Virtual Private Networking
155
L2TP server
The L2TP Server runs in a similar way to the PPTP Server. A range of IP addresses is
allocated, and then username and password pairs are created to allow users to log-on.
Note
To increase security, L2TP VPN connections from Windows PCs are also run through an
IPSec tunnel. This means an IPSec connection must be configured and enabled on the
SnapGear appliance as well as the L2TP server before Windows clients can connect.
The default way for the IPSec connection to be authenticated is to use x.509/RSA
certificates. The SnapGear appliance therefore needs to have IPSec configured with
both a CA and local certificate before connections can be established. The Windows
machine needs to have a copy of the CA certificate used to sign the SnapGear
appliance's local certificate, and similarly, the SnapGear appliance needs a copy of the
CA of the Windows certificate.
Содержание SnapGear
Страница 56: ...Dialin Setup 52 The following figure shows the user maintenance screen Figure 4 3...
Страница 178: ...174...