24

L2TP VPN

24.1 Overview

L2TP VPN uses the L2TP and IPSec client software included in remote users’ Android, iOS, or Windows operating systems for secure connections to the network behind the ZyWALL. The remote users do not need their own IPSec gateways or third-party VPN client software.

Figure 226 L2TP VPN Overview

24.1.1What You Can Do in this Chapter

Use the L2TP VPN screen (see Section 24.2 on page 347) to configure the ZyWALL’s L2TP VPN settings.

24.1.2What You Need to Know

The Layer 2 Tunneling Protocol (L2TP) works at layer 2 (the data link layer) to tunnel network traffic between two peers over another network (like the Internet). In L2TP VPN, an IPSec VPN tunnel is established first and then an L2TP tunnel is built inside it. See Chapter 20 on page 281 for information on IPSec VPN.

IPSec Configuration Required for L2TP VPN

You must configure an IPSec VPN connection for L2TP VPN to use (see Chapter 20 on page 281 for details). The IPSec VPN connection must:

Be enabled.

Use transport mode.

Not be a manual key VPN connection.

Use Pre-Shared Key authentication.

Use a VPN gateway with the Secure Gateway set to 0.0.0.0 if you need to allow L2TP VPN clients to connect from more than one IP address.

 

345

ZyWALL 110/310/1100 Series User’s Guide