03.04.2013 Views

fortigate-ipsec-40-mr3

fortigate-ipsec-40-mr3

fortigate-ipsec-40-mr3

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

FortiOS Handbook<br />

L2TP and IPsec (Microsoft VPN)<br />

Overview<br />

This section describes how to set up a VPN that is compatible with the Microsoft<br />

Windows native VPN, which is Layer 2 Tunneling Protocol (L2TP) with IPsec encryption.<br />

The following topics are included in this section:<br />

Overview<br />

Assumptions<br />

Configuring the FortiGate unit<br />

Configuring the Windows PC<br />

Troubleshooting<br />

The topology of a VPN for Microsoft Windows dialup clients is very similar to the topology<br />

for FortiClient Endpoint Security clients.<br />

Figure 33: Example FortiGate VPN configuration with Microsoft clients<br />

Remote Client<br />

For users, the difference is that instead of installing and using the FortiClient application,<br />

they configure a network connection using the software built into the Microsoft Windows<br />

operating system. Starting in FortiOS 4.0 MR2, you can configure a FortiGate unit to work<br />

with unmodified Microsoft VPN client software.<br />

Layer 2 Tunneling Protocol (L2TP)<br />

Port 1<br />

172.20.120.141<br />

Remote Client<br />

FortiGate_1 GGGGGG at at at at at at ateeeeee_ tee_11111111<br />

Port 2<br />

10.11.101.100<br />

Office LAN<br />

10.11.101.0/24<br />

Samba Server<br />

10.11.101.180<br />

FTP Server<br />

10.11.101.170<br />

DNS Server<br />

10.11.101.160<br />

HTTP/HTTPS<br />

10.11.101.120<br />

L2TP is a tunneling protocol published in 1999 that is used with VPNs, as the name<br />

suggests. Microsoft Windows operating system has a built-in L2TP client starting since<br />

Windows 2000. Mac OS X 10.3 system and higher also have a built-in client.<br />

FortiOS Handbook v3: IPsec VPNs<br />

01-434-112804-20120111 199<br />

http://docs.fortinet.com/

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!