Sunteți pe pagina 1din 13

How to create a L2TP/IPSEC VPN connection with DSR-1000AC

using Android/Apple iOS/Windows 10?


[Topology]
PC01---(LAN)DSR-1000AC(WAN-DHCP-192.168.11.110)---(L2TP/IPSEC VPN)---PC02
PC01---(LAN)DSR-1000AC(WAN-DHCP-192.168.11.110)---(L2TP/IPSEC VPN))))(((iOS and Android device
*DHCP-192.168.11.110(could be confirmed in Status > WAN)
[Device Firmware]
DSR-1000AC HW:A1 FW:v3.12B101H_WW
/Windows 10 Pro
/iOS device: iPhone 8 iOS v11.2.6
/Android device: Nexus 6P Android 8.1.0

Configuration on DSR-1000AC:
1.Configure DSR-1000AC’s WAN1’s IP, in this case we use DHCP, we get IP address from DHCP server
192.168.11.110, which we will use later for our client to set as remote VPN server IP.
2.Go to Security > Authentication > Internal User Database > Groups & Security > Authentication >
Internal User Database > Users, to create the new group and the user account for L2TP connect.
Note: Multiple devices are not able to use same account at the same time, please create multiple
accounts accordingly. Remember the user name and password, we need to input user name and
password later.
 Create new group:
 Create new user:
3. Go to VPN > L2TP VPN > L2TP Server
We enable the L2TP server mode to EnableIPV4, setup the IP address range we prepare to give
to our L2TP clients, and use Local User Database as authentication.

4. Go to VPN > IPSec VPN > Policies to add new IPSec policy.
Now we setup the IPSEC policy, when set for L2TP/IPSEC as a L2TP server, we change the L2TP
mode to Gateway, and our IPSEC mode will change to Transport Mode automatically, if we
choose none for L2TP mode, the IPSEC mode will change to tunnel mode automatically; we also
use FQDN with 0.0.0.0 as remote endpoint since we are issuing to all the users ( no specific
endpoint)
We need to setup the Pre-shared Key for IPSEC policy, which we will later set on our client device
as well. In this case the PSK is 12345678
Finish DSR-1000AC set up
Configuration on Windows 10:
1. Add a new connection by pressing “Set up a new connection or network”

2. Choose “Connect to a workplace” and press next.

3.Choose “Use my Internet Connection(VPN)”


4.Type DSR-1000AC’s WAN IP as our remote server’s IP address at Internet Address, in this case is
192.168.11.110, and setup a name for our connection.

5.Right click on properties and set as below


6.Advanced settings > Input pre-shared key 12345678

7.Press Connect and input user name & password


8.Status after connected

Configuration on Nexus 6P:


1. Click “Network & Internet” > “VPN” 2.Add a new L2TP/IPSec VPN profile
3.Click Connect. 4.It will show “Connected”.

5.Check the status.


Configuration on iPhone 8:
1.Go to Settings > VPN > Add VPN Configuration

2. Input each column(Secret is the Pre-Shared Key of DSR-1000AC)


3.Make the Status to “Connect”, and it will show “Connected”.

4.We can check status after connected.

End.

S-ar putea să vă placă și