FYI : i followed the subject instructions also for site to site openvpn (between 2 mikrotik routers)and working great . congrats for the clear instructions
@ManueleFiorenza3 жыл бұрын
Mikrotik nat firewall configuration and port forwarding are missing
@onilsonoliveira79434 жыл бұрын
When you create the certifying authority uses the public ip or gateway router ? I did as I taught,but gave error here. error:Tue May 26 22:21:52 2020 TLS Error: TLS key negotiation failed to occur within 60 seconds (check your network connectivity) Tue May 26 22:21:52 2020 TLS Error: TLS handshake failed Tue May 26 22:21:52 2020 Fatal TLS error (check_tls_errors_co), restarting
@bluewhales473 жыл бұрын
is this still need IP Public on Server OpenVPN side ? what if mikrouik router side dosn't have IP Public from ISP, how to connect workstation client as a part of the Mikrotik Network, thanks 🙏
@qabparts Жыл бұрын
i did the 2 mikrotik routers connect via OpenVPN site to site, how can i connect a remote computer to connect to the network?
@zaroqe4 жыл бұрын
Thank you! Your video is very clear and precise. I managed to setup vpn for my office.
@ThePatsev Жыл бұрын
I have no internet connection after configuring ovpn with those steps. Any ideas where I went wrong?
@JVBoy Жыл бұрын
what model of mikrotik?
@mujeebmujeeb23933 жыл бұрын
What if we don't have public static IP address on Wan Or our mikrotik Wan behind NAT . Can we do same process .
@rudythang35826 жыл бұрын
after follow all step Mon Jul 16 11:23:43 2018 us=793415 disabling NCP mode (--ncp-disable) because not in P2MP client or server mode Options error: On Windows, --ifconfig is required when --dev tun is used Use --help for more information.
@gtraveltech5 жыл бұрын
have you solved?
@rubenkuh88534 жыл бұрын
thank you! It has been very easy to understand because of the way you did it
@tarzan-wo9xs8 ай бұрын
how to create ovpn config file sir.
@uacagile89983 жыл бұрын
Is there any chance to take the printout from remote Server to VPN client machine?
@ionut22194 жыл бұрын
Very nice and useful tutorials. Keep up the good work!
@yangchongtan24243 жыл бұрын
Bro your video really easy understand, thanks for your sharing and now i can setup my VPN easily.
@ahsanashraf58873 жыл бұрын
Hi sir thanks for this awesome video Sir I I have some issue with this I do each single step and follow you But when I connect openvpn client through same network from windows that connection succeed but When I'm trying to connect from outside network the VPN not connecting please help
@ButcherUA5 жыл бұрын
Thank you BRO !!! Your video manual best :)))
@mujeebmujeeb23933 жыл бұрын
I don't have public IP on mikrotik or not port forwarding facility at wan Can I do this without having public IP on mikrotik
@mrvlog45733 жыл бұрын
i have a question sir
@HenningMackszomotto2 жыл бұрын
Only you to save me!!! very thanks!!!
@maspurmikrotiker84763 жыл бұрын
how to make a client.key file?
@atefali9773 жыл бұрын
Thank you so much for sharing!! I'm able to connect from my client to the OpenVPN server. However, when I check the WAN IP of my client, it is still showing me the IP of the public network that I'm behind and NOT the IP of the OpenVPN server. Any thoughts? Thank you.
@ravinderrajput74564 жыл бұрын
What setting needs to be done so that the the vpn client runs the internet through the vpn server
@celso.vss864 жыл бұрын
At 6:20 am the MAC address is that of the server?
@Bingbangbo32464 жыл бұрын
Thanks, it works, the bad thing was that Verify Client Certificate doesn't work.
@SystemZone4 жыл бұрын
It should work. Specify CA and Client Certificate properly in client configuration file. Also you can follow this article: systemzone.net/mikrotik-openvpn-configuration-on-tcp-port-443-with-windows-os/
@danielbaraza1544 жыл бұрын
Great!!! Thank you for the video
@TrueNetworking4 жыл бұрын
Do any of the routers require public ip?
@LamNguyen-vu5qb6 жыл бұрын
Tks your video. I have a question "Where did you get client.ovpn file??".
@SystemZone6 жыл бұрын
you will find client.ovpn in this article systemzone.net/mikrotik-openvpn-setup-with-windows-client/
@LamNguyen-vu5qb6 жыл бұрын
you can fix error for me, please :(
@techsupport64954 жыл бұрын
for this can i need static ip on both sides
@SystemZone4 жыл бұрын
No, only server need static IP
@techsupport64954 жыл бұрын
@@SystemZone thanks for your reply, can i get your skype id or whatsapp Number ?
@luxli76436 жыл бұрын
Hi, many Thanks. Could this VPN client out to the gateway your remotely routers (OVPN Server Mikrotik)? I would be on internet via OVPN server.
@luxli76436 жыл бұрын
I found the solution.I must put in config file this command "redirect-gateway autolocal" and all my traffic is now going through a remote OVPN server.Thanks
@LokeshKumarJ-qn4bq6 жыл бұрын
@@luxli7643 In Which Line i have to add ???
@luxli76436 жыл бұрын
Hi @@LokeshKumarJ-qn4bq in client.ovpn file. Below i paste content of my ovpn config file. client dev tun redirect-gateway autolocal proto tcp-client remote xxx.xxx.253.77 port 5002 nobind persist-key persist-tun tls-client remote-cert-tls server ca ca.crt cert client.crt key client.key verb 4 mute 10 cipher AES-256-CBC auth sha1 auth-user-pass user.pass auth-nocache Best regards
@ionutc.36574 жыл бұрын
@@luxli7643 Thank you! I was seeking 2 days for this solution :)
@jako2655 жыл бұрын
Hello friend, it works great!!!! Please tell me can i use the same keys to other miktotik so from client side i have only a pair of certificates??
@LokeshKumarJ-qn4bq6 жыл бұрын
Thank you so much !!! You made my day !!! Works like a charm :-)
@playerfun23444 жыл бұрын
Hi sir, I have one question, from VPN i can access all pc from lan, but from LAN i can not access any client from VPN, what's wrong ?
@bradpitt14153 жыл бұрын
I live in Suzhou next to Shanghai. At first, I used IKEV2 VPN, but it didn't work well, so I'm currently using Panda VPN's stealth method. I am using it to my satisfaction. If v2 does not work, try steerlh. Openvpn = Stealth
@jagilren4 жыл бұрын
Phenomenal. Thanks...
@SpiritOfFire735 жыл бұрын
what if I don't fill in 'CA CRL HOST' while I make ' Certificates'? can it work?
@sollekram5 жыл бұрын
for accessing it across the Internet?
@SystemZone5 жыл бұрын
yes bro.
@sollekram5 жыл бұрын
@@SystemZone I should port forward the external ip(of the mikrotik)on the modem?
@JorgeLuisKrauss4 жыл бұрын
Hi, I can't make it work... I have a mikrotik router on my work, and because of covid-19 we are trying to set up open-vpn connections. I've followed you step-by-step, replacing the IP's with mine, but after writing down my password I get the "TCP: connect to [AF_INET]MyIP:PORT failed, will try again in 5 seconds" error... I've tryed setting off my windows fw... nothing...
@SystemZone4 жыл бұрын
Follow this article step by step: systemzone.net/mikrotik-openvpn-configuration-on-tcp-port-443-with-windows-os/
@mujeebmujeeb23933 жыл бұрын
Thanks
@ahsanashraf58873 жыл бұрын
Very good
@mikaeladingra42386 жыл бұрын
Hello Grand Chief, I need your help. I would like to access the internet remotely via my mikrotik router which is at home via a VPN connection. is it possible to become an internet access provider via VPN PPTP ?? STP answer me
@LokeshKumarJ-qn4bq6 жыл бұрын
Everything is working fine. The client receives the IP from the router but it is not assigning the gateway. Even in this tutorial gateway is empty
@tomiyalima3 жыл бұрын
Gracias, de verdad gracias!!!
@guarinoantoniohernandezmar63006 жыл бұрын
1000000000000% working thanks
@ajudanet80056 жыл бұрын
does it work with dynamic ip addr (at the wwan)??
@SystemZone6 жыл бұрын
No, for all vpn you should have static public IP on WAN interface.
@PabloOlivare4 жыл бұрын
where do you get ovpn file?
@flamaryonklever4 жыл бұрын
Só criar um arquivo no bloco de notas igual ao dele e renomear para client.ovpn
@rz6354 Жыл бұрын
again as with all other instructions - access from VPN to LAN does not work - how to make LAN accessible to clients from VPN ?? 🤷♂
@CesarDanielLopez6 жыл бұрын
hi!, it's a great tutorial, the conecction to mikrotik works fine, but.. i need hel to reach the machines on my internal lan. can you help me please?
@jggallas4 жыл бұрын
You need to add an internal route in every machine, something like "route add vpnLanAddress mask netmask mikrotikLanAddress -p" "route add 10.10.1.0 mask 255.255.255.0 192.168.1.254 -p" this example work for windows
@roquerivera86016 жыл бұрын
Where did you get the Key file?
@mochodog6 жыл бұрын
after exporting the CA the returns to make the export of CA but this time add a key of this is the key file. do not skip the steps ;D
@roquerivera86016 жыл бұрын
I am trying to see the key export in your video but cannot find it. Can you please tell me where in the video is?
@SystemZone6 жыл бұрын
In step 2, at the time of exporting CA certificate, the key file is generated by MikroTik. Follow this article to get detail: systemzone.net/mikrotik-openvpn-setup-with-windows-client
@asylochogo19613 жыл бұрын
Your steps are okay. Is it possible you speak while presenting. Consider that in your next presentation.
@Garethuk20066 жыл бұрын
thank you so much :)
@kennethpressley33993 жыл бұрын
I'm unable to config mine. I use to cofigure netgear router. Mikrotik is different. I'm not an informatician
@ibrahim.abdiyev6 жыл бұрын
THX very much
@alshaladear93465 жыл бұрын
thank you but no G.Wy
@jonancar4 жыл бұрын
No funciona
@alishahzadification3 жыл бұрын
Pagal bana raha hai bhai, whatsmyip kar k dekha kon sa ip address milta hai tujhe, tujhe wohi ip address milay ga jo tere system ka hai na k mikrotik router k WAN ka . i need non-split tunneling rather than split tunneling.