Configuring the VPN server (GRE /IPSec StrongSwan, OSPF Quagga)

Who would have thought that deploying some of the company's servers to Amazon was a bad idea.
 
 
As a result, the task is to make an additional VPN tunnel between Amazon and the infrastructure in Russia.
 
 
Configuring the VPN server (GRE /IPSec StrongSwan, OSPF Quagga)
 
IKE v? authorization for the certificate , add additional filtering to addresses in the firewall, make OSPF with authorization and, with a large number of routers, with division into the area, change the values ​​of hello-interval and dead-interval on the interfaces.
 
 
I will be glad to advice in the comments, and information about typos - in PM. Thank you for attention.
 
 
Friday survey: ...
+ 0 -