Hello all,
this device is driving me nuts at this moment.
I have been following multiple guides now (special thanks to uid://649954), and got phase 1 and phase 2 working, however when connecting I keep getting Invalid username or password in my logs, and droppig the connection.
I think my desired setup is quite simple and straight forward?
We have multiple vlans, each with its own subnet.
I want to connect to a single vlan, and be able to connect to hostnames on that vlan, but internet traffic should be outside the VPN.
What am I doing wrong?
Thanks in advance for the input :)
Below is my current configuration. (I have masked some privacy sensitive items)
System is USG 310
Firmware version is V4.25(AAPJ.1)
At first, I made sure I had a working connection to my AD, and created a user named "AD_L2TP_USERS", in the "ext-group-user" type, and made sure I could authenticate with my username (xander)
Next I made an L2TP pool, in the 192.168.201.1-192.168.201.20 range
[att=1]
Next I went to VPN -> IPSec VPN -> VPN Gateway, and created a new gateway
[att=2]
After that I went to VPN -> IPSec VPN -> VPNConnection, and created a new connection
[att=3]
Next I went ti VPN -> L2TP VPN
[att=4]
And Finally my routing and security policy (firewall)
[att=5]
[att=6]
Edit:
The logfile on de ZyXEL [masked ip side of the zyxel in blue, and client in green)
[att=7]
↧