These scripts create\remove IPsec IKE v2 server and\or peers.
- "IKEv2-server-autoscript.rsc" is an interactive script to create and manage IKEv2 server on mikrotik router.
- "IKEv2-peer-autoscript.rsc" is used on client-side mikrotik to create peer.
- "IKEv2-remove-peer-autoscript.rsc" is used on client side mikrotik to remove peer.
- "IKEv2-strongswan-peer-autoscript.rsc" is used on client-side mikrotik to create peer working with StrongSwan IPSec ikev2 server.
HOW TO...
How to setup an IKE v2 server and create CA certificate.
- Download IKEv2-server-autoscript.rsc on your mikrotik router
/tool fetch url="https://raw.githubusercontent.com/mikrotik-user/IPSec-IKE-v2-auto-script/main/IKEv2-server-autoscript.rsc" mode=https dst-path=IKEv2-server-autoscript.rsc
. Also you may download file manually and upload it to router. - Import script
/import IKEv2-server-autoscript.rsc
. You may also copy content of this page and paste to a newly created script using GUI. - Run script via CLI.
/system script run IKEv2
IMPORTANT: Script won't work if you run it via GUI. - Choose 1. Install IKE v2 server by typing "1"
- Follow instructions on CLI
How to create a client and create client's certificate. (Server-side)
- Run script via CLI.
/system script run IKEv2
- Choose 2. Create peer by typing "2"
- Follow instructions on CLI
How to setup a peer on client mikrotik router. (Peer-side)
- Download IKEv2-peer-autoscript.rsc on your mikrotik router
/tool fetch url="https://raw.githubusercontent.com/mikrotik-user/IPSec-IKE-v2-auto-script/main/IKEv2-peer-autoscript.rsc" mode=https dst-path=IKEv2-peer-autoscript.rsc
. Also you may download file manually and upload it to router. - Import script
/import IKEv2-peer-autoscript.rsc
. You may also copy content of this page and paste to a newly created script using GUI. - Run script via CLI.
/system script run IKEv2-peer
IMPORTANT: Script won't work if you run it via GUI. - Choose 1. Create peer by typing "1"
- Follow instructions on CLI
How to setup strongswan client on mikrotik router.
- Download "IKEv2-strongswan-peer-autoscript.rsc" on your mikrotik router
/tool fetch url="https://raw.githubusercontent.com/mikrotik-user/IPSec-IKE-v2-auto-script/main/IKEv2-strongswan-peer-autoscript.rsc" mode=https dst-path=IKEv2-strongswan-peer-autoscript.rsc
. Also you may download file manually and upload it to router. - Import script
/import IKEv2-strongswan-peer-autoscript.rsc
. You may also copy content of this page and paste to a newly created script using GUI. - Make sure you uploaded certificate file on you router. Run script
/system script run IKEv2-strongswan-peer-autoscript
- Choose 1. Create peer by typing "1"
- Script creates new peer and a new rollback script named "remove-peer-". You can use it to rollback modifications made by "IKEv2-strongswan-peer-autoscript".