Amer Networks E5Web GUI User Manual
Page 624

l2tp_ipsec. ProxyARP also needs to be configured for the IPs used by the L2TP Clients.
C. Setup the L2TP Tunnel:
Command-Line Interface
Device:/> add Interface L2TPServer l2tp_tunnel
IP=lan_ip
Interface=l2tp_ipsec
ServerIP=wan_ip
IPPool=l2tp_pool
TunnelProtocol=L2TP
AllowedRoutes=all-nets
ProxyARPInterfaces=lan
InControl
Follow the same steps used for the Web Interface below.
Web Interface
1.
Go to: Network > Interfaces and VPN > PPTP/L2TP Servers > Add > PPTP/L2TP Server
2.
Enter a name for the L2TP tunnel, for example l2tp_tunnel
3.
Now enter:
•
Inner IP Address: lan_ip
•
Tunnel Protocol: L2TP
•
Outer Interface Filter: l2tp_ipsec
•
Server IP: wan_ip
4.
Under the PPP Parameters tab, check the Use User Authentication Rules control
5.
Select l2tp_pool in the IP Pool control
6.
Under the Add Route tab, select all-nets in the Allowed Networks control
7.
In the ProxyARP control, select the lan interface
8.
Click OK
In order to authenticate the users using the L2TP tunnel, a user authentication rule needs to be
configured.
D. Next will be setting up the authentication rules:
Command-Line Interface
Device:/> add UserAuthRule AuthSource=Local
Interface=l2tp_tunnel
OriginatorIP=all-nets
LocalUserDB=UserDB
agent=PPP TerminatorIP=wan_ip
name=L2TP_Auth
InControl
Chapter 9: VPN
624