/ppp secret
add name=* password=* profile=pptp_vpn_profile service=pptp
add name=* password=* profile=pptp_vpn_profile service=pptp
add name=* password=* profile=zats service=pptp local-address=192.168.3.1 remote-address=192.168.3.222
/ip firewall nat
add action=masquerade chain=srcnat comment=zats_nat log-prefix=NAT_zats out-interface=PPTP_zats
add action=dst-nat chain=dstnat comment=port_forwarding_fot_zats dst-port=61000-61010 protocol=tcp to-addresses=192.168.3.222 to-ports=61000-61010
/routing ospf network
add area=backbone network=192.168.1.0/24
add area=backbone network=192.168.5.0/24
/routing ospf network
add area=backbone network=192.168.0.1/24
add area=backbone network=192.168.5.0/24
Зачем Вам НАТ между сетями? специально или просто так?)
Настройки впн самого?
ppp profile print
Flags: * - default
0 * name="default" bridge=bridge-local use-mpls=default use-compression=default
use-vj-compression=default use-encryption=default only-one=default
change-tcp-mss=yes
1 * name="default-encryption" use-mpls=default use-compression=default
use-vj-compression=default use-encryption=yes only-one=default
change-tcp-mss=yes
ppp secret print
Flags: X - disabled
# NAME SERVICE CALLER-ID PASSWORD PROFILE REMOTE-ADDRESS
0 tun1 pptp tun1 default 192.168.5.2
а "участники" где?
ip firewall nat print
Flags: X - disabled, I - invalid, D - dynamic
0 ;;; allow internet for bridge_lan+bridge_guest
chain=srcnat action=masquerade out-interface=mts_ipv4
1 chain=srcnat action=masquerade out-interface=mts_ipv6
2 chain=srcnat action=masquerade out-interface=vpn_comodo
3 chain=srcnat action=masquerade out-interface=vpn_work
interface bridge print
Flags: X - disabled, R - running
1 R name="bridge_local" mtu=1500 l2mtu=1598 arp=proxy-arp
mac-address=D4:CA:6D:CC:B9:FF protocol-mode=rstp priority=0x8000
auto-mac=yes admin-mac=00:00:00:00:00:00 max-message-age=20s
forward-delay=15s transmit-hold-count=6 ageing-time=5m
ppp profile print
Flags: * - default
0 * name="default" remote-ipv6-prefix-pool=(unknown) bridge=bridge_local
use-ipv6=yes use-mpls=default use-compression=default
use-vj-compression=default use-encryption=default only-one=default
change-tcp-mss=yes address-list=""
ip firewall nat print
Flags: X - disabled, I - invalid, D - dynamic
0 ;;; Added by webbox
chain=srcnat action=masquerade out-interface=pppoe_domru
1 chain=srcnat action=masquerade out-interface=pppoe_rtcom
2 chain=srcnat action=masquerade out-interface=pptp-tunnel
interface bridge print
Flags: X - disabled, R - running
0 R name="bridge-local" mtu=1500 l2mtu=1598 arp=proxy-arp
mac-address=D4:CA:6D:BA:BE:F8 protocol-mode=none priority=0x8000
auto-mac=yes admin-mac=00:00:00:00:00:00 max-message-age=20s
forward-delay=15s transmit-hold-count=6 ageing-time=5m
ppp profile print
Flags: * - default
0 * name="default" bridge=bridge-local use-mpls=default use-compression=default
use-vj-compression=default use-encryption=default only-one=default
change-tcp-mss=yes
ip firewall add chain=forward dst-address=!< IP нужного ресурса> src-address=<IP ограничиваемого юзера> action=drop