Virtual Private Networks (VPN) L2TP
IX10 User Guide
452
2. At the command line, type config to enter configuration mode:
> config
(config)>
3. (Optional) Set the UDPlistening port that L2TP servers will listen on:
(config)> vpn l2tp port value
(config)>
where value is an integer between 1 and 65535. The default is 1701.
4. Set the access control for L2TP tunnels:
n
To limit access to specified IPv4 addresses and networks:
(config)> add vpn l2tp acl address end value
(config)>
Where value can be:
l
A single IP address or host name.
l
A network designation in CIDR notation, for example, 192.168.1.0/24.
l
any: No limit to IPv4 addresses that can access the service-type.
Repeat this step to list additional IP addresses or networks.
n
To limit access to specified IPv6 addresses and networks:
(config)> add vpn l2tp acl address6 end value
(config)>
Where value can be:
l
A single IP address or host name.
l
A network designation in CIDR notation, for example, 2001:db8::/48.
l
any: No limit to IPv6 addresses that can access the service-type.
Repeat this step to list additional IP addresses or networks.
n
To limit access to hosts connected through a specified interface on the IX10 device:
(config)> add vpn l2tp acl interface end value
(config)>
Where value is an interface defined on your device.
Display a list of available interfaces:
Use ... network interface ? to display interface information:
(config)> ... network interface ?
Interfaces
Additional Configuration
-------------------------------------------
defaultip Default IP