Quantcast
Channel: ZyXEL forum - dslreports.com
Viewing all articles
Browse latest Browse all 1492

ZyXEL USG 310 L2TP and Active Directory

$
0
0
Hello all, this device is driving me nuts at this moment. I have been following multiple guides now (special thanks to uid://649954), and got phase 1 and phase 2 working, however when connecting I keep getting Invalid username or password in my logs, and droppig the connection. I think my desired setup is quite simple and straight forward? We have multiple vlans, each with its own subnet. I want to connect to a single vlan, and be able to connect to hostnames on that vlan, but internet traffic should be outside the VPN. What am I doing wrong? Thanks in advance for the input :) Below is my current configuration. (I have masked some privacy sensitive items) System is USG 310 Firmware version is V4.25(AAPJ.1) At first, I made sure I had a working connection to my AD, and created a user named "AD_L2TP_USERS", in the "ext-group-user" type, and made sure I could authenticate with my username (xander) Next I made an L2TP pool, in the 192.168.201.1-192.168.201.20 range [att=1] Next I went to VPN -> IPSec VPN -> VPN Gateway, and created a new gateway [att=2] After that I went to VPN -> IPSec VPN -> VPNConnection, and created a new connection [att=3] Next I went ti VPN -> L2TP VPN [att=4] And Finally my routing and security policy (firewall) [att=5] [att=6] Edit: The logfile on de ZyXEL [masked ip side of the zyxel in blue, and client in green) [att=7]

Viewing all articles
Browse latest Browse all 1492

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>