AD authentification fails on L2TP

Marten
Marten Posts: 1  Freshman Member
edited April 2021 in Security
I have set up with 2016 ad authentication an local database for L2TP connection.
Local user connects fine but ad user not when using Win10 built in L2TP connector.
How ever, it is working fine when logging in to Zywall webinterface. There i can login with both local and ad user.
This is the second time in some years i have been trying to get this working. I hope you can solve this for me?

Thanks and happy new year!

Comments

  • Zyxel_Charlie
    Zyxel_Charlie Posts: 1,034  Zyxel Employee
    First Anniversary Friend Collector First Answer First Comment
    Hello Marten,
    For the case of AD authentication on l2tp,
    here is the similar scenario from FAQ as your reference.
    Link:
    https://businessforum.zyxel.com/discussion/886/how-to-configure-ad-user-do-the-authentication-on-l2tp-scenario/p1?new=1
    Charlie
  • KIT
    KIT Posts: 4  Freshman Member
    First Anniversary Friend Collector First Comment
    I have exactly the same problem as Marten. 
    L2TP VPN for local users works perfect. But the ad authentification doesnt.
    The AD Test at aaa-server and at the user interface works like a charm.
    But if i try to connect the vpn with an ad credential it doesnt work.

    The log says:


  • KIT
    KIT Posts: 4  Freshman Member
    First Anniversary Friend Collector First Comment
    Can someone give me a hint? I cant fix this issue.
  • Zyxel_Charlie
    Zyxel_Charlie Posts: 1,034  Zyxel Employee
    First Anniversary Friend Collector First Answer First Comment
    Hello KIT,
    The USG Series does not support  to connect 2016 AD Server in L2TP scenario.
    The request " USG Series support 2016 ad authentication an local database for L2TP connection.", I would like to move your request to the ideas section.
    Charlie

Security Highlight