StrongSwan IPsec VPN Setup
Budget: $30 – $50 USD
I need a straightforward, first-time site-to-site IPsec (IKEv2) tunnel built between an Ubuntu 22.04 box and an existing FortiGate gateway.
What I will hand over
• SSH access to the fresh Ubuntu 22.04 server
• Complete Phase 1 / Phase 2 details from the FortiGate (PSK, AES256-SHA1-DH14 proposals, local and remote subnets)
• A quick test script for ping validation
What I’m expecting from you
• Install strongSwan with apt and enable the service
• Craft /etc/ipsec.conf and /etc/ipsec.secrets so they match the FortiGate parameters exactly, including the specified AES256-SHA1-DH14 proposals and the correct Phase 2 subnets
• Resolve any TS_UNACCEPTABLE issues that pop up
• Bring the tunnel up, then confirm bi-directional ping works between 10.10.1.x and 10.201.x.x using the supplied script
No additional firewall or IDS work is needed—just the VPN itself. Once the tunnel is live and traffic flows, share the final config files and the key commands you ran so I can reproduce the setup if ever required.
What I will hand over
• SSH access to the fresh Ubuntu 22.04 server
• Complete Phase 1 / Phase 2 details from the FortiGate (PSK, AES256-SHA1-DH14 proposals, local and remote subnets)
• A quick test script for ping validation
What I’m expecting from you
• Install strongSwan with apt and enable the service
• Craft /etc/ipsec.conf and /etc/ipsec.secrets so they match the FortiGate parameters exactly, including the specified AES256-SHA1-DH14 proposals and the correct Phase 2 subnets
• Resolve any TS_UNACCEPTABLE issues that pop up
• Bring the tunnel up, then confirm bi-directional ping works between 10.10.1.x and 10.201.x.x using the supplied script
No additional firewall or IDS work is needed—just the VPN itself. Once the tunnel is live and traffic flows, share the final config files and the key commands you ran so I can reproduce the setup if ever required.
Related categories:
Linux
Shell Script
Ubuntu
Network Administration
Scripting
Network Security
VPN
Firewall