Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

XG-85 L2TP IPSec Remote Access - Windows 10 Client

Hello,

I currently have a XG-85 configured for remote access VPN using L2TP.

I can connect in fine using iOS and Android inbuilt VPN clients however cannot connect using the Windows 10 inbuilt VPN client.

I have done all the usual steps such as ensuring MS-CHAP-v2 is enabled, etc and have experimented with different encryption, DH and authentication settings.

My understanding is that the Windows 10 VPN client has pretty narrow requirements re the above settings however have not found a winning combination. I have been able to connect Windows 10 VPN client to Edgerouters using L2TP in the past no dramas.

Can anyone steer me in the right direction?

I am getting log entries like:

parsing IKE message from 192.168.0.xxx500] failed

IKE_SA timed out before it could be established

received IKE message with invalid SPI (D27AF2A9) from other side

Regards,

Hugh



This thread was automatically locked due to age.
Parents
  • FormerMember
    0 FormerMember

    Hi ,

    Thank you for reaching out to Sophos Community.

    Try to set up security parameters as below on L2TP VPN adapter.

    You may set the authentication method for L2TP to ANY.

    console> set vpn l2tp authentication ANY
    console>
    console> show vpn configuration
    PPTP not configured.
    L2TP
    AUTHENTICATION ANY
    MTU 1410

Reply
  • FormerMember
    0 FormerMember

    Hi ,

    Thank you for reaching out to Sophos Community.

    Try to set up security parameters as below on L2TP VPN adapter.

    You may set the authentication method for L2TP to ANY.

    console> set vpn l2tp authentication ANY
    console>
    console> show vpn configuration
    PPTP not configured.
    L2TP
    AUTHENTICATION ANY
    MTU 1410

Children
No Data