Community discussions

MikroTik App

Search found 5 matches

by Lesilhouette
Wed Jul 14, 2021 3:36 pm
Forum: General
Topic: MTU-size for IPSec tunnel
Replies: 5
Views: 5986

Re: MTU-size for IPSec tunnel

MSS is a TCP thing, and RADIUS only supports UDP as a transport, so the rules you've mentioned will never work with RADIUS. Fragmenting large UDP datagrams should not be a problem. Unless DF bit set, of course, in which case fragmenting is forbidden. The latter usually happens during path MTU disco...
by Lesilhouette
Wed Jul 14, 2021 9:35 am
Forum: General
Topic: MTU-size for IPSec tunnel
Replies: 5
Views: 5986

MTU-size for IPSec tunnel

I'm trying to setup 802.1x with EAP-TLS to secure wifi, but the RADIUS/connection server is a Azure VM, to which I can connect with a IPSEC tunnel. The problem is that when trying to connect to the wifi, I get an error that I can't connect. With some help I've discovered that with Wireshark I see (o...
by Lesilhouette
Thu Sep 17, 2020 1:14 pm
Forum: General
Topic: IKE2 identity not found (IOS to Mikrotik) [SOLVED]
Replies: 25
Views: 20498

Re: IKE2 identity not found (IOS to Mikrotik) [SOLVED]

Got it working. This is how: Create a self-signed CA certificate: /certificate add name="My CA" digest-algorithm=sha256 key-type=rsa country="NL" state="NH" locality="Amsterdam" organization="My Organization" unit="ICT" common-name="M...
by Lesilhouette
Fri Mar 06, 2020 11:00 am
Forum: General
Topic: IPsec tunnel to Azure won't connect [SOLVED]
Replies: 1
Views: 2361

Re: IPsec tunnel to Azure won't connect

Thanks to u/mintlou on on Reddit upgraded my RouterOS to the latest (4.46), and set my IPsec profile to the settings he mentioned. For future reference, below is my IPSec & firewall incl. NAT config: IPSec # mar/06/2020 09:07:08 by RouterOS 6.46.4 # software id = 6I9F-HF4C # # model = 960PGS # s...
by Lesilhouette
Thu Mar 05, 2020 1:54 pm
Forum: General
Topic: IPsec tunnel to Azure won't connect [SOLVED]
Replies: 1
Views: 2361

IPsec tunnel to Azure won't connect [SOLVED]

I want to create a S2S IPSec tunnel to Azure, so I followed this guide and this guide, but both don't get a succesful connection. And from the logs I can't find (or understand) the (direction) of the problem. I hope someone here can help. Here's an export from my full config: # mar/05/2020 12:25:02 ...