Community discussions

MikroTik App
 
yogoo
just joined
Topic Author
Posts: 3
Joined: Sun May 01, 2016 3:19 pm

VPN / PPTP Server - VPN Client cant ping others in the Network

Sun May 01, 2016 3:32 pm

Hi
I have set up a VPN Connection with my mikrotik router. I can connect and i can connect the internet over the connection, but i cant connect other clients in the "home" network.

I have following setup

Clients (DHCP IP Pool): 192.168.77.1-254
VPN IP Pool: 10.0.0.1-5

Secret - Yes (it works)
PPP Profile - Local Address: VPN Pool
Remote Address: VPN Pool

Firewall Ruls: TCP 1723
gre

On the bridge interface i setup proxy-arp

My vpn-client get a 10.0.0.x adress when i connect.

Do i have to change the PPP Profile? Or create a NAT Connection between VPN Connection and the a internal IP?

I created the connection with this tutorial: https://rbgeek.wordpress.com/2014/08/26 ... -mikrotik/

Thanks for your help
 
Senux
newbie
Posts: 34
Joined: Wed Jun 30, 2010 6:19 pm

Re: VPN / PPTP Server - VPN Client cant ping others in the Network

Sun May 01, 2016 4:03 pm

...
Do i have to change the PPP Profile? Or create a NAT Connection between VPN Connection and the a internal IP?
...
You need create nat rule. Also You can use same subnet for VPN and LAN users if it is enough one subnet address amount
 
sash7
Frequent Visitor
Frequent Visitor
Posts: 68
Joined: Sun Mar 20, 2016 10:39 pm

Re: VPN / PPTP Server - VPN Client cant ping others in the Network

Sun May 01, 2016 5:46 pm

 
yogoo
just joined
Topic Author
Posts: 3
Joined: Sun May 01, 2016 3:19 pm

Re: VPN / PPTP Server - VPN Client cant ping others in the Network

Mon May 02, 2016 3:56 pm

Thanks for the link. The only Thing i not understand is
Notice that the PPTP local address is the same as the router's address on the local interface and the remote address is from the same range as the local network (10.1.101.0/24).
. That means my Remote Adress is from the VPN Pool, and the local adress must be from the dhcp pool?

I saw that with the proxy-arp - i activated that on my bridge interface. do i have to activate that on the eth ports? I have more than one - activate on all?

My WAN Interface ist sfp1 not an eth Interface.

Sorry for all the questions - the vpn "thing" is a littlebit new for me - Thanks for the help!

Who is online

Users browsing this forum: AshuGite, racinmat, sindy and 28 guests