I believe I've followed the Roadwarrior manual to the letter to set up L2TP-IPsec VPN, but the behavior of ASL 5.202 suggests that things have changed and following the manual doesn't seem to suffice.
Specifically, the roadwarrior manual statest that the only Packet Filter rules one needs is for the L2TP-pool.
After setting up ASL and attempting the connection, the packet filter shows that UPD 1701 is being blocked.
Adding a rule explicitly allowing this traffic has no effect. It's still blocked.
My rule is
Source_Addr: Any
Service: 1701 [a custom rule w/ port 1701 as
destination port and any as source port).
Destination Addr: Any.
All of this traffic is still blocked and no VPN connections with L2TP can be made.
Has anyone else seen this behavior?
This thread was automatically locked due to age.