Flex 200 - Two factor authentication

mm_bret
mm_bret Posts: 63  Ally Member
First Comment Fourth Anniversary

Wanting to use this for l2tp users, to get an 2fa email for access to the network.

Spent an hour, no luck.

Wondering if it works?

All Replies

  • PeterUK
    PeterUK Posts: 3,391  Guru Member
    100 Answers 2500 Comments Friend Collector Seventh Anniversary
  • mm_bret
    mm_bret Posts: 63  Ally Member
    First Comment Fourth Anniversary

    Peter,

    Not sure I understand. I'm not using google authenticator.

    I tried this instruction sample. Are there any corrections or newer examples.

    https://support.zyxel.eu/hc/en-us/articles/360009877491-Two-Factor-Authentication-per-Mail-on-Zywall-USG

    Is there a know working solution to use email link to allow access to l2tp vpn?

    I have some other devices I can try, but I have several of these Flex 200's, be nice if it worked.

    Bret

  • PeterUK
    PeterUK Posts: 3,391  Guru Member
    100 Answers 2500 Comments Friend Collector Seventh Anniversary
    edited June 22

    It will need to be added for Flex H models

    Unless your talking about non H models in which case I got Email working on them

  • mm_bret
    mm_bret Posts: 63  Ally Member
    First Comment Fourth Anniversary

    It's an old Flex 200/USG60 (not H Series)…Looks like I posted this in the wrong forum.

    So you were able to get an l2tp ipsec vpn working with an email authorization link?

    I will try once more

  • PeterUK
    PeterUK Posts: 3,391  Guru Member
    100 Answers 2500 Comments Friend Collector Seventh Anniversary
    edited June 22

    I tested SSL VPN and it work so  l2tp ipsec vpn should not be a problem

    When you set up the the Mail from keep it the same as user name Email you try with just TLS enabled or STARTTLS.

    Some Email providers don't forward unknown Mail from or if you have a DDNS you need to add a spf Record like.

    v=spf1 include:_spf.virginmedia.com ~all

    also check SPAM