[ATP/FLEX] How to Set Up L2TP IPSec VPN with AD Authentication on Nebula?





Nebula Cloud provides VPN solutions that can authenticate through an AD server for L2TP over IPsec VPN / IPsec VPN.
Configure Steps
Using Windows Server 2016 as the AD server
1. AD server installation
Install an AD Server and set it as a domain controller. If installed in a virtual machine, make sure that the virtual NIC needs to be bridged to the physical NIC.
2. AD server configuration
Navigate to Firewall > Configure > Firewall settings, input the name, server IP address, AD domain, and administrator username/password. The default service port is 389.
3. L2TP over IPsec Remote VPN configuration
Navigate to Firewall > Configure > Remote access VPN, input the secret and select the AD server as the Authentication method
4. Set up L2TP VPN on Windows PC
Settings > Network & Internet > VPN > Add a VPN connection
a. VPN Provider: Drop down to select Windows(built-in)
b. Input Connection name
c. Input Nebula device Public IP
d. VPN type: L2TP/IPsec with pre-shared key
e. Per-shared key: input the pre-shared key that set up on Nebula
f. Input VPN username/password(which is the user on AD server)
g. Navigate to Control Panel > Network and Sharing Center > Change Adapter settings, tick the VPN interface we just added > Properties > Security, make sure the VPN type is L2TP/IPsec and tick “Unencrypted password(PAP)”
Test the Result
Categories
- 8.5K All Categories
- 1.6K Nebula
- 71 Nebula Ideas
- 57 Nebula Status and Incidents
- 4.5K Security
- 227 Security Ideas
- 982 Switch
- 46 Switch Ideas
- 879 WirelessLAN
- 24 WLAN Ideas
- 5.1K Consumer Product
- 158 Service & License
- 280 News and Release
- 61 Security Advisories
- 13 Education Center
- 581 FAQ
- 263 Nebula FAQ
- 160 Security FAQ
- 76 Switch FAQ
- 75 WirelessLAN FAQ
- 7 Consumer Product FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 62 About Community
- 46 Security Highlight