Community discussions

MikroTik App
 
AlekseiBird
just joined
Topic Author
Posts: 2
Joined: Mon Feb 18, 2019 9:45 am

Mikrotik и Kerio, IPsec connection

Mon Feb 18, 2019 9:59 am

Hi!
Here is the network diagram:
shem.png
Some explanations: ISP1 is MGTS, gray IP, ISP2 is another provider that gives a white IP (Kerio is connected to it), load balancing is configured on microtic, because two providers, PCC method.
IPsec connection is established. But I can ping only in one direction, namely, from 19 networks in 5. But on the contrary, there is no way for pings (.
Log of this rule:
add action = accept chain = srcnat dst-address = 192.168.19.0 / 24 src-address = 192.168.5.0 / 24
shows:
4.png
Here I am trying to ping the Kerio gateway with Mikrotik. A feeling that the traffic from the network 5 wrapped somewhere not amplitude.
You do not have the required permissions to view the files attached to this post.
 
User avatar
mrz
MikroTik Support
MikroTik Support
Posts: 7054
Joined: Wed Feb 07, 2007 12:45 pm
Location: Latvia
Contact:

Re: Mikrotik и Kerio, IPsec connection

Mon Feb 18, 2019 11:04 am

If it is site to site, then make sure that traffic is not NATed or fasttracked, see documentation for more info:

https://wiki.mikrotik.com/wiki/Manual:I ... ack_Bypass
 
AlekseiBird
just joined
Topic Author
Posts: 2
Joined: Mon Feb 18, 2019 9:45 am

Re: Mikrotik и Kerio, IPsec connection

Mon Feb 18, 2019 2:31 pm

I have already checked the rules several times, and I don’t know where the problem may be
Nat
Mikrotik-nat.png
Filter
Mikrotik-filter.png
You do not have the required permissions to view the files attached to this post.

Who is online

Users browsing this forum: gabeluci, h1ghrise, JazzMaster, parm and 60 guests