Anybody know how to configure gre over ipsec ?
from the 9.0,pa support gre tunnel and only one word describe about this feature.
Has anyone done any specific this configuration?
Can you give me a description of the configuration? Thank you
Thank you for posting question @Felixcao
My interpretation of what is written in documentation is: by selecting check box: "Add GRE Encapsulation" Firewall will add GRE Header (IP Protocol 47) between ESP and traffic going to the tunnel interface. For example TCP Traffic routed to the Tunnel interface where you configured IPsec will get first encapsulated into GRE, then into ESP. This configuration is there in place for example if you have on the other side regular Cisco router running running Tunnel interface in: " tunnel mode gre" with attached: "tunnel protection ipsec profile".
Thank you for the message @m.dmitriev
The GRE encapsulation should be enabled on both sides. Without both sides having GRE in place, the traffic that gets encapsulated by GRE on one side would not be able to get decapsulated on the other side of the tunnel. Regarding your second question, unfortunately, I do not have any hands on experience with Mikrotik.
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!