Add a rule on your forward chain that allows 192.168.100.0/24 to talk to 192.168.1.0/24 and place that at the top of the forward chain.
So I did, and now I see traffic counter going up when trying to connect to a VNC, but the connection times out. When trying to connect via the local network everything works just fine.
anymore suggestions?
Upon rereading the thread, I noticed I missed some rules in my export. These rule send address list "location2BRIDGE" through a VPN. The computer I try to reach is on this list.
/ip firewall mangle print
0 chain=prerouting action=mark-routing new-routing-mark=VPNbridge
passthrough=yes src-address-list=location2BRIDGE
dst-address-list=!NoMangleMark log=no log-prefix="MANGLE"
NoMangleMark list contains 192.168.1.0/24
/ip firewall nat print
;;; VPN bridge
chain=srcnat action=masquerade src-address=192.168.1.0/24
out-interface=location2BRIDGE log=no log-prefix=""
When I tried to make a NAT rule to portforward to the specific computer, I still could not connect from the outside, because the computer's outgoing traffic is marked to go through the "location2BRIDGE" and not through PPPOE.
chain=dstnat action=dst-nat to-addresses=192.168.10.35 to-ports=5900
protocol=tcp dst-address=WAN-IP in-interface=pppoe packet-mark=""
dst-port=5900 log=yes log-prefix=""
So maybe this is related to the VPN problem.
I need the local computer to be able to reach the other network via VPN, but I also need this computer to be accessible from the outside. preferably also through a VPN