
Open
Posted
•
Ends in 4 days
I’m bringing in an external expert to tighten up a mixed-vendor environment that spans Cisco, Juniper, HPE/Aruba switching and a FortiGate firewall. Most of the day-to-day items run well, yet lingering issues around VLAN design, trunk consistency, OSPF versus static routes, and a few NAT quirks at the edge are starting to show. The single highest-value task is establishing a reliable Site-to-Site VPN between two offices so we can retire an aging MPLS circuit. Beyond that, I’d like you to review current firewall rules, clean up redundant objects, and confirm that inter-VLAN routing on the switch stacks lines up with our security zones. SolarWinds is in place for monitoring; if you see gaps in SNMP polling or alerting, feel free to tune those as you go. To keep expectations crystal clear, here’s what I need back from you: • Verified, stable Site-to-Site VPN on FortiOS (phase-1/2, crypto maps or VDOM-based if you prefer) • Clean switch configurations with consistent VLAN IDs, trunks, and routed SVIs across Cisco/Aruba stacks • OSPF and static-route table reviewed, loops removed, and preferred paths documented • Updated NAT and firewall policies with comments for future admins • Troubleshoot and document any ISP/WAN link anomalies you uncover • A simple Visio or Lucidchart topology diagram plus a brief text runbook outlining the above changes I have no hard deadline, so you can approach the work methodically—just keep me in the loop with milestones and change windows so production traffic stays protected. Remote access (VPN/Jumpbox) and console credentials will be provided once we kick off.
Project ID: 40684224
23 proposals
Open for bidding
Remote project
Active 5 hours ago
Set your budget and timeframe
Get paid for your work
Outline your proposal
It's free to sign up and bid on jobs
23 freelancers are bidding on average $28 USD/hour for this job

Security and Technical Engineer with a Master's degree in Computer Science, experienced in applying technical expertise in network security, firewall configuration, SIEM, and endpoint security. With a background as an industry trainer, I bring a unique blend of technical and training expertise to contribute innovative solutions and facilitate knowledge transfer. Our Promise: A hardened, documented, and VPN-ready networkwith no more MPLS billswithin 4–6 weeks. What We Deliver: Primary Win: Rock-solid Site-to-Site VPN (FortiOS) with failover monitoring, replacing your MPLS and cutting recurring costs immediately. Cross-Vendor Clarity: Unified VLAN schema, consistent trunks, and routed SVIs across Cisco, Juniper, and Aruba stacks, eliminating interop guesswork. Routing & Security Overhaul: OSPF/static route cleanup (loops removed, paths documented), NAT/firewall policy deduplication with inline comments for future teams. Monitoring Tuning: SNMP polling adjustments in SolarWinds to catch issues before users do. Full Visibility: Lucidchart topology + a concise runbook covering every change and troubleshooting path. Approach: Methodical, change-window-aware, with weekly milestone check-ins. Remote access onl; no on-site required. Timeline: 4 weeks typical; flexible to your production schedule.
$25 USD in 20 days
6.6
6.6

Hi, I can help review, clean up and troubleshoot your mixed-vendor network across Cisco, Juniper, HPE/Aruba switching and FortiGate firewall, with priority on a stable Site-to-Site VPN. My approach will be to first review the current topology, VLAN plan, trunking, SVIs, routing tables, FortiGate policies, NAT rules and WAN links. Then I’ll plan changes around agreed maintenance windows to protect production traffic. I can help with: * FortiGate Site-to-Site VPN setup * Phase 1/Phase 2 troubleshooting * Cisco/Aruba VLAN and trunk review * SVI and inter-VLAN routing checks * OSPF and static route cleanup * NAT and firewall policy review * Redundant object cleanup * WAN/ISP anomaly troubleshooting * SolarWinds SNMP/alert review * Change documentation Deliverables: * Verified stable Site-to-Site VPN * Cleaned switch/firewall configurations * Documented routing decisions * Updated NAT/firewall policy notes * Troubleshooting findings * Topology diagram * Simple admin runbook I’ll focus on reliable connectivity, clean documentation and safe change control so the MPLS replacement and network cleanup are handled methodically. Best regards Ankit
$15 USD in 40 days
3.6
3.6

Hi, I’m Sahanaj. Multi-vendor networking like this is where experience matters—I’ve worked across Cisco, Juniper, HPE/Aruba and FortiGate, including VLAN/SVI design, trunking, OSPF/static routing, NAT and production VPNs. I can first map the current topology, then establish the FortiOS Site-to-Site IPsec VPN, clean firewall/NAT policies, remove routing inconsistencies, tune SolarWinds SNMP/alerts and document everything. Rate: $25/hour Estimated effort: 15–25 hours Timeline: 5–7 business days, scheduled around change windows. Deliverables include topology diagram, route/VLAN documentation, firewall changes and a concise admin runbook. I’ll troubleshoot methodically without putting production traffic at unnecessary risk.
$25 USD in 40 days
2.9
2.9

I’m primarily a software and backend developer with hands-on experience in building full-stack applications, APIs, authentication systems, databases, and backend services. While my main professional focus is software development rather than enterprise network administration, I have a strong technical understanding of networking concepts such as APIs, server communication, security, and system architecture. For this particular project, I would be transparent that I do not want to overstate my experience with production Cisco/Juniper/Aruba and FortiGate environments. If you are specifically looking for a dedicated network engineer with extensive hands-on experience configuring FortiOS, OSPF, VLANs, and Site-to-Site VPNs in production, I would recommend choosing someone with that specialized background.
$15 USD in 25 days
0.0
0.0

If there’s a better way to approach your problem, I won’t hesitate to recommend the most suitable solution based on my extensive experience. With over 32 years of IT experience—including serving as CTO at Assist A Boss, working as a Sr. Field Services Engineer at Insight, and supporting enterprise IT at Brown & Brown Insurance—I’ve developed extensive expertise in systems administration, server management, networking, Microsoft environments, business automation, and the latest AI technologies. My goal is simple: I’ll identify the most urgent problems—even the ones you may not have noticed yet—and resolve them efficiently and smoothly. The real challenge is not the VPN but retiring MPLS without losing its reliability. On FortiOS that means a route-based tunnel carrying OSPF, since crypto maps and policy mode block OSPF and failover. Quick checks: FortiGate, Cisco or Juniper at the far office? Backup internet link at either site? Overlapping subnets or NAT between offices? VLAN and trunk consistency on the Cisco and Aruba stacks matters too. Plan: back up configs, build the tunnel beside MPLS, test, cut over in a set window, align VLANs and zones, comment every rule, then deliver diagram, runbook and SolarWinds alerts. If you’re looking for scalable, practical value rather than just a one-time project, I can help you achieve meaningful results through small but lasting improvements that will exceed your expectations and surprise everyone involved. William Berry
$20 USD in 40 days
0.0
0.0

Hello, I understand you need to stabilize a mixed-vendor network across Cisco, Juniper, HPE/Aruba, and FortiGate, with the highest priority being a reliable Site-to-Site VPN to replace the aging MPLS. The goal is to deliver a clean, secure, and well-documented network environment. Here’s what I can provide: Configure and verify FortiOS Site-to-Site VPN, including Phase 1/2 and stable routing. Review VLANs, trunks, SVIs, OSPF/static routes, NAT, and firewall policies across the environment. Troubleshoot WAN issues, tune SolarWinds monitoring, and provide a Visio/Lucidchart topology with a practical runbook. I bring over 4+ years of experience in network administration, Cisco, Juniper, Aruba, FortiGate, VPN, firewall, and routing environments, with a strong focus on secure, reliable, and production-ready infrastructure. I’ve handled VLAN design, routing, firewall configuration, VPN troubleshooting, and network documentation while minimizing production impact. Just to clarify a few things: Are both offices using FortiGate devices with FortiOS, and what versions are currently running? Do you already have the existing network topology and current configuration backups available? Please come to the chat box to discuss more about your project. Best regards Indresh Kushwaha
$25 USD in 40 days
0.0
0.0

I’m excited about the opportunity to help stabilize and optimize your mixed‑vendor environment. With over ten years of hands‑on experience configuring and troubleshooting Cisco, Juniper, Aruba (HPE), and FortiGate appliances, I’ve successfully designed site‑to‑site VPNs, streamlined VLAN and trunk setups, and cleaned up complex OSPF and static routing tables. My approach will focus on: - Implementing a robust, fully documented Site‑to‑Site VPN on FortiOS (phase‑1/2, VDOM or crypto‑map, depending on your preference). - Auditing and re‑engineering switch stack configurations to ensure consistent VLAN IDs, trunk links, and routed SVIs across Cisco and Aruba stacks. - Reviewing OSPF and static routes to eliminate loops, enforce path preferences, and document the logic for future administrators. - Refactoring firewall rules, eliminating redundant objects, and tightening NAT policies with clear inline comments. - Monitoring and resolving any ISP/WAN anomalies, with proactive SNMP tuning to fill SolarWinds gaps. I will deliver a clear Visio/Lucidchart topology diagram and a concise runbook summarizing all changes, and I’ll keep you informed at each milestone to protect production traffic. Looking forward to discussing how we can bring this project to a smooth, secure, and well‑documented state.
$25 USD in 7 days
0.0
0.0

I read through your project details carefully. Managing a mixed-vendor ecosystem with Cisco, HPE/Aruba, and FortiGate requires strict adherence to standard protocols (like IEEE 802.1Q and standard OSPF metrics) to prevent silent trunk drops, routing loops, or asymmetrical NAT issues. I can systematically stabilize your environment, migrate you off the MPLS circuit, and document the entire topology. Here is how I plan to approach your deliverables step-by-step: Methodology & Key Deliverables Phase 1: Discovery, Topology Review & SolarWinds Baseline Review existing Cisco/Aruba running configs, FortiOS rules, and OSPF neighbor states. Audit current VLAN mappings, trunk encapsulation, and native VLAN consistency across vendors. Ensure SolarWinds has proper SNMP v2c/v3 polling and alert thresholds set before applying changes. Phase 2: Site-to-Site IPsec VPN Deployment (MPLS Decommissioning) Configure Route-Based IPsec VPN on FortiOS (Phase-1 & Phase-2 proposals with modern IKEv2, AES-GCM/AES-256, and DH groups 14/19/21). Set up virtual tunnel interfaces (IPsec VTI) with dead peer detection (DPD) and path monitor for failover. Test throughput, latency, and failover before routing live traffic away from the MPLS circuit.
$15 USD in 64 days
0.0
0.0

Hi there, As a Certified Network Security Engineer (PCNSE, CCNP Security) experienced in multi-vendor infrastructures, I am ready to stabilize your FortiGate, Cisco, and Aruba environment. My approach to your deliverables: FortiGate VPN: I will deploy a secure, route-based IPsec tunnel (IKEv2) to replace your MPLS, configuring Phase 1/2, blackhole routes, and zone policies. Switching & Routing: I will standardize VLANs, 802.1Q trunks, and SVIs across your Cisco/Aruba stacks, ensuring inter-VLAN routing aligns with security zones. OSPF & Static Routes: I will eliminate routing loops, evaluate OSPF vs. static paths, troubleshoot WAN anomalies, and document the hierarchy. Firewall & NAT Cleanup: I will audit rule sets, remove stale objects, and annotate updated policies for future admins. Documentation: I will verify SolarWinds SNMP polling and provide a clean Visio topology diagram with a runbook of changes. I work within designated change windows to protect production traffic. I look forward to discussing your topology. Best regards, Balakrishna Vantala
$22 USD in 40 days
0.0
0.0

Hi, I’m a System & Network Administrator with 2+ years of hands-on experience managing network and server infrastructure. I have practical experience with Cisco, HPE/Aruba, FortiGate, VLANs, trunking, inter-VLAN routing, OSPF/static routing, NAT, VPNs, and network troubleshooting. For this project, I can: Configure and verify a stable FortiGate Site-to-Site IPsec VPN Review and standardize VLANs, trunks, and SVIs Analyze OSPF/static routes and document preferred paths Review firewall policies and NAT, removing redundant objects/rules Troubleshoot WAN/ISP connectivity issues Review SolarWinds SNMP monitoring and alerting Provide a clear network topology diagram and technical runbook I follow a structured approach: first assess the existing configuration, document findings, agree on changes, then implement them during controlled change windows to minimize production impact. I’m comfortable working remotely through VPN/Jumpbox and console access, and I’ll provide regular progress updates and clear documentation. I’d be happy to discuss your current topology and start with an initial assessment.
$20 USD in 40 days
0.0
0.0

Ethan here, from South Africa. Your project immediately caught my eye. I'm really excited to partner with you. I understand you're looking to establish a reliable Site-to-Site VPN between two offices to retire an aging MPLS circuit, along with cleaning up your current network configurations. I recently worked on a similar project where I improved a complex multi-vendor environment, leading to enhanced stability and performance. To tackle this, I would start by reviewing your VLAN design and trunk configurations to ensure consistency across your Cisco and Aruba stacks. I’d also evaluate your OSPF and static routes to eliminate any unnecessary loops. I will ensure that all changes are thoroughly documented, providing you with a clear runbook and a topology diagram. Quality is my top priority, so I’ll keep you informed with regular updates and ensure that production traffic remains protected throughout the process. Please feel free to reach out so we can connect and further explore how I can contribute to your project's ABOVE THE REST SUCCESS. Kind regards, Ethan
$15 USD in 8 days
0.0
0.0

Your environment sounds like a solid mixed-vendor setup that just needs someone to sit down and clean it up methodically. The FortiGate site-to-site VPN to retire the MPLS circuit is the right move and honestly the most satisfying kind of project -- replace a recurring cost with something you fully control. I'll be straight with you though. My daily work is full-stack web development and DevOps -- Linux servers, Docker, AWS, DNS, SSL, firewall rules at the host level. I've configured VLANs on managed switches, set up VPN tunnels, and done enough SNMP monitoring to be dangerous. But deep Cisco IOS, Junos CLI, FortiOS phase-1/phase-2 crypto config, and OSPF route table surgery aren't part of my regular rotation. If you specifically need someone who lives in that world every day, better to filter now. What I can bring is 10+ years of infrastructure thinking, solid documentation habits, and the kind of methodical troubleshooting approach you described wanting. I'm good at topology diagrams and runbooks that future admins can actually follow. And I won't touch production without a change window. If that adjacent skillset is useful to you as a second pair of hands alongside your own networking knowledge, I'm around to talk through scope.
$22 USD in 7 days
0.0
0.0

*** ? TRYHACKME RANK #1 IN BANGLADESH (TOP 5% GLOBALLY) | NETWORK SECURITY EXPERT *** Hello, Before diving into details, please note that you are hiring a top-tier Network Security Practitioner who currently holds the RANK #1 spot on TryHackMe in Bangladesh. I specialize in advanced routing, switching, firewall auditing, and zero-downtime infrastructure optimization. I have analyzed your mixed-vendor network infrastructure (Cisco, Juniper, HPE/Aruba, FortiGate) and will resolve your issues methodically: ? VPN & FIREWALL SEGMENTATION: • Configure a verified, stable Site-to-Site VPN on FortiOS (Phase 1/2, utilizing crypto maps or VDOM-based architecture based on design). • Audit FortiGate firewall rules, purge redundant objects, and realign inter-VLAN routing with strict security zones. ⚡ SWITCHING & ROUTING OPTIMIZATION: • Clean Cisco and Aruba switch stacks, ensuring absolute trunk consistency, proper VLAN IDs, and correctly routed SVIs. • Audit routing tables (OSPF vs. Static), eliminate potential loops, and document preferred paths. ? MONITORING & DOCUMENTATION: • Tune SolarWinds setup to close gaps in SNMP polling/alerting. • Deliver a clean Lucidchart/Visio topology diagram and a brief text runbook. I am highly experienced in handling production traffic without disruption. Let's connect to discuss jumpbox access and initiate the milestones. Best regards, Jubed
$15 USD in 30 days
0.0
0.0

Hi, I’m a CCNA & CCNP certified Network Engineer with around 3 years of experience in enterprise network support, routing, switching, VPNs, firewalls, wireless networks, and network troubleshooting. Your requirement closely matches my experience, particularly with Cisco/Aruba environments, VLANs and trunking, inter-VLAN routing, OSPF, static routing, NAT, IPsec Site-to-Site VPNs, and firewall troubleshooting. I can assist with establishing and validating the FortiGate Site-to-Site VPN, reviewing VLAN/trunk consistency and SVIs, checking OSPF/static routing for incorrect or redundant paths, reviewing NAT/firewall policies, and troubleshooting WAN/ISP connectivity issues. I will take a change-controlled approach to minimize production impact and document the final configuration, topology, changes made, and recommendations for future administration. I’m available to work remotely through your VPN/Jumpbox and can coordinate changes during your preferred maintenance windows. I’d be happy to discuss the current topology and VPN requirements before beginning. Regards, Haris Rehman CCNA | CCNP Network Engineer
$20 USD in 40 days
0.0
0.0

Hey, i can help you with multi vendor configuration as i have a good experience in handling Cisco switches, routers, firewalls and also Fortigate products. I can help you with all kind of VPNs establishments and device configurations.
$15 USD in 40 days
0.0
0.0

I can audit and stabilize your mixed Cisco, Juniper, Aruba/HPE, and FortiGate environment, with the FortiGate Site-to-Site VPN as the top priority. I’ll review VLANs, trunks, SVIs, OSPF/static routing, NAT, firewall policies, and WAN connectivity, identifying inconsistencies, redundant rules/objects, routing issues, and security-zone mismatches. I’ll configure and thoroughly test the FortiOS IPsec VPN, including Phase 1/2, routing, NAT exemptions, firewall policies, and fail/reconnect behavior. I can also review SolarWinds SNMP monitoring and alerting, clean up configurations, and document the preferred routing paths. Deliverables will include a verified VPN, standardized switch configurations, optimized routing/NAT/firewall policies, WAN findings, a Visio/Lucidchart topology diagram, and a concise runbook for future administration and troubleshooting. I’ll work through agreed change windows, provide milestone updates, and ensure production traffic remains protected throughout the process.
$16 USD in 56 days
0.0
0.0

Hey! SolutionzHere here — we've handled multi-vendor environments like this (Cisco/Juniper/Aruba + FortiGate), including Site-to-Site VPN builds on FortiOS, OSPF cleanup, and NAT/firewall rule audits, so this scope is solidly within our experience. Fair estimate: VPN setup + firewall cleanup + VLAN/OSPF review + SolarWinds tuning + documentation typically runs 40-55 hours ($700-1,100 total) given the mixed-vendor complexity — we'd bid at $25/hr for senior network engineering on production infrastructure. Quick Q: How many switch stacks/sites are in scope beyond the two offices needing the VPN?
$25 USD in 40 days
0.0
0.0

Hi, I read through your scope on the VLAN/trunk cleanup, OSPF review, and the Site-to-Site VPN to retire the MPLS circuit. I'm a CCNA and CCNP ENCOR certified network engineer running Cisco IOS enterprise infrastructure in production daily (routing, switching, VLANs, VXLAN overlays), plus hands-on experience with Site-to-Site VPN design and segmented, firewall-fronted network builds from my own lab work. My Cisco and firewall/routing fundamentals are strong; I'd approach this by first auditing the current VLAN/trunk and OSPF/static route setup, documenting inconsistencies, then building and testing the FortiGate Site-to-Site VPN in a staged change window so production traffic stays protected throughout. Happy to start with the VPN as the highest-value item and share progress at each milestone. Available to start now.
$20 USD in 40 days
0.0
0.0

Hello, I can take this on at $20/hour, with availability up to 50 hours per week. To protect production traffic, I suggest beginning with a 6 to 8 hour read-only discovery milestone. I will inventory the device models and firmware, export current configurations, map VLANs, trunks, SVIs, routing, NAT and firewall dependencies, then prepare a prioritized change plan with rollback steps. After approval, I will work through controlled change windows: • Build and verify a route-based FortiOS Site-to-Site IPsec VPN, including phase 1, phase 2, selectors, routing, DPD and bidirectional testing • Validate VLAN IDs, native VLANs, allowed trunks and routed SVIs across Cisco, Juniper and HPE/Aruba devices • Review OSPF adjacencies, static routes, administrative preferences and possible loops • Clean redundant FortiGate objects, NAT rules and firewall policies without changing intended access • Review SolarWinds SNMP polling and actionable alert coverage • Investigate ISP or WAN anomalies found during testing Every production change will have a configuration backup, an agreed maintenance window, validation checks and a rollback path. I will maintain a before-and-after change log and deliver an updated Visio or Lucidchart topology plus a concise operational runbook. Before kickoff, I would need the exact device models, software versions, current diagrams, site subnets, ISP handoff details and any known maintenance restrictions.
$20 USD in 50 days
0.0
0.0

Hello, I understand that your main priority is establishing reliable connectivity between two offices before retiring the existing MPLS connection. My hands-on infrastructure work includes HPE Comware switches, VLANs, trunks, link aggregation, IRF, and FortiGate and Palo Alto high-availability configurations. I propose beginning with a paid assessment at US$25/hour, capped at two hours with your agreement. This would establish the current topology, identify the main connectivity issues, and clarify the device-specific work required. I would provide initial findings, a prioritized action plan, and an estimate for the next stage. We would agree the implementation scope, maintenance windows, and rollback approach before making production changes. Could you confirm the device models and software versions at both sites, whether a VPN configuration already exists, and your preferred maintenance windows? Regards, Naveen Jacob
$25 USD in 40 days
0.0
0.0

Lahore, Pakistan
Payment method verified
Member since Sep 1, 2026
$15-25 USD / hour
$30-250 USD
$30-250 USD
₹750-1250 INR / hour
$10-30 USD
₹1500-12500 INR
£20-250 GBP
₹3500-4000 INR / hour
₹750-1250 INR / hour
₹12500-37500 INR
$250-750 USD
₹1500-12500 INR
₹600-1500 INR
$30-250 USD
₹4000-5000 INR
₹12500-37500 INR
$10-30 USD
$250-750 USD
$15-25 USD / hour
$20 USD