Community discussions

MikroTik App
 
User avatar
bysard
Member Candidate
Member Candidate
Topic Author
Posts: 295
Joined: Thu Apr 22, 2010 2:53 pm

How to make a transparent bridge between a local LAN and VPN

Fri Jan 07, 2011 8:57 am

Hi all,

My situation:

I have a RB100U working perfectly with 3 WAN connections and multiple subnets. In 1 of those subnets (lets say 192.168.0.1/24) i have industrial machines which have a hardcoded mac adress, IP and subnet into them (cannot be changed) and NO default gateway! The thing is i want to be able to access them via some sort of VPN.
I made a bridge, put eth0 into it and set up a pptp server with a secret and a profile that includes previously made bridge.
The problem is i cant seem to get it working properly. I can ping all subnets except the one I want.
Tried setting up a client ip in 192.168.0.1/24 range also in a new range, but I just can't ping these machines. I a best scenario I could ping rb1100u and me and all other subnets, but not 192.168.20.0/24.

Any ideas?

br,
bysaRD
 
blake
Member
Member
Posts: 426
Joined: Mon May 31, 2010 10:46 pm
Location: Arizona

Re: How to make a transparent bridge between a local LAN and

Fri Jan 07, 2011 11:31 am

Create a separate VLAN / routed port for the industrial machines and enable proxy-arp on the interface. Terminate your VPN into ROS like normal. Do not put it into a bridge.

Should work fine.
 
User avatar
bysard
Member Candidate
Member Candidate
Topic Author
Posts: 295
Joined: Thu Apr 22, 2010 2:53 pm

Re: How to make a transparent bridge between a local LAN and

Fri Jan 07, 2011 12:04 pm

Works like a charm. Ty very much!


+karma

Who is online

Users browsing this forum: anav, Laxity, Valerio5000 and 241 guests