Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Lt2p VPN using radius and certs

I am looking at setting up l2tp VPN and would like to use it in a similar way to how we control wireless access.

My idea was to use radius to authenticate just domain users and computers.

When I set it up it asks for a pre shared key. Can I confirm this is not the radius key. I take it you would have to know the pre shared key and pass radius to get on.

Would itsle more sense to use the cert option and roll the certificate out via AD.

If so what certificate would I use. Do I have to create a new one on the utm.

Many thanks.



This thread was automatically locked due to age.
  • Okay I have it working to some extent.

    To answer my own question in case anyone reads this yes the pre shared key is a different one to the radius server.

    What I have discovered is that apparently it is not possible to deploy via gpo a pre shared key. The solution seems to be to use certificates.

    Do I have to create a certificate just for this. We already push out a root certificate so that radius works for the wifi. Can I use that for the certificate. If so what do I need to upload into the Sophos to enable that to work?