Documente Academic
Documente Profesional
Documente Cultură
Assumptions:
Router 1 conguration
/interface ipip
add local-address=1.1.1.1 mtu=1480 name=tunnel_test remote-address=2.2.2.2
comment="" disabled=no
/ip address
add address=10.10.1.21/30 broadcast=10.10.1.23 comment="" disabled=no
interface=tunnel_test network=10.10.1.20
3. Add route:
/ip route
add distance=1 dst-address=192.168.0.0/24 gateway=10.10.1.22 scope=30
target-scope=10 comment="" disabled=no
At this point we have s functional IPIP tunnel between two routers (assuming that rst three
conguration steps are performed
on the second router too), and now we are going to add IPsec transport.
Router 2 conguration
/interface ipip
add local-address=2.2.2.2 mtu=1480 name=tunnel_test remote-address=1.1.1.1
comment="" disabled=no
/ip address
add address=10.10.1.22/30 broadcast=10.10.1.23 comment="" disabled=no
interface=tunnel_test network=10.10.1.20
3. Add route:
/ip route
add distance=1 dst-address=192.168.1.0/24 gateway=10.10.1.21 scope=30
target-scope=10 comment="" disabled=no
You should be able to ping 192.168.1.1 (private IP of the Router 2) from Router 1, and 192.168.0.1
(private IP of the Router 1) from Router 2.
From:
http://wiki.pcsinfo.hr/ - The Book
Permanent link:
http://wiki.pcsinfo.hr/doku.php/networking/mikrotik/ipip_with_ipsec_transport_mikrotik_to_mikrotik