RouterOS 6.30rc11

*) tunnels - eoip,eoipv6,gre,gre6,ipip,ipipv6,6to4 tunnels have new property - ipsec-secret

  • for easy setup of ipsec encryption and authentication;

Can someone elaborate a bit on how to implement this feature?
Does this circumvent any thing in the IPSEC Peer entry?

Thanks,

-tp

I was wondering the same thing.

The same thing as L2TP setting. It adds dynamic ipsec peer and policy based on configured local and remote address and provided ipsec secret.

Thanks Maris.

Very neat feature.

I am still waiting for Mikrotik to have IPSEC VTI support :wink:

So do I understand correctly that I no longer need to configure an IPSEC Policy/Peer under the previous way and only have to select a “IPsec-secret” password on both ends to make the link “encrypted”?

Ditto !!! :sunglasses:

-tp

I had a problem with PPPoE Client on 6.30rc11, my internet speed doped to 1meg on speed test downgrade to 6.30.1 internet speed restored.

Did you wrote to support@mikrotik.com with supout.rif file?

rc13:
*) possibility to disable route cache - improves DDOS attack handling performance up to 2x (note that ipv4 fastpath depends on route cache);

Nope. Will see if 6.30 is working.

From my experience, i can say that you definitely need to report in if you need features from that version. or esle there is a good chance that you will have to wait one more release.