mikrotik sebagai vpn-client
untuk setup baca disini
trus masquerade interfacenya
Code:
IP firewall nat
chain=src-nat out-interface=pptp-client action=masquerade
dan route
Router 2
jika IP VPN server adalah 10.160.1.1/24
Code:
/ip route add dst-address=10.160.1.0/24 interface=pptp-client gateway=10.160.1.1 disabled=no
konversi ke mikrotik
Code:
# route add -net 10.171.0.0 netmask 255.255.255.0 dev ppp0
/ip route add dst-address=10.171.0.0/24 interface=pptp-client disabled=no
# iptables --insert OUTPUT 1 --source 0.0.0.0/0.0.0.0 --destination 10.171.0.0/24 --jump ACCEPT --out-interface ppp0
IP firewall filter
chain=output dst-address=10.171.0.0/24 out-interface=pptp-client action=accept
dan untuk selanjutnya.. pelajari sendiri..
# iptables --table nat --append POSTROUTING --out-interface ppp0 --jump MASQUERADE
# iptables --append FORWARD --protocol tcp --tcp-flags SYN,RST SYN --jump TCPMSS --clamp-mss-to-pmtu