[IPSec] Route Internet traffic
Posted: Wed Jun 19, 2024 6:04 pm
Dear MikroTik users.
A customer wants to do this scenario:
1) At branch office there is a MikroTik connected to Starlink (the satellital provider). MikroTik cpe obtains IP addressing by dhcp (provided by Starlink cpe).
2) At HQ office there is a MikroTik with its IPv4 public ip adress.
3) I successfully set-up an IPSec connection between MikroTiks.
4) HQ lan network can reach branch lan network and viceversa.
But now the customer wants the branch office has Internet access using the Internet located at HQ, avoiding Starlink Internet service.
I set-up an IPSec policy (on branch MikroTik) encrypting the destination address (0.0.0.0/0) and branch network as source, but connection speed is too low and many Internet websites doesn't show.
Please, can you suggest any solution.
Thanks for attention and help.
Best regards
A customer wants to do this scenario:
1) At branch office there is a MikroTik connected to Starlink (the satellital provider). MikroTik cpe obtains IP addressing by dhcp (provided by Starlink cpe).
2) At HQ office there is a MikroTik with its IPv4 public ip adress.
3) I successfully set-up an IPSec connection between MikroTiks.
4) HQ lan network can reach branch lan network and viceversa.
But now the customer wants the branch office has Internet access using the Internet located at HQ, avoiding Starlink Internet service.
I set-up an IPSec policy (on branch MikroTik) encrypting the destination address (0.0.0.0/0) and branch network as source, but connection speed is too low and many Internet websites doesn't show.
Please, can you suggest any solution.
Thanks for attention and help.
Best regards