IPSec communication between MTs

Hello all,

I have 2 masquerade MTs with a VPN stablished.
The VPN is working great for all the machines except for the MTs, I can’t communicate from the MTs to the other VPN side. It seems that the MT is trying to route through the default route and not the VPN tunnel.
Some Idea?

Thanks,
Luis

IPSec cannot be NATed
you can craete IPSec tunnel from one real ip to another in tunnel mode, with RB500 you can get about 12Mbps

The actual configuration is:

LAN - MT - INTERNET - MT - LAN

Communications between lans works fine, but not between MT and the other side lan.
Yes, it is working in tunnel mode.

In the set-up like that it is imposible that your WAN interfaces to se local interfaces, because the policy is created only for the local interfaces, and only local interfaces can see each other. If you have tried to ping from the router, be sure that you use src-address address of your local interface otherwise it will fail.

Regards.

Faton