Does this mean that these IP addresses were connected to my network and used my network?

Does this mean that these IP addresses were connected to my network and used my network?
Are these logged in because I doubt that they do not have my login.
I use RouterOS 6.44.5 long term.


jul/26 19:13:41 ovpn,info TCP connection established from 67.21.36.2 
jul/26 20:04:38 ovpn,info TCP connection established from 3.14.254.187 
jul/26 20:45:24 ovpn,info TCP connection established from 169.197.108.30 
jul/26 21:25:04 ovpn,info TCP connection established from 92.118.161.49 
jul/27 02:24:24 ovpn,info TCP connection established from 118.193.31.180 
jul/27 02:24:25 ovpn,info TCP connection established from 118.193.31.180 
jul/27 02:24:31 ovpn,info TCP connection established from 118.193.31.180 
jul/27 02:24:35 ovpn,info TCP connection established from 118.193.31.180 
jul/27 02:24:41 ovpn,info TCP connection established from 118.193.31.180 
jul/27 02:24:42 ovpn,info TCP connection established from 118.193.31.180 
jul/27 02:25:48 ovpn,info TCP connection established from 128.14.209.234 
jul/27 02:56:04 ovpn,info TCP connection established from 41.65.68.227 
jul/27 03:03:44 ovpn,info TCP connection established from 162.209.239.1 
jul/27 03:03:44 ovpn,info TCP connection established from 162.209.239.1 
jul/27 03:03:45 ovpn,info TCP connection established from 162.209.239.1 
jul/27 03:03:45 ovpn,info TCP connection established from 162.209.239.1 
jul/27 03:03:46 ovpn,info TCP connection established from 162.209.239.1 
jul/27 03:03:46 ovpn,info TCP connection established from 162.209.239.1 
jul/27 03:45:48 ovpn,info TCP connection established from 137.226.113.9 
jul/27 06:02:38 ovpn,info TCP connection established from 184.105.139.70

tcp connection is the first step in establishing a vpn session. Then comes authentication of the server and user, and finally ip layer configuration.
this just means that somebody established the first step.

Thank you for your reply Sebastia.
It reassures me that they have not yet entered my network.

Look at my post here:
http://forum.mikrotik.com/t/black-list-for-failed-login-to-ipsec-vpn/130090/2

I did make a script that take those IPSec testers and back lists them for 30 day.