Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    L2PT VPN maximum concurrent connections limit?

    IPsec
    l2tp vpn
    3
    7
    2.0k
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • A
      andrewmso
      last edited by

      We have recently had everyone start working from home, but we are having issues with people connecting to the L2TP VPN intermittently, which has always worked without issue in the past. I've looked over all the documentation I can find and cannot see anything configured incorrectly. So, is there a limit to the number of concurrent connections allowed to an L2TP VPN on pfSense?

      We are using a Netgate SG-3100 and have 28 users configured and some of these need to connect 2 or 3 devices.

      If there is a limit, is there a way to increase it?

      Thanks.

      Andrew.

      1 Reply Last reply Reply Quote 0
      • jimpJ
        jimp Rebel Alliance Developer Netgate
        last edited by

        I'm not aware of any limits there but you might check the size of your remote address range. If the mask there is for a smaller network, change it to a larger network, as long as it doesn't overlap. Most people set VPN networks up as a /24 which should be good for ~250 clients but it depends on the VPN type and settings how many can actually connect.

        There is some more general advice here: https://docs.netgate.com/pfsense/en/latest/vpn/scaling.html

        Nothing on the page about L2TP since it's not a recommended configuration, but some of the general info still applies.

        Remember: Upvote with the ๐Ÿ‘ button for any user/post you find to be helpful, informative, or deserving of recognition!

        Need help fast? Netgate Global Support!

        Do not Chat/PM for help!

        1 Reply Last reply Reply Quote 1
        • PippinP
          Pippin
          last edited by

          If I recall correctly it is a protocol limitation to connect from one location multiple times.

          I gloomily came to the ironic conclusion that if you take a highly intelligent person and give them the best possible, elite education, then you will most likely wind up with an academic who is completely impervious to reality.
          Halton Arp

          1 Reply Last reply Reply Quote 0
          • jimpJ
            jimp Rebel Alliance Developer Netgate
            last edited by

            That is a limitation of transport IPsec (Used by L2TP/IPsec), no two from the same site could connect in at the same time. But that wouldn't limit the total maximum number of users connected.

            Remember: Upvote with the ๐Ÿ‘ button for any user/post you find to be helpful, informative, or deserving of recognition!

            Need help fast? Netgate Global Support!

            Do not Chat/PM for help!

            1 Reply Last reply Reply Quote 0
            • PippinP
              Pippin
              last edited by

              @andrewmso said in L2PT VPN maximum concurrent connections limit?:

              have 28 users configured and some of these need to connect 2 or 3 devices

              I gloomily came to the ironic conclusion that if you take a highly intelligent person and give them the best possible, elite education, then you will most likely wind up with an academic who is completely impervious to reality.
              Halton Arp

              1 Reply Last reply Reply Quote 0
              • jimpJ
                jimp Rebel Alliance Developer Netgate
                last edited by

                Right, but that part of the behavior wouldn't have changed in most cases -- it never would have worked.

                Remember: Upvote with the ๐Ÿ‘ button for any user/post you find to be helpful, informative, or deserving of recognition!

                Need help fast? Netgate Global Support!

                Do not Chat/PM for help!

                1 Reply Last reply Reply Quote 0
                • A
                  andrewmso
                  last edited by

                  Thanks, I will look into setting up OpenVPN instead.

                  1 Reply Last reply Reply Quote 0
                  • First post
                    Last post
                  Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.