Hi gurus,
Would the below work?
/ip ipsec policy sa-src-address=FQDN1 sa-dst-address=FQDN2
Or must static IP addresses be used? I was hoping to use DDNS.
Thanks!
Hi gurus,
Would the below work?
/ip ipsec policy sa-src-address=FQDN1 sa-dst-address=FQDN2
Or must static IP addresses be used? I was hoping to use DDNS.
Thanks!
Currently only IP addresses are allowed for SA parameters, however we have plans to change this pretty soon.
This would be a blessing. Just do a DNS lookup upon establishing the connection, and another one if it is broken. There are a lot of people with dynamic IPs on both ends.
How can i solve this problem? I have 5 sites and everyone should see each other, but 2 sites have dynamic ip.
Is it possible to do it using a script with the ipcloud dns?
It’s already in current beta, instead of entering SA addresses manually, policy is attached to peer and takes addresses from there. But using beta might be a little risky.