Virtual PrivateNetworks(VPN) L2TP
IX20 User Guide
620
3. (Optional) Set the UDP listening port that L2TPservers will listen on:
(config)> vpn l2tp port value
(config)>
where value is an integer between 1 and 65535. The default is 1701.
4. Set the accesscontrol for L2TPtunnels:
n
To limit access to specified IPv4 addresses and networks:
(config)> add vpn l2tp acl address end value
(config)>
Where value can be:
l
Asingle IPaddress or host name.
l
Anetwork designation in CIDRnotation, for example, 192.168.1.0/24.
l
any: No limit to IPv4 addresses that can access the service-type.
Repeat thisstep to list additional IPaddressesor networks.
n
To limit access to specified IPv6 addresses and networks:
(config)> add vpn l2tp acl address6 end value
(config)>
Where value can be:
l
Asingle IPaddress or host name.
l
Anetwork designation in CIDRnotation, for example, 2001:db8::/48.
l
any: No limit to IPv6 addresses that can access the service-type.
Repeat thisstep to list additional IPaddressesor networks.
n
To limit access to hosts connected through a specified interface on the IX20 device:
(config)> add vpn l2tp acl interface end value
(config)>
Where value is an interface defined on your device.
Display a list of available interfaces:
Use ... network interface ?to display interface information:
(config)> ... network interface ?
Interfaces
Additional Configuration
-------------------------------------------
defaultip Default IP
defaultlinklocal Default Link-local IP
eth1 ETH1
eth2 ETH2
loopback Loopback
modem Modem