Field
Description
The function is disabled by default.
Send Certificate Re-
quest Payloads
Select whether certificate requests are to be sent during IKE
(phase 1).
The function is enabled with
#/
.
The function is enabled by default.
Send Certificate
Chains
Select whether complete certificate chains are to be sent during
IKE (phase 1).
The function is enabled with
#/
.
The function is enabled by default.
Deactivate this function if you do not wish to send the peer the
certificates of all levels (from your level to the CA level).
Send CRLs
Select whether CRLs are to be sent during IKE (phase 1).
The function is enabled with
#/
.
The function is disabled by default.
Send Key Hash Pay-
loads
Select whether key hash payloads are to be sent during IKE
(phase 1).
In the default setting, the public key hash of the remote end is
sent together with the other authentication data. Only applies for
RSA encryption; activate this function with
#/
to sup-
press this behaviour.
18.2 L2TP
The layer 2 tunnel protocol (L2TP) enables PPP connections to be tunnelled via a UDP
connection.
Your bintec device supports the following two modes:
• L2TP LNS Mode (L2TP Network Server): for incoming connections only
• L2TP LAC Mode (L2TP Access Concentrator): for outgoing connections only
Note the following when configuring the server and client: An L2TP tunnel profile must be
Funkwerk Enterprise Communications GmbH
18 VPN
bintec Rxxx2/RTxxx2
343