M
M
Max2015-04-30 12:47:05
Mikrotik
Max, 2015-04-30 12:47:05

Mikrotik, vlan-trunk via l2tp?

Hello!
A little stumped, there is the following scheme:
(l2)[client remote office]<==>[remote mikrotik] <= mobile internet => [mikrotik ccr] <= LAN => [switch] <=LAN=> [local client](l2)
Details:
1) vlan trunk comes from [local client] to ccr
2) a bridge is created on ccr, vlan (hung on the interface facing [switch]) and l2tp-account (through profile)
3) to the bridge l2tp account and vlan are added
4) a bridge is created on the [client remote office] side, a port (or ports) and an l2tp account (through a profile) are added
5) a single l2 space is obtained between [local client] and [client remote office], ports in the direction of client sites they look like an access-port
Everything works well, but ....
There was a need to "forward" between [local client] and [client remote office] a vlan trunk with several vlans.
Tell me how to do this, I do not really understand?
Logic suggests that you need to attach vlans to bridges, instead of including them with ports, on both sides, but then you won’t be able to attach vlan in ccr to an interface that looks towards [switch] because it is already in another bridge. vlan can be hung only on 1 interface.

Answer the question

In order to leave comments, you need to log in

2 answer(s)
C
Cool Admin, 2015-04-30
@ifaustrue

In general, if the tunnel is really l2, then, logically, you need to create VLANs on the bridges. Then frames with tags will go inside this single l2. But given all the twists and turns with crs and trunks inside the local network, I find it difficult to answer more specifically what and how to configure.

L
lexalex, 2015-05-05
@lexalex

Since you are driving l2 traffic through the tunnel, instead of one vlan, add a microtik port to the bridge, to which the switch is connected on both sides, especially since it is a trunk one and everything will be ok.
I'll be boring. The optimal solution would be to terminate all vlans on routers and route them to the tunnel. This will allow you to more easily control traffic with a firewall.

Didn't find what you were looking for?

Ask your question

Ask a Question

731 491 924 answers to any question