Community discussions

MikroTik App

Search found 5 matches

by trainwreck
Sat Jun 04, 2022 4:52 pm
Forum: General
Topic: Why isn't this site to site IPsec coming up?
Replies: 1
Views: 255

Why isn't this site to site IPsec coming up?

As an aside, this has been one of the more painful experiences in networking I have had, and I've worked with all manner of Cisco ISR/ASR/ASA/FTD, Fortigate, Juniper, Ubiquiti. etc....... Trying to stand up an IKEv1 site to site using certificates from a Mikrotik Hex S to a Cisco RV345P. The Cisco s...
by trainwreck
Tue Nov 24, 2015 9:42 am
Forum: General
Topic: OpenVPN connection with certificates authorisation
Replies: 12
Views: 16762

Re: OpenVPN connection with certificates authorisation

Nah, you won't be able to do it. Not at least without what seems like a significant performance hit. In your linked thread, one post tells you that you can use the "Metarouter" feature to enable OpenVPN with UDP, but be aware that the router's performance will be noticeably less. I'm not s...
by trainwreck
Thu Nov 19, 2015 8:13 am
Forum: General
Topic: Force nat-traversal (NAT-T UDP) for IPsec tunnels?
Replies: 0
Views: 757

Force nat-traversal (NAT-T UDP) for IPsec tunnels?

On my ISP (a large U.S.A cable company), I find that I get much improved performance over my site-to-site IPsec tunnels if I force NAT traversal UDP encapsulation. Is there a way to do this on Mikrotik?
by trainwreck
Sat Nov 07, 2015 9:08 am
Forum: General
Topic: IPv6 traffic & fasttrack forwarding......
Replies: 1
Views: 1239

IPv6 traffic & fasttrack forwarding......

(a subset from my previous unanswered question) When enabling the fasttrack forwarding through the firewall, I notice that only the "ip firewall filter" (meaning the IPv4 firewall) has the "action=fasttrack-connection" available. Are there plans to eventually allow IPv6 to use th...
by trainwreck
Thu Oct 29, 2015 1:47 am
Forum: General
Topic: Fasttrack and VRF questions
Replies: 0
Views: 827

Fasttrack and VRF questions

Hello all, first post. So I recently purchased an RB2011UiAS-RM rackmount unit. I have configured the router to have 2 distinct WANs and 2 LANs, with each LAN being NATted out the corresponding WAN. Basically, ETH1 is WAN1, ETH2-5 is LAN1, ETH6 is WAN2, and ETH7-10 is LAN2. I have done this by addin...