As title suggests I wish to setup a Mikrotik 450g as VPN with maximum security. Therefore allows only a predefined set of users to connect to the internal network and be able to get an IP from it.
Also what are the steps to make the router as secure as possible with syslog active?
Set strong password, disable unneeded services, create good firewall rules.
Use good VPN solution. IPSec and OpenVPN should be okay depending on the settings. Perhaps SSTP in RouterOS 5 will be better.
I have set port forwarding of port 1723 from Modem to 192.168.1.65 and created PPP username on mikrotik with NAT destnat rule to port forward 5900 (for vnc). I cannot connect to VPN from an external computer and also cannot direclty VNC to the public IP of the modem…both approaches dont work.
Still cant connect…what am I missing please? All I want to do is:
1- Connect via VPN to the two computers from an external computer
2- Be able to VNC direclty to the public IP even without connecting to VPN