Skip to content

mikrotik-user/IPSec-IKE-v2-auto-script

Repository files navigation

IPSec-IKE-v2-auto-script

These scripts create\remove IPsec IKE v2 server and\or peers.

  1. "IKEv2-server-autoscript.rsc" is an interactive script to create and manage IKEv2 server on mikrotik router.
  2. "IKEv2-peer-autoscript.rsc" is used on client-side mikrotik to create peer.
  3. "IKEv2-remove-peer-autoscript.rsc" is used on client side mikrotik to remove peer.
  4. "IKEv2-strongswan-peer-autoscript.rsc" is used on client-side mikrotik to create peer working with StrongSwan IPSec ikev2 server.

HOW TO...

How to setup an IKE v2 server and create CA certificate.

  1. Download IKEv2-server-autoscript.rsc on your mikrotik router /tool fetch url="https://raw.githubusercontent.com/mikrotik-user/IPSec-IKE-v2-auto-script/main/IKEv2-server-autoscript.rsc" mode=https dst-path=IKEv2-server-autoscript.rsc. Also you may download file manually and upload it to router.
  2. Import script /import IKEv2-server-autoscript.rsc. You may also copy content of this page and paste to a newly created script using GUI.
  3. Run script via CLI. /system script run IKEv2 IMPORTANT: Script won't work if you run it via GUI.
  4. Choose 1. Install IKE v2 server by typing "1"
  5. Follow instructions on CLI

How to create a client and create client's certificate. (Server-side)

  1. Run script via CLI. /system script run IKEv2
  2. Choose 2. Create peer by typing "2"
  3. Follow instructions on CLI

How to setup a peer on client mikrotik router. (Peer-side)

  1. Download IKEv2-peer-autoscript.rsc on your mikrotik router /tool fetch url="https://raw.githubusercontent.com/mikrotik-user/IPSec-IKE-v2-auto-script/main/IKEv2-peer-autoscript.rsc" mode=https dst-path=IKEv2-peer-autoscript.rsc. Also you may download file manually and upload it to router.
  2. Import script /import IKEv2-peer-autoscript.rsc. You may also copy content of this page and paste to a newly created script using GUI.
  3. Run script via CLI. /system script run IKEv2-peer IMPORTANT: Script won't work if you run it via GUI.
  4. Choose 1. Create peer by typing "1"
  5. Follow instructions on CLI

How to setup strongswan client on mikrotik router.

  1. Download "IKEv2-strongswan-peer-autoscript.rsc" on your mikrotik router /tool fetch url="https://raw.githubusercontent.com/mikrotik-user/IPSec-IKE-v2-auto-script/main/IKEv2-strongswan-peer-autoscript.rsc" mode=https dst-path=IKEv2-strongswan-peer-autoscript.rsc. Also you may download file manually and upload it to router.
  2. Import script /import IKEv2-strongswan-peer-autoscript.rsc. You may also copy content of this page and paste to a newly created script using GUI.
  3. Make sure you uploaded certificate file on you router. Run script /system script run IKEv2-strongswan-peer-autoscript
  4. Choose 1. Create peer by typing "1"
  5. Script creates new peer and a new rollback script named "remove-peer-". You can use it to rollback modifications made by "IKEv2-strongswan-peer-autoscript".

About

These scripts create\remove IPsec IKE v2 server and\or peers

Topics

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published

Languages