Hi!
I'm having multiple IPSec "Active Peers", and they are all getting their dynamic IPs from a shared pool.
There is a way to differentiate them, by checking their ID, based on that it's obvious on which IP belongs to which client.
Can I somehow add the Peer ID to firewall rules (mangles)? I.e. mangling only those packets which are sourcing from this XY IPSec peer ID?
Or I have to use some scripts to check the active peers' ids, and modify my mangle (/ update a firewall address list)?
(Can I ask MikroTik to run my script after an IPSec connection is established / disconnected?)
Thank you!