EdgeRouter L2TP IPSec Server Setup

Video Statistics and Information

Video
Captions Word Cloud
Reddit Comments
Captions
hey welcome back so a couple months ago I did a video on how to configure PPTP for remote access to your router and a lot of you are now on iOS 10 and Apple has apparently removed that so what we're going to do is we're going to undo the PPTP setup and we're going to configure l2tp with IPSec so just take us a few minutes and then you can switch to that and not have to worry about it so I'm not going to go through the client setup if if you need help with that just put in the comments and then maybe I'll do a separate video on that but this is really just a router portion the first thing that we are going to do is we are going to SSH into their router and I hope you've all been getting familiar with your command-line interface but first thing we're going to do is we're going to go into configure mode and if you're not going to use PPTP at all you want to follow this part we're going to do one quick command here we're going to do delete VPN PPTP and then we're going to commit you can see down here in the in the GUI the GUI that is telling us that the command has changed we're going to go ahead and save that and we are done for a second with the command line we will be going back but I wanted to go over here and go to our firewall policies and we're going to take out the rules that we had created for PPTP so we will go ahead and delete this rule and delete that one and then while we're here we'll go ahead and create these way and local that's where this goes we'll go ahead and create these rules so there's going to be four rules and the first one is going to be we're going to call this one I ke and we're going to except in its UDP a destination is port 500 save that will add another one and it's going to be l2tp and now we are going to accept UDP and destination is 1701 then the next one is going to be ESP and will accept and let's choose a protocol by name and we'll do ESP save that and then last one is nat t will accept that it's going to be u EP can i do that for ESP we'll check that real quick and then if you like to keep your firewall rules in order will reorder this real quick I'll tick okay so now your firewall rules are dead so now we got to do is hop back over to the command line and run these commands and I'm also going to put them down in the description so we'll go back and you can see that it's been telling us that we've been making configuration changes now this is local authentication not radius you can do radius this covers local authentication only so we are still in configure mode and so first thing we'll do set VPN IPSec IPSec interfaces interface now since since the last time I've done a configuration video I have completely blown the configuration out of this edge router X and it used to be that my way in interface was eath one well now it's zero so if you run the the wizard and you've selected eath zero so now YZ 0 is my my wayne interface so I'm going to select e 0 and then we are going to enable NAT traversal and then we're going to tell it that the l2tp authentication mode is local and I'm going to add a I'm going to add a username and password here just to show you so user name is W how password let me and a man that is not a very secure password but it does take it so then the next thing we're going to do is we're going to define the upper and lower range of our DHCP pool for clients that are going to connect so this is where we're going to start and then so we'll have a start and stop now we're going to assign the DNS servers to those clients and I'm going to use Google for the first one and then for the second one we're going to use the good old 4.2.2 that's out there and then the next thing we're going to do is we're going to add the pre shared secret and then we're going to define that and then we're going to change the timeout you Hey and then we're going to set the auto firewall and then we'll set the remote access interface and this assumes that you have a dhcp address on e zero otherwise if it's if some of you have static out there and you're doing this put a comment and then we'll put that command out in the comments now if everything went well we should be able to commit this it'll do a sanity check here looks like the gooeys popped up then we're doing some stuff there and we'll save it and now if you've got a command if you've got dynamic dns set up on this you can connect now using l2tp with IPSec to your dynamic DNS name or if your IP really never changes you can connect so that'll do it for today if you liked the video please give me a thumbs up please comment subscribe and we'll see you at the next video
Info
Channel: Willie Howe
Views: 86,079
Rating: undefined out of 5
Keywords: edgerouter l2tp setup, how to setup l2tp ipsec edgerouter, how to setup l2tp vpn server edgerouter, how to setup ipsec vpn server on edgerouter, ios 10 pptp, setup edgerouter as ipsec server, setup edgerouter as l2tp server, ubiquiti edgerouter ipsec setup, ubiquiti edgerouter l2tp setup, ubiquiti edgerouter l2tp ipsec setup, how to setup edgerouter
Id: q-64ep6VYS8
Channel Id: undefined
Length: 8min 14sec (494 seconds)
Published: Mon Nov 21 2016
Related Videos
Note
Please note that this website is currently a work in progress! Lots of interesting data and statistics to come.