Default:
Enabled
PPTP Before Rules
Pass PPTP traffic sent to the NetDefend Firewall directly to the PPTP Server without consulting
the rule set.
Default:
Enabled
Max PPP Resends
The maximum number of PPP layer resends.
Default:
10
9.5.4. PPTP/L2TP Clients
The PPTP and L2TP protocols are described in the previous section. In addition to being able to
act as a PPTP or L2TP server, NetDefendOS also offers the ability to act as a PPTP or L2TP client.
This can be useful if PPTP or L2TP is preferred as the VPN protocol instead of IPsec. One
NetDefend Firewall can act as a client and connect to another unit which acts as the server.
Client Setup
The PPTP and L2TP client configuration object and share a common set of properties:
General Parameters
•
Name - A symbolic name for the client.
•
Tunnel Protocol - Specifies if it is a PPTP or L2TP client.
•
Remote Endpoint - The IP address of the remote endpoint for the tunnel connection. This is
the IP address of the remote interface on which the remote PPTP/L2TP server will be listening
for connections. Where the remote endpoint is specified as an FQDN, the prefix
dns:
must be
precede it. For example:
dns:server.example.com
.
•
Remote Network - The remote network which will be connected to inside the tunnel. Traffic
will flow between the client and this network.
•
Originator IP Type - This specifies how the IP address is obtained for the local endpoint for
the outside of the tunnel. This is not the source address of traffic flowing from the client to
the server inside the tunnel. This setting can take one of two values:
i.
Local interface - The local endpoint IP will be the IP address of the local interface. This is
the default.
ii.
Manually specified address - The IP address is manually specified using the
Originator IP
property which is described next.
•
Originator IP - If the
Manually specified address
option is selected for the previous property,
this is the IP address that will be used as the tunnel's outer source IP. Depending on the
network topology, this address may need to be ARP published on Ethernet interfaces.
Authentication
•
Username - Specifies the username to use for this PPTP/L2TP interface.
Chapter 9: VPN
737
Summary of Contents for NetDefendOS
Page 30: ...Figure 1 3 Packet Flow Schematic Part III Chapter 1 NetDefendOS Overview 30 ...
Page 32: ...Chapter 1 NetDefendOS Overview 32 ...
Page 144: ...Chapter 2 Management and Maintenance 144 ...
Page 284: ...Chapter 3 Fundamentals 284 ...
Page 392: ...Chapter 4 Routing 392 ...
Page 419: ... Host 2001 DB8 1 MAC 00 90 12 13 14 15 5 Click OK Chapter 5 DHCP Services 419 ...
Page 420: ...Chapter 5 DHCP Services 420 ...
Page 573: ...Chapter 6 Security Mechanisms 573 ...
Page 607: ...Chapter 7 Address Translation 607 ...
Page 666: ...Chapter 8 User Authentication 666 ...
Page 775: ...Chapter 9 VPN 775 ...
Page 819: ...Chapter 10 Traffic Management 819 ...
Page 842: ...Chapter 11 High Availability 842 ...
Page 866: ...Default Enabled Chapter 13 Advanced Settings 866 ...
Page 879: ...Chapter 13 Advanced Settings 879 ...