With this policy ipsec works as i want. I can route traffic with nat policy..
When ipsec policy enable;
I cant connect mikrotik from 10.10.5.1.. i need to use mac adress for connection.
Mikrotik DNS server is not working.
When I disable ipsec policy, everything goes back to normal… As far as I understand, my problem is 0.0.0.0 in ipsec policy. But i need this for routing.