Field
Description
The function is activated with
Enabled
.
The function is enabled by default.
Send Certificate Chains
Select whether complete certificate chains are to be sent during
IKE (phase 1).
The function is activated with
Enabled
.
The function is enabled by default.
Deactivate this function if you do not wish to send the peer the
certificates of all levels (from your level to the CA level).
Send CRLs
Select whether CRLs are to be sent during IKE (phase 1).
The function is activated with
Enabled
.
The function is disabled by default.
Send Key Hash Pay-
loads
Select whether key hash payloads are to be sent during IKE
(phase 1).
In the default setting, the public key hash of the remote end is
sent together with the other authentication data. Only applies for
RSA encryption; activate this function with
Enabled
to sup-
press this behaviour.
11.2 L2TP
The layer 2 tunnel protocol (L2TP) enables PPP connections to be tunnelled via a UDP
connection.
Your bintec device supports the following two modes:
• L2TP LNS Mode (L2TP Network Server): for incoming connections only
• L2TP LAC Mode (L2TP Access Concentrator): for outgoing connections only
Note the following when configuring the server and client: An L2TP tunnel profile must be
created on each of the two sides (LAC and LNS). The corresponding L2TP tunnel profile is
used on the initiator side (LAC) to set up the connection. The L2TP tunnel profile is needed
on the responder side (LNS) to accept the connection.
11 VPN
Funkwerk Enterprise Communications GmbH
338
bintec R1xxx/R3xxx/R4xxx