Chapter 22 L2TP VPN
ZyWALL ATP Series User’s Guide
423
Figure 291
Configuration > VPN > L2TP VPN
The following table describes the fields in this screen.
Table 168 Configuration > VPN > L2TP VPN
LABEL
DESCRIPTION
Show Advanced
Settings / Hide
Advanced Settings
Click this button to display a greater or lesser number of configuration fields.
Create new
Object
Use to configure any new settings objects that you need to use in this screen.
Enable L2TP Over
IPSec
Use this field to turn the Zyxel Device’s L2TP VPN function on or off.
VPN Connection
Select the IPSec VPN connection the Zyxel Device uses for L2TP VPN. All of the configured VPN
connections display here, but the one you use must meet the requirements listed in
Configuration Required for L2TP VPN
.
Note: Modifying this VPN connection (or the VPN gateway that it uses) disconnects
any existing L2TP VPN sessions.
IP Address Pool
Select the pool of IP addresses that the Zyxel Device uses to assign to the L2TP VPN clients. Use
Create new Object
if you need to configure a new pool of IP addresses.
This should not conflict with any WAN, LAN, DMZ or WLAN subnet even if they are not in use.
Authentication
Method
Select how the Zyxel Device authenticates a remote user before allowing access to the L2TP
VPN tunnel.
The authentication method has the Zyxel Device check a user’s user name and password
against the Zyxel Device’s local database, a remote LDAP, RADIUS, a Active Directory server,
or more than one of these.
Authentication
Server Certificate
Select the certificate to use to identify the Zyxel Device for L2TP VPN connections. You must
have certificates already configured in the
My Certificates
screen. The certificate is used with
the EAP, PEAP, and MSCHAPv2 authentication protocols.