separate guest Wi-Fi, secure internal staff LAN, and an isolated VLAN for IP cameras.
• Configure the Fortigate 120G with advanced security: site-to-site and remote-access VPN, IDS/IPS profiles, application control, and clean guest isolation.
• Program the Ruckus switches, tag VLANs, enable PoE budgets, and prepare for future Ruckus APs.
• Set up captive portal or equivalent guest-Wi-Fi onboarding, with bandwidth shaping and simple voucher/self-service options.
• Deliver sanitized config backups, a brief hand-over document, and a quick walk-through so I can maintain day-to-day tweaks.
Acceptance
I’ll consider the job complete once:
1. All three networks (guest, staff, cameras) pass connectivity and isolation tests.
2. VPN tunnels and user profiles authenticate and route correctly.
3. Fortigate security logs show active IDS/IPS signatures without false positives over a 24-hour run.
4. I have the final configs and can restore them without errors.
Remote work is fine; I can provide console or out-of-band access and will be on site for cable moves or power cycles. If you are fluent with FortiOS CLI, Ruckus SmartZone, and hospitality Wi-Fi best practices, let’s get started.
Related categories:
System Admin
Network Administration
Documentation
Network Security
Network Engineering
VPN