GRAMAC: me fungovala tato konfigurace, ale neustale se ipsec rozpojoval, az mi dosla trpelivost a zmenil jsem to na pptp (funguje i openvpn)
/ip ipsec proposal
set [ find default=yes ] auth-algorithms=sha1 disabled=no enc-algorithms=3des lifetime=8h name=default pfs-group=modp1024
/ip ipsec peer
add address=dst_ipsec_addr/32 auth-method=pre-shared-key dh-group=modp1024 disabled=yes dpd-interval=disable-dpd dpd-maximum-failures=5 \
enc-algorithm=3des exchange-mode=main generate-policy=yes hash-algorithm=sha1 lifebytes=0 lifetime=8h my-id-user-fqdn="" nat-traversal=no \
port=500 proposal-check=obey secret=secrettisnov send-initial-contact=yes
/ip ipsec policy
add action=encrypt disabled=yes dst-address=dst_LAN/xx dst-port=any ipsec-protocols=esp level=unique priority=1 proposal=default protocol=all \
sa-dst-address=dst_ipsec_addr sa-src-address=src_ipsec_addr src-address=src_LAN/xx src-port=any tunnel=yes