Route based IPSec MKT-Sonicwall

Hi,

currently we have policy based ipsec between sonicwall and MKT. Now we want to changed that with route based. Is any of you done this kind of the setup? MKT support gre and ipip and sonicwall in my opinion doesnt support that features, i found only this for sonicwall:

Do SonicWALL security appliances support GRE?
A: All versions of SonicOS Enhanced can pass GRE across its interfaces (if configured in the firewall rules to do so), but cannot initiate or terminate GRE tunnels. SonicOS Standard and firmware 6.x cannot pass GRE and cannot initiate or terminate GRE tunnels. There are no plans for any version of SonicWALL OS to initiate or terminate GRE tunnels.

I will also put this on sonicwall forum :smiley:

I also find this one:

Feature/Application:
How to Configure a Tunnel Interface VPN (Route-based VPN) between two SonicWALL UTM appliances.
Background:
The advantages of Tunnel Interface VPN (Route-Based VPN) between two SonicWALL UTM appliances include:

  1. the network topology configuration is removed from the VPN policy configuration.
  2. More flexibility on how traffic is routed. With this feature, users can now define multiple paths for overlapping networks over a clear or redundant VPN.
    Please Note: Route-based VPN using a tunnel interface is not supported with 3rd party devices

Could you please help and send me your SonicWALL and Mikrotik IPSec configurations?
I’ve can’t seem to make them negotiate and establish a tunnel. Sometimes it works, sometime it doesn’t.
Sometime there’s only one way communication etc.

Thanks. :slight_smile:

hi,

i am facing the same problem and breaking :blush: my head for past 3 days… without success…

please help