Zyxel USG 60 [244/327] How to import zywall usg certificate for l2tp over ipsec in windows 10

Zyxel USG 60 [244/327] How to import zywall usg certificate for l2tp over ipsec in windows 10
Chapter 5 Create Client-to-Site VPN Tunnels
ZyWALL/USG Series Handbook
244
3 If you see that Phase 1 IKE SA process has completed but still get [info] log message as below,
please check ZyWALL/USG Phase 2 Settings. ZyWALL/USG unit must set correct Local Policy to
establish the IKE SA.
Figure 526 MONITOR > Log
4 Ensure that the L2TP Address Pool does not conflict with any existing LAN1, LAN2, DMZ, or WLAN
zones, even if they are not in use.
5 If you cannot access devices in the local network, verify that the devices in the local network set
the USG’s IP as their default gateway to utilize the L2TP tunnel.
6 Make sure the ZyWALL/USG units’ security policies allow IPSec VPN traffic. IKE uses UDP port 500,
AH uses IP protocol 51, and ESP uses IP protocol 50.
7 Verify that the Zone is set correctly in the Zone object. This should be set to IPSec_VPN Zone so
that security policies are applied properly.
5.4 How to Import ZyWALL/USG Certificate for L2TP over
IPsec in Windows 10
This is an example of using the L2TP VPN and VPN client software included in Windows 10 operating
systems. When the VPN tunnel is configured, users can securely access the network behind the
ZyWALL/USG and allow traffic from L2TP clients to go to the Internet from a Windows 10 computer.
Figure 527 ZyWALL/USG L2TP VPN with Remote Windows 10 Client Example
Note: All network IP addresses and subnet masks are used as examples in this article.
Please replace them with your actual network IP addresses and subnet masks. This
example was tested using USG310 (Firmware Version: 4.13) and Windows 10 Pro
(Version: 10.0.10240)

Содержание

Скачать