You are on page 1of 1

VPN Network Topology

Tunnel-1

Wireguard tunnel through china great


firewall

Tunnel Virtual IP – 172.17.1.1/24


VPN Server – 1
Mikrotik Router ( Public IP –
103.56.63.87
v7.1rc4 )

China Great
Tunnel-2 Firewall

Wireguard tunnel through china great firewall

Tunnel Virtual IP – 172.17.2.1/24


VPN Server -2
Public IP –
103.56.63.89
Assign static ip address at openvpn
servers and Mikrotik router’ IP as their
openvpn Server -1 openvpn Server – 2 gateway
IP – 10.226.0.101/24 IP – 10.226.0.102
GW – 10.226.0.1 GW – 10.226.0.1
Radius
Server

OpenVPN server-1 traffic will


Mangle Rule route through Tunnel-1 gateway
at mikrotik
chain=prerouting action=mark-routing new-routing-mark=tunnel-1 passthrough=no
src-address=10.226.0.101 log=no log-prefix="" #mark packets from openvpn server-1 OpenVPN server-2 traffic will
route through Tunnel-2 gateway
at mikrotik
chain=prerouting action=mark-routing new-routing-mark=tunnel-2 passthrough=no
src-address=10.226.0.102 log=no log-prefix="" #mark packets from openvpn server-2

Routing Table

dst-address=0.0.0.0/0 routing-table=tunnel-1 pref-src=""


gateway=Tunnel-1 immediate-gw=Tunnel-1 distance=1
scope=30 target-scope=10 suppress-hw-offload=no

dst-address=0.0.0.0/0 routing-table=tunnel-2 pref-src=""


gateway=Tunnel-2 immediate-gw=Tunnel-2 distance=1
scope=30 target-scope=10 suppress-hw-offload=no

You might also like