L2TP over IPSec VPN tunnel not connected, if the NSG is located behind the NAT gateway.

Zyxel_Chris
Posts: 608
Zyxel Employee





- In this scenario you will need to configure the port forwarding on NAT gateway (NSG's uplink device) in UDP port 500 4500 and 1701.
- If your client is using Windows 10 then since in default setting it won't support this scenario (VPN server behind the NAT) then need to modify the registry. Refer to Windows knowledge base or here, please reboot the computer after the setting.
- Also note the Windows L2TP security tab setting because NSG not support EAP MS-CHAPv2 therefore please use MS-CHAPv2
Chris
Tagged:
0
Categories
- All Categories
- 178 Beta Program
- 1.7K Nebula
- 88 Nebula Ideas
- 63 Nebula Status and Incidents
- 4.7K Security
- 236 Security Ideas
- 1.1K Switch
- 51 Switch Ideas
- 913 WirelessLAN
- 27 WLAN Ideas
- 5.4K Consumer Product
- 174 Service & License
- 295 News and Release
- 65 Security Advisories
- 14 Education Center
- 978 FAQ
- 424 Nebula FAQ
- 253 Security FAQ
- 100 Switch FAQ
- 115 WirelessLAN FAQ
- 21 Consumer Product FAQ
- 65 Service & License FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 68 About Community
- 52 Security Highlight