L2Tp With Ipsec - Digi IX10-00G4 User Manual

Table of Contents

Advertisement

Virtual Private Networks (VPN)
See
Show Surelink status and statistics
tunnels.

L2TP with IPsec

L2TP is commonly used in conjunction with IPsec in transport mode (to provide security).
Your IX10 supoorts L2TP with IPsec by configuring a transport-mode IPsec tunnel between the two
endpoints, and then an L2TP tunnel with its LNS and LAC configured the same as the IPsec tunnel's
endpoints. See
Configure an IPsec tunnel
Note
The IX10 does not currently support the configuration of IPsec protocol/port traffic selectors.
This means that you cannot restrict traffic on the IPsec tunnel to L2TP traffic (typically UDP port
IX10 User Guide
(config vpn l2tp lac lac_tunnel surelink target 0)>
interface_timeout 600s
(config vpn l2tp lac lac_tunnel surelink target 0)>
The default is 60 seconds.
other: Allows you to test another interface's status, to create a failover or
l
coupled relationship between interfaces:
(config vpn l2tp lac lac_tunnel surelink target 0)> other
value
(config vpn l2tp lac lac_tunnel surelink target 0)>
If other is set:
Set the alternate interface to be tested:
o
i. Use the ? to determine available interfaces:
ii. Set the interface. For example:
(config vpn l2tp lac lac_tunnel surelink target 0)>
other_interface /network/interface/eth1
(config vpn l2tp lac lac_tunnel surelink target 0)>
o
Set the alternate interface's IP version. This allows you to determine the
alternate interface's status for a particular IP version.
(config vpn l2tp lac lac_tunnel surelink target 0)> other_
ip_version value
(config vpn l2tp lac lac_tunnel surelink target 0)>
where value is one of: any, both, ipv4, or ipv6.
Set the expected status of the alternate interface:
o
(config vpn l2tp lac lac_tunnel surelink target 0)> other_
status value
(config vpn l2tp lac lac_tunnel surelink target 0)>
where value is either up or down. For example, if other_status is set to
down, but the alternate interface is determined to be up, then this test will
fail.
for information about showing Surelink status for IPsec
for information about configuring an IPsec tunnel.
L2TP
383

Advertisement

Table of Contents
loading

This manual is also suitable for:

Ix10Ix10-00n4

Table of Contents