« Mikrotik : Tunnel GRE » : différence entre les versions

De www.yakakliker.org
(Page créée avec «  === Liens === https://help.mikrotik.com/docs/display/ROS/GRE Catégorie:Mikrotik Catégorie:VPN »)
 
Aucun résumé des modifications
Ligne 1 : Ligne 1 :
We have two sites, '''Site1''' with local network range 10.1.101.0/24 and '''Site2''' with local network range 10.1.202.0/24.
The first step is to create GRE tunnels. A router on site 1:
{| class="wikitable"
|<code>/interface gre add name=myGre</code> <code>remote-address=192.168.90.1</code> <code>local-address=192.168.80.1</code>
|}
A router on site 2:
{| class="wikitable"
|<code>/interface gre add name=myGre</code> <code>remote-address=192.168.80.1</code> <code>local-address=192.168.90.1</code>
|}
As you can see tunnel configuration is quite simple.
In this example, a keepalive is not configured, so tunnel interface will have a '''running''' flag even if remote tunnel end is not reachable
Now we just need to set up tunnel addresses and proper routing. A router on site 1:
{| class="wikitable"
|<code>/ip address add address=172.16.1.1/30</code> <code>interface=myGre</code>
<code>/ip route add dst-address=10.1.202.0/24</code> <code>gateway=172.16.1.2</code>
|}
A router on site 2:
{| class="wikitable"
|<code>/ip address add address=172.16.1.2/30</code> <code>interface=myGre</code>
<code>/ip route add dst-address=10.1.101.0/24</code> <code>gateway=172.16.1.1</code>
|}
At this point, both sites have Layer 3 connectivity over the GRE tunnel.


=== Liens ===
=== Liens ===

Version du 27 mars 2024 à 10:25

We have two sites, Site1 with local network range 10.1.101.0/24 and Site2 with local network range 10.1.202.0/24.

The first step is to create GRE tunnels. A router on site 1:

/interface gre add name=myGre remote-address=192.168.90.1 local-address=192.168.80.1

A router on site 2:

/interface gre add name=myGre remote-address=192.168.80.1 local-address=192.168.90.1

As you can see tunnel configuration is quite simple.

In this example, a keepalive is not configured, so tunnel interface will have a running flag even if remote tunnel end is not reachable

Now we just need to set up tunnel addresses and proper routing. A router on site 1:

/ip address add address=172.16.1.1/30 interface=myGre

/ip route add dst-address=10.1.202.0/24 gateway=172.16.1.2

A router on site 2:

/ip address add address=172.16.1.2/30 interface=myGre

/ip route add dst-address=10.1.101.0/24 gateway=172.16.1.1

At this point, both sites have Layer 3 connectivity over the GRE tunnel.


Liens

https://help.mikrotik.com/docs/display/ROS/GRE