Community discussions

MikroTik App
 
megasohaib
just joined
Topic Author
Posts: 14
Joined: Tue Mar 25, 2014 11:33 am

Mikrotik Ipsec tunnel between multiple sites

Tue Mar 25, 2014 12:42 pm

Hello Team, I hope you are all fin.

I have some problem with my Ipsec vpn between multiple sites. my 5 sites are connected with same ISP through MIKROTIOK ROUTER IPSEC TUNNEL. sites are a,b,c,d,e. a site is my head office and b,c,d,e sites is my clients(branches). all clients are connected with head office (a) through ipsec tunnel and working properly.But problem is that (b) not connected to (c,d,e) and (c) not connected to (b,d,e) and (d) not connected to (b,c,e) and (e) not connected to (b,c,d). Other words is (b,c,d,e) are not connected to eachother. All sites have different subnets.
Kindly give me some help that what i do work on my head office mikrotik router (a).

Although i was add subnet on routes opetion of my branches. but issed are same.


Regards
Sohaib
Network Admin
 
MrDidzkis
just joined
Posts: 6
Joined: Mon May 23, 2011 11:53 am

Re: Mikrotik Ipsec tunnel between multiple sites

Fri May 30, 2014 2:18 pm

Did you find a solution ?
 
lordzar
Frequent Visitor
Frequent Visitor
Posts: 94
Joined: Sat May 29, 2004 7:47 pm

Re: Mikrotik Ipsec tunnel between multiple sites

Fri May 30, 2014 3:54 pm

Routing on ipsec is overly complicated and not intuitive.

You need separate policy entries for all the remote subnets or a supernet policy, in order to tell the ipsec engine what the "interesting traffic" so that it will route thru the tunnel.

And don't forget the nat bypass rules so the remote network traffic doesn't get nat'd.

Who is online

Users browsing this forum: No registered users and 15 guests