Rexxer

Some tips for me and other

IPSEC between PFSence and Mikrotik + NAT like remote host is in the LAN

The PFSence side:

Allow all traffic from the remote host.

Create the IPSEC connection.

pf3pf4

Allow all traffic on the IPSEC interface.

pf5

Create a Virtual IP for internal host (it is remote host now).

pf2Create the NAT rule for this host.

pf1

The Mikrotik side:

Allow all traffic from the remote host.

micr1

Create the IPSEC connection.

micr5micr7micr6micr4micr3

Create the skip-NAT rule for the remote network.

micr2Create and schedule a script to monitor IPSEC and flush all the proposals

micr8

 

 

Comments are currently closed.