IPSec.. not far from goal!! plz help!

I set a IPSEC tunnel between site “Home” and “Home2”.

Home IP is 192.168.1.0/24 router 192.168.1.1
Home IPSec policy: Src 192.168.1.0/24 Dst 192.168.10.0/24

Home2 IP is 192.168.10.0/24 router 192.168.10.1
Home2 IPSec policy: Src 192.168.10.0/24 Dst 192.168.1.0/24

IPSec tunnel is established succesfully.

From computer at Home (192.168.1.100), I can ping 192.168.10.1 192.168.10.100 and everything.
From computer at Home2 (192.168.10.100), I can ping 192.168.1.1, 192.168.1.100 and everything too…

So far, no problem at all (except terminal in 192.168.1.1 can’t ping 192.168.10.1 and vice versa), but it’s a extra point.. no critical for now.

What I need:
I need that the computer 192.168.1.100 at Home use WAN ip from Home2 (now everything in Home have the Home WAN IP (normal)).

I think it’s in ipsec policy but how.. I played with ipsec in safe mode for about 4 hours now and nothing..

Thanks you for any help!!

Chouby :sunglasses:

Add an additional policy for 192.168.1.100 → 0.0.0.0 on Home and 0.0.0.0 → 192.168.1.100 on Home2.

Policy 192.168.1.100 → 0.0.0.0 seem valid, winbox write it in black but 0.0.0.0 → 192.168.1.100 seem invalid, it appear in red

ok.. got it established.. but I’m not on the remote WAN public

I used your solution mixed with new NAT policy to let 192.168.1.100 passthrought the second wan connection.. curl ip.me answer correctly!

Thanks!