L2TP over IPSec



  • I am trying to configure an L2TP over IPSec VPN in 2.2.5 and am getting the IPSec tunnel open, but at that point nothing else seems to be happening.  I am seeing no activity in the L2TP logs and I'm ultimately getting an 809 error in my Windows 7 native VPN Client.  Attached is my IPSec log but it never seems to pass over to L2TP for authentication.  Any thoughts?  I'm seeing nothing blocked in the firewall logs and I've got pass all TCP/UDP traffic rules on both the IPSec and L2TP tabs (Just doing lab configuration now).  L2TP is set up to pass IPs from a non-LAN subnet, but I've got Outbound NAT set up to NAT L2TP subnet back to the WAN IP I'm connecting to.


  • Rebel Alliance Developer Netgate

    That's a known issue with L2TP/IPsec on Windows Clients. See the warning here: https://doc.pfsense.org/index.php/L2TP/IPsec

    I've move on to IKEv2, L2TP/IPsec is not a good choice these days.


Log in to reply