Community discussions

MikroTik App
 
taske
just joined
Topic Author
Posts: 3
Joined: Wed Jan 11, 2023 12:33 pm

IPsec NATing

Tue Feb 21, 2023 12:12 am

Hello,
networking beginner here so my question might be very dumb.
I have the following setup:
Fortigate at site A - public ip 1.2.3.4 / internal 192.168.1.0/24
Mikrotik at site B - public ip 5.6.7.8 / internal 192.168.88.0/24
I have a domain controller at site A so i configured an ipsec site to site between the 2 routers. I can see that the IPsec interface is up on Fortigate aswell as it being "established" on mikrotik.
However i still cant ping servers at site A from a computer at site B - is there some additional NAT rules i need to configure?
For what its worth i've already configured a srcnat rule on mikrotik from and placed it above masquerade rule and i've configured a firewall policy on Fortigate saying that anything coming from interface IPSec and outgoing to internal LAN is allowed (all services, all destinations etc) and the reverse rule aswell.
What am i missing? thanks for any advice!
 
RiFF
newbie
Posts: 35
Joined: Sun Apr 29, 2018 9:35 pm

Re: IPsec NATing

Tue Feb 21, 2023 2:19 pm

Hi,
We need to know how looks your IPsec Policy / Firewall Filter rules and NAT. Without that we can only guess what it's going on

Who is online

Users browsing this forum: Bing [Bot], madpierrot, MarkusT and 39 guests