AWS Site-To-Site VPN with MikroTik, using BGP Dynamic Routing

Поделиться
HTML-код
  • Опубликовано: 6 фев 2025

Комментарии • 39

  • @Vishwasp13
    @Vishwasp13 2 года назад +1

    Thanks a lot, the moment I watched you video saying S2S VPN is paid I checked my billing and surprised myself, my failed attempts with this service for almost a week cost me a good amount. Glad I watched your video and prevented further loss.

    • @MankomalSingh
      @MankomalSingh  2 года назад +1

      Thanks for the feedback. Yes I had left it on for a week so did cost me a little not much though

  • @RussStarr
    @RussStarr Год назад +2

    Well done. I adapted these steps to work on GCP.

  • @manisankarmani
    @manisankarmani 2 года назад +1

    Excellent Tutorial !! Very well done. Keep up the good work.

  • @juandabe
    @juandabe 2 года назад +1

    Excellent man, congrats!

  • @idrisapatira172
    @idrisapatira172 2 года назад +1

    Thanks a lot, nice video and very precise. Keep up the good work!

  • @SunnyKhetarpal
    @SunnyKhetarpal Год назад +1

    Can we do this via AWS direct connect instead of S2S VPN?

  • @denissmamontovs6373
    @denissmamontovs6373 10 месяцев назад

    Thank you for the video. However, what about the MTU size? From my experience, tunnel-based VPNs could have potential issues if you use the default interface MTU. The problem may not be visible initially, but it could arise when you start sending, for example, SQL queries over the IPsec tunnel. This means a lot of small packets will be transmitted over it, which might cause some issues.

  • @RohanMaradia-m6b
    @RohanMaradia-m6b 6 месяцев назад

    Great video, we want to create AWS site to site VPN without static IP (we have dynamic public IP and can use dynDNS option) on the Palo Alto firewall, can we setup VPN with AWS using this scenario?

  • @torukmakto2367
    @torukmakto2367 Год назад

    Good video. What model is the MikroTik you are using?

  • @dhsilva82
    @dhsilva82 Год назад

    Do you have a tutorial as well, but using Azure instead of AWS?

  • @murilosilva4190
    @murilosilva4190 Год назад

    Is it possible to connect with the Rest API?

  • @krystian34
    @krystian34 2 года назад +2

    I'm using soft 7.6 and It dosen't work. in AWS I see 0 BGP routes. I did all configuration like in video but still no success

    • @erglaligzda2265
      @erglaligzda2265 2 года назад +1

      Same here! Maybe you found solution for this issue?

    • @MankomalSingh
      @MankomalSingh  2 года назад

      Hey guys sorry I havent done much work lately on this but will love to work on it. Someone recently emailed me and they faced similar issue
      I will look in to this and if need be make an updated video of the same

    • @FerdinandUribe
      @FerdinandUribe Год назад

      @@MankomalSingh I too cannot get this to work. Tutorial coming soon?

  • @galvesribeiro
    @galvesribeiro 2 года назад +2

    I'm using RouterOS v7.1.5. The BGP > Peer Cache doesn't exist anymore. Also you don't mention any firewall rule required to make this work. Tried here and it just don't work. I see the message "00:21:02 ipsec,info ISAKMP-SA established" in the logs which means Phase 1 is working but on the BGP > Sessions tab I never see a connection which led me to believe the BGP connection was never successful. Can you elaborate more on that or point to some docs/tutorial? Thanks!

    • @MankomalSingh
      @MankomalSingh  2 года назад +1

      Hey I faced a lot of problem with AWS so if you want we can connect via skype/zoom and do this send me email on mail@mankomal.com

    • @MankomalSingh
      @MankomalSingh  2 года назад +1

      Also for BGP changes in v6 and v7 suggest you go thru this video ruclips.net/video/elhj-1n-DD4/видео.html

    • @galvesribeiro
      @galvesribeiro 2 года назад

      @@MankomalSingh I've sent you an email. Please share your Skype contact info there :) I appreciate any help!

  • @shafiiqbal631
    @shafiiqbal631 2 года назад

    Great. Please another one is needed with static ip.

  • @hellracer
    @hellracer 5 месяцев назад

    This works on Mikrotik 7.15.2

  • @feng0113
    @feng0113 Год назад

    nice video for me

  • @dturtu3774
    @dturtu3774 Год назад

    what about vps hosting ?

  • @cristophersalazar6054
    @cristophersalazar6054 2 года назад +1

    Is posible to configure P2S in the same vpn

    • @MankomalSingh
      @MankomalSingh  2 года назад +1

      Hi Cristopher, I don’t think so. Can you explain more what you are trying to achieve.

  • @KHIANO
    @KHIANO 3 года назад +1

    what about aws as a routeros hotspot server?

    • @MankomalSingh
      @MankomalSingh  3 года назад +1

      Hello Khiano, hotspot runs on L2 so do you want to setup a centralised hotspot?

  • @DormPL
    @DormPL 2 года назад

    How to establish `Tunnel 2` if I use tutorial for `Tunnel 1` i have a problem in point with IPsec Policies ?

    • @MankomalSingh
      @MankomalSingh  2 года назад

      So tunnel 2 will create problem as the src and dst will remain same and this will always be disabled state. You will need to build a script which actively check and disables 1 and enables 2

    •  2 года назад

      @@MankomalSingh Will be awesome if you make a part 2 of this video, configuring tunnel 2, with a sample script. I try here but there is no way to be good like I want. This is one of the few if not the only video tutorials more recent about this very specific subject. And even in the old videos that I found, no one makes a config of tunnel 2.

  • @almazabraha
    @almazabraha 9 месяцев назад +1

    What's your email address?

    • @MankomalSingh
      @MankomalSingh  9 месяцев назад +1

      mail@mankomal.com

    • @almazabraha
      @almazabraha 9 месяцев назад

      @@MankomalSingh Thank you please check your inbox.