Community discussions

MikroTik App
 
kalios
just joined
Topic Author
Posts: 9
Joined: Tue Aug 30, 2011 12:04 am

Mikrotik IPSEC connection

Tue Aug 30, 2011 12:08 am

i have just created my first dynamic (one side) ipsec connection, however all i can get through the tunnel is icmp (ping requests), do i need to add firewall rules or nat. I came from a pfsense box scenario and thought id try a real router. I have already added nat bypass on both sides and put them at the top, i have two rb750's running 5.6

Thanks for your time.
 
ditonet
Forum Veteran
Forum Veteran
Posts: 835
Joined: Mon Oct 19, 2009 12:52 am
Location: Europe/Poland/Konstancin-Jeziorna
Contact:

Re: Mikrotik IPSEC connection

Tue Aug 30, 2011 1:03 am

In 'Firewall/Filter' add accept rule for UDP/500, for Protocol 50 (ipsec-esp) and for Protocol 51 (ipsec-ah), in 'input' and 'output' chains.

HTH,

Who is online

Users browsing this forum: Google [Bot], sebi099 and 83 guests