so i am trying my hands on configuring vpn and vlans. i have success fully done both and each works perfectly and separately. But i want to be able to pass the VLans traffic through the vpn from remote when i am connected to the vpn. i need help on how to do the routing and firewall configuration.
Any help please
You’d have to be more specific. Draw a diagram of what you want to get.
In the “simple” variant - you can just create a separate interface list, add your VPN interface and VLAN interface to it. And allow traffic movement within this list. It might be necessary to add some routing rules.
Besides network diagram any advice has to be predicated upon a thorough understanding of the requirements, not parts thereof.
A, identify all the devices, users including the admin
B. identify the traffic they need to be able to execute
But what i am trying to do is that, my client have multiply sites where they have cctv (NVR with Cams) installed. All the site have different networks. But they have a main control room at one of the sites and they want to try and bring in all the other sites so that they can view and monitor from this control room.
Now, the contractor handling the CCTV installation was advised by someone to use mikrotik rb3011 and with that he can create vpn and vlans to map to each site in other to be able to get the other cams from the other sites in.
That is where I come in.
I have created the vpns at each site successfully and i am able to connect to the RB’s from each site at the control center. Now, the contractor’s request is for me to create vlans and map or create tunnels to each site from the control center passing traffic to each site so that they have access to the NVR’s or better still, when they place an NVR with more channels at the control center, they can have all the cameras from the various site showing up at the control center for easy monitoring.
Thats the scope of my task and i dont know how to go about it. i have vlans working at each site and vpns working as well, but I can’t figure how to merge them at the control center.
This should be a fairly simple hub and spoke setup for VPN. You just need to decide that’s what you’re going to do and how you’re going to implement it. Is this going to be a constant video feed or only on demand?
As others have said, start with a diagram, even a rough pencil on paper one and that will help you work through what you want to achieve. What you want is doable - even without VLAN.