I am sharing my internet with a few customers and now I need to have one more joined and I am needing a bit of help on how to do it. My current setup is not like what i have below. What i have below is how i prefer to have it setup.
My current setup i do have some of them double nat and my vpn's are setup in Router1 and Router1 is doing most of the work for all of them. But because of how i am adding my latest customer i cant do the setup the way i have it now and must result in something like below to keep their networks separate.
Router1 – Rogers Fibre Internet
Some ptp devices
Router2 – My Own Local Network
Router3 – Customer1 Local Network
Router4 – Customer2 Local Network
Router5 – Customer3 Local Network
Router2-5 are plugged into Router1 either directly or with ptp in between and I don’t want them double nat
Router2 has vpn site to site with some other mikrotiks in the world.
Router3 has vpn site to site with some other mikrotiks in the world.
So my question is can I setup Router1 so that it has my config in there to connect to my rogers fiber but no firewall\nat so that its like the child routers (Router2-5) are directly connected to internet?
And so that the vpn configs are in the child routers not Router1
I will also have PBX Phone systems behind the child routers and those will have lots of problems if I have double nat.
Basically I would want Router1 to be the ISP router giving dynamic addresses to child routers but leave everything else to child router.
I own all the equipment and have full control over all of them.
Thank you