by erwin » Dec 14 04 8:19 am
Hi Max
Once you have both ends of your VPN configured with the appropriate security settings i.e. security certificate etc, connection details if using IPsec etc. that they require to connect together for the VPN, then configuring WinGate is fairly simple. There is quite a large chunk of info on the MS website regarding configuring L2tp VPNs.
The only thing required for WinGate to allow L2TP VPN traffic through to the RAS server hosting the VPN is to open the ports used redirect them to the internal IP of the RAS server.
You can do this by open up ENS in GateKeeper and selecting the port security tab. Click add to add a new port.
Once the port range configuration opens select the "Connections from the Internet and select the approriate protocol (UDP)and port (1701)(I think this is one of the ports LT2P with IPsec uses by default, BUT you will have to refer to MS documentation knowledge base on the exact specific ports/protocol used.
Then select the redirect packet option further down the page and enter the internal IP address of the RAS server. Remote vpn clients will specify the external IP of the WinGate server as the VPN to connect to, and this way all incoming L2TP VPN traffic from the Internet on this interface will be redirected to the RAS Server.
The new port mapping will then appear in the port security tab in GateKeeper once you've clicked OK.
WinGate will not require any other configuration to allow you to implement your MS L2tp VPN, as it is merely passing the traffic in this scenario.
Regards
Erwin