Community discussions

MikroTik App
 
w0lt
Long time Member
Long time Member
Topic Author
Posts: 537
Joined: Wed Apr 02, 2008 2:12 pm
Location: Minnesota USA

RouterOS 6.30rc11

Thu Jun 04, 2015 7:07 pm

*) tunnels - eoip,eoipv6,gre,gre6,ipip,ipipv6,6to4 tunnels have new property - ipsec-secret
- for easy setup of ipsec encryption and authentication;
Can someone elaborate a bit on how to implement this feature?
Does this circumvent any thing in the IPSEC Peer entry?

Thanks,

-tp
 
User avatar
nz_monkey
Forum Guru
Forum Guru
Posts: 2103
Joined: Mon Jan 14, 2008 1:53 pm
Location: Over the Rainbow
Contact:

Re: RouterOS 6.30rc11

Fri Jun 05, 2015 12:57 am

*) tunnels - eoip,eoipv6,gre,gre6,ipip,ipipv6,6to4 tunnels have new property - ipsec-secret
- for easy setup of ipsec encryption and authentication;
Can someone elaborate a bit on how to implement this feature?
Does this circumvent any thing in the IPSEC Peer entry?

Thanks,

-tp
I was wondering the same thing.
 
User avatar
mrz
MikroTik Support
MikroTik Support
Posts: 7053
Joined: Wed Feb 07, 2007 12:45 pm
Location: Latvia
Contact:

Re: RouterOS 6.30rc11

Fri Jun 05, 2015 9:58 am

The same thing as L2TP setting. It adds dynamic ipsec peer and policy based on configured local and remote address and provided ipsec secret.
 
User avatar
nz_monkey
Forum Guru
Forum Guru
Posts: 2103
Joined: Mon Jan 14, 2008 1:53 pm
Location: Over the Rainbow
Contact:

Re: RouterOS 6.30rc11

Fri Jun 05, 2015 12:29 pm

The same thing as L2TP setting. It adds dynamic ipsec peer and policy based on configured local and remote address and provided ipsec secret.
Thanks Maris.

Very neat feature.

I am still waiting for Mikrotik to have IPSEC VTI support ;)
 
w0lt
Long time Member
Long time Member
Topic Author
Posts: 537
Joined: Wed Apr 02, 2008 2:12 pm
Location: Minnesota USA

Re: RouterOS 6.30rc11

Fri Jun 05, 2015 6:18 pm

The same thing as L2TP setting. It adds dynamic ipsec peer and policy based on configured local and remote address and provided ipsec secret.
So do I understand correctly that I no longer need to configure an IPSEC Policy/Peer under the previous way and only have to select a "IPsec-secret" password on both ends to make the link "encrypted"?
 
w0lt
Long time Member
Long time Member
Topic Author
Posts: 537
Joined: Wed Apr 02, 2008 2:12 pm
Location: Minnesota USA

Re: RouterOS 6.30rc11

Fri Jun 05, 2015 6:27 pm

The same thing as L2TP setting. It adds dynamic ipsec peer and policy based on configured local and remote address and provided ipsec secret.
Thanks Maris.

Very neat feature.

I am still waiting for Mikrotik to have IPSEC VTI support ;)
Ditto !!! 8)

-tp
 
User avatar
Bigfoot
Frequent Visitor
Frequent Visitor
Posts: 76
Joined: Sat Jan 15, 2011 10:41 am
Location: South Africa

Re: RouterOS 6.30rc11

Tue Jun 09, 2015 7:41 am

I had a problem with PPPoE Client on 6.30rc11, my internet speed doped to 1meg on speed test downgrade to 6.30.1 internet speed restored.
 
User avatar
macgaiver
Forum Guru
Forum Guru
Posts: 1764
Joined: Wed May 18, 2005 5:57 pm
Location: Sol III, Sol system, Sector 001, Alpha Quadrant

Re: RouterOS 6.30rc11

Tue Jun 09, 2015 9:14 am

I had a problem with PPPoE Client on 6.30rc11, my internet speed doped to 1meg on speed test downgrade to 6.30.1 internet speed restored.
Did you wrote to support@mikrotik.com with supout.rif file?
 
User avatar
honzam
Forum Guru
Forum Guru
Posts: 2395
Joined: Wed Feb 27, 2008 10:27 pm
Location: Czech Republic

Re: RouterOS 6.30rc11

Tue Jun 09, 2015 3:25 pm

rc13:
*) possibility to disable route cache - improves DDOS attack handling performance up to 2x (note that ipv4 fastpath depends on route cache);
 
User avatar
Bigfoot
Frequent Visitor
Frequent Visitor
Posts: 76
Joined: Sat Jan 15, 2011 10:41 am
Location: South Africa

Re: RouterOS 6.30rc11

Tue Jun 09, 2015 5:01 pm

Nope. Will see if 6.30 is working.
 
User avatar
macgaiver
Forum Guru
Forum Guru
Posts: 1764
Joined: Wed May 18, 2005 5:57 pm
Location: Sol III, Sol system, Sector 001, Alpha Quadrant

Re: RouterOS 6.30rc11

Wed Jun 10, 2015 4:04 pm

From my experience, i can say that you definitely need to report in if you need features from that version. or esle there is a good chance that you will have to wait one more release.

Who is online

Users browsing this forum: Bing [Bot], regisc, sbert and 112 guests