Configuring L2TP

PPTP and L2TP VPN

 

 

Figure 65: Sample L2TP address range configuration

To add source addresses

Add a source address for every address in the L2TP address range.

1Go to Firewall > Address.

2Select the interface to which L2TP clients connect. This can be an interface, VLAN subinterface, or zone.

3Select New to add an address.

1Enter the Address Name, IP Address, and NetMask for an address in the L2TP address range.

2Select OK to save the source address.

3Repeat for all addresses in the L2TP address range.

Note: If the L2TP address range is comprised of an entire subnet, add an address for this subnet. Do not add an address group.

To add a source address group

Organize the source addresses into an address group.

1Go to Firewall > Address > Group.

2Add a new address group to the interface to which L2TP clients connect. This can be an interface, VLAN subinterface, or zone.

3Enter a Group Name to identify the address group.

The name can contain numbers (0-9), uppercase and lowercase letters (A-Z, a-z), and the special characters - and _. Other special characters and spaces are not allowed.

4To add addresses to the address group, select an address from the Available Addresses list and select the right arrow to add it to the Members list.

5To remove addresses from the address group, select an address from the Members list and select the left arrow to remove it from the group.

264

Fortinet Inc.

Page 264
Image 264
Fortinet FortiGate-800 manual 264, To add source addresses