Community discussions

MikroTik App
 
emoney
just joined
Topic Author
Posts: 2
Joined: Mon Oct 26, 2015 5:44 am

Split tunnel for site-to-site vpn

Mon Oct 26, 2015 5:57 am

Hi everyone, I need some help with a site-to-site vpn. I would like only traffic destined for the vpn to use the tunnel, otherwise go out their Internet connection. The VPN works works great but would like Internet traffic to go our using their local connection.

I've googled the topic but only managed to find 'Road Warrior' setup / configurations where you tweak the client, can anyone provide any site-to-site configuration help?

Thanks
E
 
User avatar
StubArea51
Trainer
Trainer
Posts: 1739
Joined: Fri Aug 10, 2012 6:46 am
Location: stubarea51.net
Contact:

Re: Split tunnel for site-to-site vpn

Mon Oct 26, 2015 10:35 pm

If you're using IPSEC, this is pretty straightforward as you can define what source/destination, port and protocol are used for the tunnel. Anything that falls outside of that is not encrypted.

IPsec policy is where the traffic you need encrypted is defined (commonly referred to as 'interesting traffic')

http://wiki.mikrotik.com/wiki/Manual:IP/IPsec#Policy
 
emoney
just joined
Topic Author
Posts: 2
Joined: Mon Oct 26, 2015 5:44 am

Re: Split tunnel for site-to-site vpn

Fri Oct 30, 2015 6:09 am

thank you for your help.

Who is online

Users browsing this forum: Google [Bot], Kanzler, matiss, rplant and 123 guests