Chapter 18 L2TP VPN
ZyWALL (ZLD) CLI Reference Guide
156
18.5 L2TP VPN Example
This example uses the following settings in creating a basic L2TP VPN tunnel. See the Web
Configurator User’s Guide for how to configure L2TP in remote user computers using
Windows XP and Windows 2000.
l2tp-over-ipsec
authentication
aaa
authentication profile_name
Specifies how the ZyWALL authenticates a remote user before allowing
access to the L2TP VPN tunnel.
The authentication method has the ZyWALL check a user’s user name and
password against the ZyWALL’s local database, a remote LDAP, RADIUS, a
Active Directory server, or more than one of these.
[no] l2tp-over-ipsec user
user_name
Specifies the user or user group that can use the L2TP VPN tunnel. If you
do not configure this, any user with a valid account and password on the
ZyWALL to log in. The
no
command removes the user name setting.
[no] l2tp-over-ipsec
keepalive-timer <1..180>
The ZyWALL sends a Hello message after waiting this long without
receiving any traffic from the remote user. The ZyWALL disconnects the
VPN tunnel if the remote user does not respond. The
no
command returns
the default setting.
[no] l2tp-over-ipsec first-
dns-server {
ip
|
interface_name
} {1st-
dns|2nd-dns|3rd-dns}|
{
ppp_interface
|aux}{1st-
dns|2nd-dns}}
Specifies the first DNS server IP address to assign to the remote users. You
can specify a static IP address, or a DNS server that an interface received
from its DHCP server. The
no
command removes the setting.
[no] l2tp-over-ipsec second-
dns-server {
ip
|
interface_name
} {1st-
dns|2nd-dns|3rd-dns}|
{
ppp_interface
|aux}{1st-
dns|2nd-dns}}
Specifies the second DNS server IP address to assign to the remote users.
You can specify a static IP address, or a DNS server that an interface
received from its DHCP server. The
no
command removes the setting.
[no] l2tp-over-ipsec first-
wins-server
ip
Specifies the first WINS server IP address to assign to the remote users.
The
no
command removes the setting.
[no] l2tp-over-ipsec second-
wins-server
ip
Specifies the second WINS server IP address to assign to the remote users.
The
no
command removes the setting.
no l2tp-over-ipsec session
tunnel-id <0..65535>
Deletes the specified L2TP VPN tunnel.
show l2tp-over-ipsec
Displays the L2TP VPN settings.
show l2tp-over-ipsec session
Displays current L2TP VPN sessions.
Table 77
L2TP VPN Commands
COMMAND
DESCRIPTION
Summary of Contents for ZyWall
Page 2: ......
Page 6: ...Document Conventions ZyWALL ZLD CLI Reference Guide 6 ...
Page 10: ...10 ...
Page 26: ...Chapter 1 Command Line Interface ZyWALL ZLD CLI Reference Guide 26 ...
Page 46: ...46 ...
Page 84: ...Chapter 6 Interfaces ZyWALL ZLD CLI Reference Guide 84 ...
Page 98: ...Chapter 8 Route ZyWALL ZLD CLI Reference Guide 98 ...
Page 106: ...Chapter 10 Zones ZyWALL ZLD CLI Reference Guide 106 ...
Page 110: ...Chapter 11 DDNS ZyWALL ZLD CLI Reference Guide 110 ...
Page 116: ...Chapter 12 Virtual Servers ZyWALL ZLD CLI Reference Guide 116 ...
Page 120: ...Chapter 13 HTTP Redirect ZyWALL ZLD CLI Reference Guide 120 ...
Page 124: ...Chapter 14 ALG ZyWALL ZLD CLI Reference Guide 124 ...
Page 125: ...125 PART III Firewall Firewall 127 ...
Page 126: ...126 ...
Page 134: ...Chapter 15 Firewall ZyWALL ZLD CLI Reference Guide 134 ...
Page 135: ...135 PART IV VPN IPSec VPN 137 SSL VPN 147 L2TP VPN 153 ...
Page 136: ...136 ...
Page 146: ...Chapter 16 IPSec VPN ZyWALL ZLD CLI Reference Guide 146 ...
Page 152: ...Chapter 17 SSL VPN ZyWALL ZLD CLI Reference Guide 152 ...
Page 160: ...Chapter 18 L2TP VPN ZyWALL ZLD CLI Reference Guide 160 ...
Page 161: ...161 PART V Application Patrol Application Patrol 163 ...
Page 162: ...162 ...
Page 174: ...Chapter 19 Application Patrol ZyWALL ZLD CLI Reference Guide 174 ...
Page 175: ...175 PART VI Anti X Anti Virus 177 IDP Commands 185 Content Filtering 203 Anti Spam 215 ...
Page 176: ...176 ...
Page 202: ...Chapter 21 IDP Commands ZyWALL ZLD CLI Reference Guide 202 ...
Page 214: ...Chapter 22 Content Filtering ZyWALL ZLD CLI Reference Guide 214 ...
Page 224: ...Chapter 23 Anti Spam ZyWALL ZLD CLI Reference Guide 224 ...
Page 225: ...225 PART VII Device HA Device HA 227 ...
Page 226: ...226 ...
Page 236: ...236 ...
Page 248: ...Chapter 26 Addresses ZyWALL ZLD CLI Reference Guide 248 ...
Page 252: ...Chapter 27 Services ZyWALL ZLD CLI Reference Guide 252 ...
Page 262: ...Chapter 29 AAA Server ZyWALL ZLD CLI Reference Guide 262 ...
Page 266: ...Chapter 30 Authentication Objects ZyWALL ZLD CLI Reference Guide 266 ...
Page 272: ...Chapter 31 Certificates ZyWALL ZLD CLI Reference Guide 272 ...
Page 276: ...Chapter 32 ISP Accounts ZyWALL ZLD CLI Reference Guide 276 ...
Page 280: ...Chapter 33 SSL Application ZyWALL ZLD CLI Reference Guide 280 ...
Page 288: ...Chapter 34 Endpoint Security ZyWALL ZLD CLI Reference Guide 288 ...
Page 289: ...289 PART IX System System 291 System Remote Management 299 ...
Page 290: ...290 ...
Page 298: ...Chapter 35 System ZyWALL ZLD CLI Reference Guide 298 ...
Page 314: ...314 ...
Page 332: ...Chapter 37 File Manager ZyWALL ZLD CLI Reference Guide 332 Figure 55 Startup Complete ...
Page 344: ...Chapter 39 Reports and Reboot ZyWALL ZLD CLI Reference Guide 344 ...
Page 346: ...Chapter 40 Session Timeout ZyWALL ZLD CLI Reference Guide 346 ...
Page 348: ...Chapter 41 Diagnostics ZyWALL ZLD CLI Reference Guide 348 ...
Page 362: ...Chapter 44 Watchdog Timer ZyWALL ZLD CLI Reference Guide 362 ...
Page 363: ...363 PART XI Command List List of Commands Alphabetical 365 ...
Page 364: ...364 ...
Page 394: ...List of Commands Alphabetical ZyWALL ZLD CLI Reference Guide 394 ...