ipsec between two mikrotiks
Posted: Sun Nov 17, 2024 8:15 am
good afternoon, I use a simple configuration between two Mikrotiks with public ipv4, and I just want to use ipsec between them
Mikrotik A
/ip ipsec peer
add name=peer1 passive=yes
/ip ipsec identity
add generate-policy=port-strict peer=peer1 remote-id=ignore secret=12345
Mikrotik B
/ip ipsec peer
add address=11.12.13.14/32 name=peer1
/ip ipsec identity
add peer=peer1 remote-id=ignore secret=12345
after that I see the installed SAs,
what policies and firewall do i need to add next?
Mikrotik A
/ip ipsec peer
add name=peer1 passive=yes
/ip ipsec identity
add generate-policy=port-strict peer=peer1 remote-id=ignore secret=12345
Mikrotik B
/ip ipsec peer
add address=11.12.13.14/32 name=peer1
/ip ipsec identity
add peer=peer1 remote-id=ignore secret=12345
after that I see the installed SAs,
what policies and firewall do i need to add next?