Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Sophos UTM 9.707-5 L2TP with Radius over public IPV6

Hello all,

right now we are using a Sophos UTM 9.707-5 L2TP with a Radius Server for the authentication an Certificates.

The connections for the clients is working over a public ipv4 adresse.

Its all working fine.

We are using an public dns entry for the remote connection that shows on an ipv4 adress.

More and more provider are using DSLite so that the homeoffice users are getting an public ipv6 adresse.

Is L2TP working with ipv6 using DSLite?

Right now our WAN interface only has a ipv4 address, we want to change that so that our WAN interface has an ipv4 and a ipv6 adresse.

After that we change our public dns entry so that it has an ipv4 and a ipv6 adress that shows on our WAN interface.

If we do so is it possible that a homeoffice user that is using a public ipv6 adress that eh can connect to our company with l2tp?



This thread was automatically locked due to age.
Parents
  • You should be able to once you configure the UTM for IPv6, as you would just assign the VPN Pool for your L2TP which would already be IPv6 after the configuration.

    XG 19.5 GA 64-bit | Intel Xeon 4-core v3 1225 3.20Ghz
    16GB Memory | 500GB SSD HDD | GB Ethernet x5

Reply
  • You should be able to once you configure the UTM for IPv6, as you would just assign the VPN Pool for your L2TP which would already be IPv6 after the configuration.

    XG 19.5 GA 64-bit | Intel Xeon 4-core v3 1225 3.20Ghz
    16GB Memory | 500GB SSD HDD | GB Ethernet x5

Children
  • Hello Amodin,

    thank you for your answer

    For example:

    Client

    Is in Homeoffice and has an local (private) ipv4 adresse

    Internet Access ist over an public ipv6 adresse

    Now the user is starting l2tp

    He will establish the l2tp tunnel from his public ipv6 adresse to our wan interface with an ipv6 adress.

    After the connection ist established he will geht an ipv4 adress from ou L2TP pool network.

    So the client will get an local (private) ipv4 adress and the tunnle is established over an public ipv6 adress.

    correct?

    is that working?