Hello mikrotik fans,
There are 2 locations with mikrotiks, they are both connected to each other via L2TP S2S VPN, which is fine.
1st one is running an ovpn server. Openvpn clients can connect to it and access local network, but they cannot access local network in the 2nd one.
Any ideas how to make it work, so the current openvpn clients can see the local network from the 2nd one?
SO are you saying you are using the Connection LT2P as a link between the two MIKROTIKs, which you would like external Users to be able to access after entering Mikrotik Router 1 through the 'other' VPN< the OpenVPN client??
Figure out how to ensure that
a. Clients are allowed from OpenVPN connection on the forward chain to the LT2P tunnel
b. Clients are routable from the OPenVPN connection to the LT2P tunnel and back!
c. Clients after entering the LT2P tunnel and exit the second MT have the forward chain and routing capabilities to have their traffic reach servers and back.
Would be dirt easy with Wireguard! ( By that I mean, one still need to do the hard work of ensuring filter rules, routes etc are still in place ) but in that there would be no need for two different VPNs, as it all could be one with one WIREGUARD interface schema, and even it one used a combination of OpenVPN and Wireguard, I believe (not with certaintly), that overall WG is simpler than L2TP