On 07/22/2013 06:51 PM, Jerry Roy wrote:
We CAN communicate in one direction so all traffic on the LAN going thru the masquerade works outbound such as VoIP phones and ssl to internet. Coming back thru tunnel to monitor the Mikrotik via a loopback address is the issue. The Juniper head end shows it has sa's in both directions so the traffic is being denied somewhere else down the link on its way back to the MT.
Does the Juniper end show that it is encrypting and sending traffic via the link?
Keep us posted on the Los Angeles training! ;) I sure hope you can fit the IPv6 in at that time as well!
The LA training will be MTCNA (5 days). The IPv6 training will be not too far from you at the Vegas WISPAPALLOOZA show.
-- Butch Evans 702-537-0979 Network Support and Engineering http://store.wispgear.net/ http://www.butchevans.com/ _______________________________________________ Mikrotik mailing list [email protected] http://mail.butchevans.com/mailman/listinfo/mikrotik Visit http://blog.butchevans.com/ for tutorials related to Mikrotik RouterOS

