How do I set static routes for remote networks on IPSEC VPN

Hello Folks,

I have read a bunch of stuff both on forum and on wiki, including http://wiki.mikrotik.com/wiki/Routing_through_remote_network_over_IPsec but cant seem to figure this out.

The question in short, is how do you set static routes in routing tables for networks at the other side of a site to site IPSEC vpn. What would the gateway be? There is no interface or IP address you can point the traffic to.

See attached drawing for a network diagram of what I am trying to achieve.

So what do I put in router 2 as a route for 192.168.128.0/24? The gateway should be router 1 right?

OK, So what is the route that goes in to router 2 for 192.168.128.0? What would the gateway be?

For your answer please assume that IPSEC is working, NAT bypass rules are in place etc. Treat this as a routing question.

Many thanks,

Alex
IPSEC-Site-toSite-Routing.png

Hello,

For IPSEC you can use policy.

http://wiki.mikrotik.com/wiki/Manual:IP/IPsec#Policy

Best regards,

Hello did you find the solution ?

u can added statically in to the policy, check the link above ^