L2Tp With Ipsec; Show L2Tp Tunnel Status - Digi IX30 User Manual

Table of Contents

Advertisement

Virtual Private Networks (VPN)
See
Show Surelink status and statistics
tunnels.

L2TP with IPsec

L2TP is commonly used in conjunction with IPsec in transport mode (to provide security).
Your IX30 supoorts L2TP with IPsec by configuring a transport-mode IPsec tunnel between the two
endpoints, and then an L2TP tunnel with its LNS and LAC configured the same as the IPsec tunnel's
endpoints. See
Configure an IPsec tunnel
Note
The IX30 does not currently support the configuration of IPsec protocol/port traffic selectors.
This means that you cannot restrict traffic on the IPsec tunnel to L2TP traffic (typically UDP port
1701).
While multiple L2TP clients are supported on the IX30 by configuring a separate LNS for each client,
multiple clients behind a Network Address Translation (NAT) device are not supported, because they
will all appear to have the same IP address.

Show L2TP tunnel status

  Web
Show the status of L2TP access connectors from the WebUI
1. Log into the IX30 WebUI as a user with Admin access.
2. On the menu, select Status. Under VPN, select L2TP > Access Connectors.
The L2TP Access Connectors page appears.
3. To view configuration details about an L2TP access connector, click the  (configuration) icon
in the upper right of the tunnel's status pane.
Show the status of L2TP network servers from the WebUI
1. Log into the IX30 WebUI as a user with Admin access.
2. On the menu, select Status. Under VPN, select L2TP > Network Servers.
The L2TP Network Servers page appears.
3. To view configuration details about an L2TP network server, click the  (configuration) icon in
the upper right of the tunnel's status pane.
  Command line
Show the status of L2TP access connectors from the Admin CLI
1. Select the device in Remote Manager and click Actions > Open Console, or log into the IX30
local command line as a user with full Admin access rights.
IX30 User Guide
where value is either up or down. For example, if other_status is set to
down, but the alternate interface is determined to be up, then this test will
fail.
for information about showing Surelink status for IPsec
for information about configuring an IPsec tunnel.
L2TP
465

Advertisement

Table of Contents
loading

Table of Contents