Mikrotik/IPsec tunelis starp darbu un mājām

From Mana zināšanu grāmata
Revision as of 07:53, 17 June 2018 by Kaspars (talk | contribs)
(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)

 

8a2a081735a3.sn.mynetname.net

 

Mājas Darbs

WAN: 81.198.230.53

LAN: 10.10.10.0/24

WAN: 80.232.197.38

LAN: 10.10.48.0/24

/ip ipsec peer add address=80.232.197.38:500 auth-method=pre-shared-key secret="zebiekste" /ip ipsec peer add address=81.198.230.53:500 auth-method=pre-shared-key secret="zebiekste"
/ip ipsec policy add src-address=10.10.10.0/24 dst-address=10.10.48.0/24 sa-src-address=81.198.230.53 sa-dst-address=80.232.197.38 tunnel=yes action=encrypt proposal=default /ip ipsec policy add src-address=10.10.48.0/24 dst-address=10.10.10.0/24 sa-src-address=80.232.197.38 sa-dst-address=81.198.230.53 tunnel=yes action=encrypt proposal=default
/ip firewall nat add chain=srcnat action=accept place-before=0 src-address=10.10.10.0/24 dst-address=10.10.48.0/24 /ip firewall nat add chain=srcnat action=accept place-before=0 src-address=10.10.48.0/24 dst-address=10.10.10.0/24