A
A
avavdoshin2018-10-04 23:44:11
Mikrotik
avavdoshin, 2018-10-04 23:44:11

How to make computers on the local network see requests coming via vpn as local?

Hello, friends!
I ask for help in a somewhat non-trivial task.
Introductory - there is a network 192.168.2.x, in it - a gateway to the Internet 192.168.2.1, a number of servers, DHCP / AD / and so on, NAS.
Mikrotik is connected to the network with an address looking at the local area, for example, 192.168.2.5. It raised the LTE modem interface with backup internet and vpn l2tp through this modem to a microtic in another office with addressing 192.168.1.x.
All this is needed NOT for permanent communication between offices, NOT as a backup Internet channel, but for the sole purpose of having the ability to reach servers via ssh / rdp in case of emergency if the main gateway fails for one reason or another.
The crux of the matter is that I can get from the 192.168.1.x network only to those computers on the 192.168.2.x network that have an additional route hardcoded - 192.168.1.0/24 gw 192.168.2.5. This is inconvenient for a number of reasons, in particular because there are a lot of servers, they are configured by different people (they can forget) and there are NAS in which you cannot register an additional route, but you need access to them in an emergency. It is also not an option to register a route on the main gateway 192.168.2.1 - a channel with additional Internet is just needed in case you need access to servers when the main channel fails (including the physical failure of the gateway).
Tell me, is it possible to somehow organize such a feint with ears on Mikrotik so that there is no need to prescribe a route to 192.168.1.x everywhere? So that machines inside the 192.168.2.x network see the request passing through the Mikrotik, not as sent from 192.168.1.x, but as sent from 192.168.2.5?
Thanks in advance for any help in resolving the issue or any hints leading in the right direction.

Answer the question

In order to leave comments, you need to log in

1 answer(s)
M
Maxim, 2018-10-05
@avavdoshin

Try adding a masquerade rule.

Didn't find what you were looking for?

Ask your question

Ask a Question

731 491 924 answers to any question