Sławek Koszewski slawek
  • Joined on 2023-10-09

vpn-router (1.0.0-1)

Published 2026-08-23 22:05:08 +02:00 by slawek

Installation

sudo curl https://gitea.koszewscy.waw.pl/api/packages/slawek/debian/repository.key -o /etc/apt/keyrings/gitea-slawek.asc
echo "deb [signed-by=/etc/apt/keyrings/gitea-slawek.asc] https://gitea.koszewscy.waw.pl/api/packages/slawek/debian $distribution $component" | sudo tee -a /etc/apt/sources.list.d/gitea.list
sudo apt update

Choose $distribution and $component from the list below.

sudo apt install vpn-router=1.0.0-1

Repository Info

Distributions
noble
Components
main
Architectures
all

About this package

Linux VPN router with IPSec, road-warrior and WireGuard support Configures a Linux host or virtual machine as a VPN router: site-to-site IKEv2 IPSec (strongSwan swanctl), optional road-warrior access using EAP-TLS, optional WireGuard, and the routing, NAT, MSS clamping and firewall rules a router needs. Nothing in the package is specific to a cloud provider. . Settings live in /etc/vpn-router/vpn-router.conf, which is created on first install and owned by the administrator afterwards. Editing it and restarting vpn-router-setup applies the change; the same service reconciles the system at every boot. It is built on two inputs, the external and internal interface names; the addresses on them are read from the system rather than configured again, and nothing is auto-detected. . Platform-specific additions are provided by modules under /usr/lib/vpn-router, selected explicitly by the platform setting. Modules for Azure and GCP are included.

Dependencies

debconf (>= 0.5) | debconf-2.0
strongswan-swanctl
charon-systemd
libstrongswan-extra-plugins
libcharon-extra-plugins
wireguard-tools
ufw
debconf
ucf
openssl
python3
python3-jinja2
iproute2
systemd-resolved
Details
Debian
2026-08-23 22:05:08 +02:00
1
Sławomir Koszewski
25 KiB
Assets (1)
Versions (1) View all
1.0.0-1 2026-08-23