V
V
valkiry992021-11-25 16:14:16
VPN
valkiry99, 2021-11-25 16:14:16

VPN matryoshka. How to defeat IPSec?

The task is to make a VPN matryoshka doll in the form
of Mikrotik connects to the VPN server via IPSec ikev2 and all equipment in the Mikrotik network (ethernet connections) go with the external IP of the VPN service
On the computer, turn on the Windows VPN application (ProtonVPN, NordVPN) and also connect to the VPN service. I tried all available protocols: WireGuard, OpenVPN - UDP, OpenVPN - TCP

Included we have
Mikrotik RB750Gr3 6.48.3
Windows VPN application from various VPN services

Separately, only Mikrotik or only the Windows application work. How to combine?

Answer the question

In order to leave comments, you need to log in

3 answer(s)
A
AlexVWill, 2021-11-25
@AlexVWill

get the corresponding IP address

Corresponding to what? The IP is issued by the DHCP server to which this equipment is connected.
The task is not clear, what is ultimately required from such a connection?
Separately, only Mikrotik or only the Windows application work.

They work together. Mikrotik is Mikrotik and Windows is Windows.

R
rPman, 2021-11-25
@rPman

It all depends on what exactly the vpn is on the windows machine, and what its network requirements are.
For example, if the network to which the first vpn connects is itself a local network, and access to the world is through NAT, then some types of vpn ip sec or pptp) may require appropriate support on the router of this network
ps openvpn will work even if the network is behind NAT, without GRE support (required for pptp) and even using udp (or tcp as usual), multilayer vpn cascading is possible with it

C
CityCat4, 2021-11-26
@CityCat4

Nichrome is not clear, as usual, except that, as usual, it is believed that a VPN within a VPN will give more anonymity :) without specifying against whom :)

Mikrotik connects to VPN server

Well, it connects, yes. How, under what protocol? Mikrotik has at least three of them - pptp, ovpn, ipsec (esp)
all equipment in the Mikrotik network (ethernet connections) receive the corresponding IP address

Doesn't correlate. Mikrotik has its own dhcp server that distributes addresses regardless of whether there is a vpn or not.
Turn on the Windows VPN application on the computer

On what computer, what application, what protocol?

Didn't find what you were looking for?

Ask your question

Ask a Question

731 491 924 answers to any question