I have been fighting with getting a BASIC VPN setup on my Mikrotik routers. I can establish the connection (Installed SA’s Shows up as it should) but I Can Not ping or pass traffic!!
Any help would be Greatly Appreciated.
server is :
WAN - 185.69.225.50
LAN - 192.168.10.0/24
client
WAN - 172.52.113.34
LAN - 192.168.30.0/24
The IPSec policy and Peer must be correct if it authenticates and installs the SA’s
I am more wondering if I need to add anything to the Filter/Route/NAT rules
I already have a NAT ruile at 0 as follows
add chain=srcnat dst-address=192.168.30.0/24 src-address=192.168.10.0/24 on the Server
add chain=srcnat dst-address=192.168.10.0/24 src-address=192.168.30.0/24 in the Client
I don;t know if I need any coded Routes or Mangles or anything to pass traffic from 10.0 to 30.0 and vise-a-versa.
Can you please send supout.rif files from both your routers to support@mikrotik.com? You can create supout file with “/system sup-output file=filename” command.
I can ping from any host 192.168.1.0/24 to 10.0.1.1 (LAN IP 2)
And I can ping from any host 10.0.0.0/16 to 192.168.1.1 (LAN IP1)
But I cannot ping from any host 192.168.1.0/24 to any 10.0.1..0/16 host (other that 10.0.1.1)
And I cannot ping from any host 10.0.1..0/16 to any 192.168.1.0/24 host (other that 192.168.1.1)