Oke then. thanks for the info. I'm going to try it tomorrow, will update to you later.
I'm still curios of one thing. On my last thread about Mikrotik pptp vpn, you post about this :
"
If you have only one subnet at each site then it ok. Nothing else needed.
If there are more than one subnet at each site and the mikrotik is responsible for the routing between these subnets, then a bypass rule is needed e.g. user-subnet > server-subnet bypass and the other way round as well.
For example, let say at one site there are users and servers. Users are on 192.168.1.0/24 and servers 192.168.2.0/24. When users communicate with the servers the traffic might be routed by the WAN/VPN Router. In this case traffic from the User goes through the Wanos device, to the router, then back through the same Wanos device to the Servers. In this case the example bypass rule above is needed.
Or better yet:
1) Create a default any any bypass rule at the end (#99)
2) Create a specific rule (#10) for the two site subnets that needs to be optimized. E.g. if site-1 is 10.1.1.0/24 and site-2 is 10.1.2.0/24. Then optimize only these subnets e.g. Site-1 #10 has src 10.1.1.0/24 to dst 10.1.2.0/24. And site-2 #10 has src 10.1.2.0/24 dst 10.1.1.0/24.
"
on what circumstances will bypass policies from 192.168.1.0/24 to 192.168.2.0/24 will be needed?