Here is my configuration. I am learning routes from gre/ipsec tunnels via OSPF but cannot reach them. Please help me out. I have PCC with port forwarding configured.
# jan/09/2021 00:40:36 by RouterOS 6.46.8
# software id = 7HJJ-N0I9
#
# model = RouterBOARD 3011UiAS
# serial number = 783D066965C5
/caps-man channel
add band=2ghz-onlyn name=2.4 tx-power=27
add band=5ghz-n/ac name=5 tx-power=27
/interface bridge
add name=LAN
add admin-mac=6C:3B:6B:69:69:69 auto-mac=no name=WAN
add name=WLAN
add name=loopback
/interface ethernet
set [ find default-name=ether1 ] comment="Alliance bypass"
set [ find default-name=ether2 ] comment=SSWL mac-address=6C:3B:6B:96:96:96
set [ find default-name=ether5 ] comment="Data Center"
set [ find default-name=ether10 ] comment=Wifi
/interface l2tp-server
add name=Nabanna-PoP user=nabanna
/interface gre
add !keepalive local-address=10.28.115.18 name=Bally-PoP remote-address=\
172.19.65.221
add !keepalive local-address=10.28.115.18 name=Dumdum-PoP remote-address=\
10.14.94.232
add !keepalive local-address=10.28.115.18 name=Madhyamgram-PoP \
remote-address=10.14.96.109
add !keepalive local-address=10.28.115.18 name=ifog remote-address=\
193.148.249.44
/caps-man security
add authentication-types=wpa-psk,wpa2-psk encryption=aes-ccm \
group-encryption=aes-ccm name=wifikey
/caps-man configuration
add channel=2.4 country=taiwan distance=indoors installation=indoor mode=ap \
multicast-helper=full name=wifi2.4 security=wifikey ssid="Kalpak AP"
add channel=5 country=taiwan distance=indoors installation=indoor mode=ap \
multicast-helper=full name=wifi5 security=wifikey ssid="Kalpak AP 5GHz"
/caps-man interface
add configuration=wifi2.4 disabled=no l2mtu=1600 mac-address=\
B8:69:F4:20:C6:BA master-interface=none name=wifi2.4 radio-mac=\
B8:69:F4:20:C6:BA radio-name=B869F420C6BA
add configuration=wifi5 disabled=no l2mtu=1600 mac-address=B8:69:F4:20:C6:BB \
master-interface=none name=wifi5 radio-mac=B8:69:F4:20:C6:BB radio-name=\
B869F420C6BB
/interface list
add name=lans
/interface wireless security-profiles
set [ find default=yes ] supplicant-identity=MikroTik
/ip ipsec policy group
add name=group1
/ip ipsec profile
set [ find default=yes ] dh-group=modp2048 enc-algorithm=aes-256 \
hash-algorithm=sha256
add dh-group=modp2048 enc-algorithm=aes-256 hash-algorithm=sha256 name=\
pop-profile
/ip ipsec peer
add address=172.19.65.221/32 exchange-mode=ike2 local-address=10.28.115.18 \
name=bally profile=pop-profile
add address=10.14.96.109/32 exchange-mode=ike2 local-address=10.28.115.18 \
name=madhyamgram profile=pop-profile
add address=10.14.94.232/32 exchange-mode=ike2 local-address=10.28.115.18 \
name=dumdum profile=pop-profile
/ip ipsec proposal
set [ find default=yes ] auth-algorithms=sha256 enc-algorithms=aes-256-cbc \
lifetime=8h pfs-group=modp2048
add auth-algorithms=sha256 enc-algorithms=aes-256-cbc lifetime=8h name=\
pop-proposal pfs-group=modp2048
/ip pool
add name=dhcp_pool0 ranges=172.22.146.2-172.22.146.62
add name=dhcp_pool1 ranges=172.22.146.66-172.22.146.126
/ip dhcp-server
add address-pool=dhcp_pool0 disabled=no interface=LAN lease-time=1w name=\
dhcp1
add address-pool=dhcp_pool1 disabled=no interface=WLAN lease-time=1w name=\
dhcp2
/routing bgp instance
set default as=213326 router-id=192.168.254.1
/routing ospf area
add area-id=0.0.0.1 name=area1
add area-id=0.0.0.2 name=area2
add area-id=0.0.0.3 name=area3
add area-id=0.0.0.4 name=area4
/routing ospf instance
set [ find default=yes ] router-id=192.168.254.1
/snmp community
add addresses=::/0 name=corerouter
/caps-man manager
set enabled=yes upgrade-policy=suggest-same-version
/interface bridge port
add bridge=WLAN interface=wifi2.4
add bridge=WLAN interface=wifi5
add bridge=LAN interface=ether7
add bridge=LAN interface=ether8
add bridge=LAN interface=ether9
add bridge=LAN interface=ether6
add bridge=WAN interface=ether1
add bridge=WAN interface=sfp1
/ip neighbor discovery-settings
set discover-interface-list=all
/interface bridge vlan
add untagged=sfp1,ether2,ether1 vlan-ids=10
add tagged=ether2 untagged=ether3 vlan-ids=20
/interface l2tp-server server
set allow-fast-path=yes enabled=yes use-ipsec=yes
/interface list member
add interface=WLAN list=lans
add interface=LAN list=lans
/ip address
add address=192.168.254.1 interface=loopback network=192.168.254.1
add address=172.22.146.1/26 interface=LAN network=172.22.146.0
add address=172.22.146.65/26 interface=WLAN network=172.22.146.64
add address=192.168.168.21/30 interface=Dumdum-PoP network=192.168.168.20
add address=192.168.168.5/30 interface=Madhyamgram-PoP network=192.168.168.4
add address=192.168.168.9/30 interface=Bally-PoP network=192.168.168.8
add address=192.168.72.1/23 interface=ether5 network=192.168.72.0
add address=10.28.115.18/30 interface=WAN network=10.28.115.16
add address=172.28.55.3/24 interface=ether2 network=172.28.55.0
/ip cloud
set ddns-enabled=yes
/ip dhcp-server network
add address=172.22.146.0/26 gateway=172.22.146.1
add address=172.22.146.64/26 gateway=172.22.146.65
/ip dns
set allow-remote-requests=yes servers=192.168.72.72,192.168.73.73
/ip firewall mangle
add action=mark-connection chain=input in-interface=WAN new-connection-mark=\
abspl_out_conn passthrough=yes
add action=mark-routing chain=output connection-mark=abspl_out_conn \
new-routing-mark=abspl_out_traffic passthrough=no
add action=mark-connection chain=input in-interface=ether2 \
new-connection-mark=sswl_out_conn passthrough=yes
add action=mark-routing chain=output connection-mark=sswl_out_conn \
new-routing-mark=sswl_out_traffic passthrough=no
add action=mark-connection chain=forward connection-state=new in-interface=\
WAN new-connection-mark=abspl_out_pfw passthrough=no
add action=mark-routing chain=prerouting connection-mark=abspl_out_pfw \
in-interface-list=lans new-routing-mark=abspl_out_traffic passthrough=no
add action=mark-connection chain=forward connection-state=new in-interface=\
ether2 new-connection-mark=sswl_out_pfw passthrough=no
add action=mark-routing chain=prerouting connection-mark=sswl_out_pfw \
in-interface-list=lans new-routing-mark=sswl_out_traffic passthrough=no
add action=accept chain=prerouting in-interface=WAN
add action=accept chain=prerouting in-interface=ether2
add action=mark-connection chain=prerouting dst-address-type=!local \
new-connection-mark=abspl_conn passthrough=yes per-connection-classifier=\
src-address-and-port:2/0
add action=mark-connection chain=prerouting dst-address-type=!local \
new-connection-mark=sswl_conn passthrough=yes per-connection-classifier=\
src-address-and-port:2/1
add action=mark-routing chain=prerouting connection-mark=abspl_conn \
in-interface-list=lans new-routing-mark=to_abspl passthrough=yes
add action=mark-routing chain=prerouting connection-mark=sswl_conn \
in-interface-list=lans new-routing-mark=to_sswl passthrough=yes
/ip firewall nat
add action=masquerade chain=srcnat out-interface=WAN
add action=masquerade chain=srcnat out-interface=ether2
add action=dst-nat chain=dstnat dst-address=10.28.115.18 dst-port=4789 \
protocol=udp to-addresses=192.168.72.8 to-ports=4789
/ip ipsec identity
add peer=dumdum policy-template-group=group1 remote-id=ignore
add peer=madhyamgram policy-template-group=group1
add peer=bally policy-template-group=group1
/ip ipsec policy
add dst-address=10.14.94.232/32 peer=dumdum proposal=pop-proposal protocol=\
gre src-address=10.28.115.18/32
add dst-address=10.14.96.109/32 peer=madhyamgram proposal=pop-proposal \
protocol=gre src-address=10.28.115.18/32
add dst-address=172.19.65.221/32 peer=bally proposal=pop-proposal \
src-address=10.28.115.18/32
/ip route
add distance=1 gateway=10.28.115.17 routing-mark=abspl_out_traffic
add distance=1 gateway=172.28.55.1 routing-mark=sswl_out_traffic
add check-gateway=ping distance=1 gateway=10.28.115.17 routing-mark=to_abspl
add check-gateway=ping distance=2 gateway=172.28.55.1 routing-mark=to_sswl
add check-gateway=ping distance=1 gateway=10.28.115.17
add check-gateway=ping distance=2 gateway=172.28.55.1
/ip route rule
add action=lookup-only-in-table dst-address=172.22.146.64/26 src-address=\
172.22.146.0/26 table=main
add action=lookup-only-in-table dst-address=172.22.146.0/26 src-address=\
172.22.146.64/26 table=main
/ip service
set telnet disabled=yes
set ftp disabled=yes
set ssh disabled=yes
set www-ssl disabled=no
set api disabled=yes
set api-ssl disabled=yes
/ip upnp
set enabled=yes
/ip upnp interfaces
add interface=WAN type=external
add interface=LAN type=internal
add interface=WLAN type=internal
/ipv6 address
add address=2a0c:9a40:100f:45e::2 advertise=no interface=ifog
add address=2a0f:9400:8017::1 advertise=no interface=loopback
add address=2a0f:9400:8017:69::1 advertise=no interface=Madhyamgram-PoP
add address=2a0f:9400:8017:20::1 advertise=no interface=Dumdum-PoP
/mpls ldp
set enabled=yes lsr-id=192.168.254.1 transport-address=192.168.254.1
/mpls ldp interface
add interface=Dumdum-PoP
add interface=Madhyamgram-PoP
add interface=Nabanna-PoP
/ppp secret
add local-address=192.168.168.25 name=nabanna profile=default-encryption \
remote-address=192.168.168.26 service=l2tp
add local-address=192.168.168.29 name=abhishek1 profile=default-encryption \
remote-address=192.168.168.30 service=l2tp
add local-address=192.168.168.29 name=abhishek2 profile=default-encryption \
remote-address=192.168.168.31 service=l2tp
/routing bgp network
add network=2a0f:9400:8017::/48 synchronize=no
add network=2a0e:b107:9e0::/46 synchronize=no
add network=2a0e:b107:9e4::/46 synchronize=no
add network=2a0e:b107:9e8::/46 synchronize=no
add network=2a0e:b107:9ec::/46 synchronize=no
add network=2a0e:b107:b00::/46 synchronize=no
add network=2a0e:b107:b04::/46 synchronize=no
add network=2a0e:b107:b08::/46 synchronize=no
add network=2a0e:b107:b0c::/46 synchronize=no
/routing bgp peer
add address-families=ipv6 name=ifog out-filter=ix-out remote-address=\
2a0c:9a40:100f:45e::1 remote-as=34927
/routing filter
add action=accept chain=ix-out prefix=2a0f:9400:8017::/48
add action=accept chain=ix-out prefix=2a0e:b107:9e0::/46
add action=accept chain=ix-out prefix=2a0e:b107:9e4::/46
add action=accept chain=ix-out prefix=2a0e:b107:9e8::/46
add action=accept chain=ix-out prefix=2a0e:b107:9ec::/46
add action=accept chain=ix-out prefix=2a0e:b107:b00::/46
add action=accept chain=ix-out prefix=2a0e:b107:b04::/46
add action=accept chain=ix-out prefix=2a0e:b107:b08::/46
add action=accept chain=ix-out prefix=2a0e:b107:b0c::/46
add action=discard chain=ix-out
/routing igmp-proxy interface
add interface=WAN upstream=yes
add interface=Nabanna-PoP
add interface=LAN
add interface=Dumdum-PoP
add interface=Madhyamgram-PoP
add interface=WLAN
add interface=ether2
/routing ospf interface
add interface=loopback network-type=broadcast
add interface=Dumdum-PoP network-type=broadcast
add interface=Madhyamgram-PoP network-type=broadcast
add interface=Nabanna-PoP network-type=broadcast
add interface=Bally-PoP network-type=broadcast
add interface=LAN network-type=broadcast
add interface=WLAN network-type=broadcast
add interface=ether5 network-type=broadcast
/routing ospf network
add area=backbone network=192.168.254.1/32
add area=backbone network=172.22.146.0/26
add area=backbone network=172.22.146.64/26
add area=area1 network=192.168.168.20/30
add area=area2 network=192.168.168.4/30
add area=area3 network=192.168.168.24/30
add area=area4 network=192.168.168.8/30
add area=backbone network=192.168.72.0/23
/snmp
set contact="Kalpak Mukhopadhyay +91 7059787415" enabled=yes location=Sodpur \
trap-community=corerouter trap-interfaces=all trap-version=2
/system clock
set time-zone-name=Asia/Kolkata
/system identity
set name=core.kalpak.net.in
/system logging
add disabled=yes topics=ipsec,!packet
/system ntp client
set enabled=yes primary-ntp=10.28.115.17 secondary-ntp=172.28.55.1
/system package update
set channel=long-term
/system routerboard settings
set auto-upgrade=yes
/tool graphing interface
add store-on-disk=no
/tool netwatch
add host=192.168.168.26