Why openvpn server on routeros?

What are the usage scenarios?
Was the OpenVPN server only implemented to be able to advertise with it?
Who really uses OpenVPN servers on routeros and for what?
I never considered using it because it doesn’t support UDP.
Now I realize that you can’t push routes.

At the moment I use PFSense boxes for my customers and only because of OpenVPN, would like to sell Mikrotik.
What is the probability that all standard functions will be implemented in the foreseeable future?

Now I have exactly the same purpose in my office as my customers. I would like to set up SIP phones with OpenVPN for my employees, but I can’t do it with Mikrotik because I can’t push routes.

I think the feature should be completely removed to avoid a lot of disappointment.

No, OpenVPN works okay for me. Using TCP gives some speed penalty, not so important for my use case.
Missing support for route pushing can be easily bypassed in the user policies.

OpenVPN server will be improved with RouterOS V7.1, which is, however, not ready yet.
Wireguard support is added there, too.

Exactly what I wrote here: http://forum.mikrotik.com/t/feature-request-openvpn-push-route/136947/10

Not really, I’m glad that ROS supports OpenVPN, because this way the VPN endpoint is where my firewall is.

However, to get more features for the same price would always be nice, but it works for me as it is without any problems.
And improvement will come, not so bad.

Any particular reason you’re insisting on OpenVPN ?
Considering it lacks hardware acceleration among other things.

Yes, I have to keep existing tunnels for legacy reasons. If speed is an issue and I would be free to choose, some other VPN types already exist in ROS.

Legacy tunnels can be migrated to something else. I’ve migrated from OpenWrt/OpenVPN to RouterOS/IKEv2 without issues, they ran in parallel until migration was complete.
You just have to take the time to do it. You’ll have to at some point anyway.

Oh really? Migrate a SIP Phone to RouterOS.

Compatibility?


Guys I’d love to migrate to IPsec/Wireguard but there are many reasons that i need multiple OpenVPN servers.
And I’d love to get rid of all pfSense boxes.

If you bought hardware that only supports OpenVPN (and you need the VPN client on the phone for some reason?) go with something that supports OpenVPN properly.
Or find another solution to your setup.

Very wise words. Your answers are very valuable and well thought out.

Surely I won’t buy devices that I can’t use properly with the hardware available already.
Are you using FreePBX? that has OpenVPN server support afaik, you don’t even need to run it on your router.