Enterprise VPN Infrastructure
Active Directory, Group Policy, Ubuntu Server, WireGuard, Python, Flask, systemd
An automated VPN deployment system integrated with Active Directory. Domain-joined Windows clients pull a Group Policy startup script from SYSVOL, install WireGuard if it’s missing, and enroll themselves with a Flask API running on Ubuntu behind Gunicorn and systemd. The server manages peers, hands out configurations, and provides a dashboard for monitoring, revoking, and restoring access.
The part I’m most proud of isn’t the build — it’s the debugging. When three services were fighting over the same port and systemd kept respawning Gunicorn, I worked through it with ss, lsof, and unit inspection, consolidated everything onto one service, and traced a Windows Installer failure on the client side using MSI verbose logs. It taught me to troubleshoot across the whole stack instead of treating deployment as a one-step install.