ZyXEL MAX318M User Guide - Page 136

Security > L2TP VPN, > L2TP Client > Add, Table 58, LABEL, DESCRIPTION

Page 136 highlights

Chapter 8 Security Click Security > L2TP VPN > L2TP Client > Add to open this screen as shown next. Figure 76 L2TP Client: Add This screen contains the following fields: Table 58 L2TP Client: Add LABEL Profile Name L2TP Protocol Version NAT Mode? Auth Protocol DESCRIPTION Enter the name for this client connection. Select the L2TP Protocol Version 2 or 3. L2TPv2 is a standard method for tunneling Point-to-Point Protocol (PPP) while L2TPv3 provides improved support for other types of networks including frame relay and ATM. Select Yes if the client will be located behind a NAT enabled router. This will allow multiple clients using NAT to connect with L2TP at the same time. Select the Authentication Protocol allowed for the connection. Options are: MPPE Encryption • PAP - Password Authentication Protocol (PAP) authentication occurs in clear text and does not use encryption. It's probably not a good idea to rely on this for security. • CHAP - Challenge Handshake Authentication Protocol (CHAP) provides authentication through a shared secret key and uses a three way handshake. • MSCHAPv1 - Microsoft CHAP v1 (MSCHAPv1) provides authentication through a shared secret key and uses a three way handshake. It provides improved usability with Microsoft products. • MSCHAPv2 - Microsoft CHAP v2 (MSCHAPv2) provides encryption through a shared secret key and uses a three way handshake. It provides additional security over MSCHAPv1, including two-way authentication. If MSCHAPv1 or MSCHAPv2 is selected as an Auth Protocol, use the dropdown list box to select the type of Microsoft Point-to-Point Encryption (MPPE). Options are: • MPPE 40 bits - MPPE with 40 bit session key length • MPPE 128 bits - MPPE with 128 bit session key length • Auto - Automatically select either MPPE 40 bits or MPPE 128 bits MPPE Stateful? Select Yes to enable stateful MPPE encryption. This can increase performance over stateless MPPE, but should not be used in lossy network environments like layer two tunnels over the Internet. Server IP Address Enter the IP address of the L2TP server. User Name Enter the user name for connecting to the L2TP server. 136 WiMAX Device Configuration User's Guide

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290

Chapter 8 Security
WiMAX Device Configuration User’s Guide
136
Click
Security > L2TP VPN
> L2TP Client > Add
to open this screen as shown next.
Figure 76
L2TP Client: Add
This screen contains the following fields:
Table 58
L2TP Client: Add
LABEL
DESCRIPTION
Profile Name
Enter the name for this client connection.
L2TP Protocol
Version
Select the L2TP Protocol Version
2
or
3
. L2TPv2 is a standard method for
tunneling Point-to-Point Protocol (PPP) while L2TPv3 provides improved support
for other types of networks including frame relay and ATM.
NAT Mode?
Select
Yes
if the client will be located behind a NAT enabled router. This will
allow multiple clients using NAT to connect with L2TP at the same time.
Auth Protocol
Select the Authentication Protocol allowed for the connection. Options are:
PAP
- Password Authentication Protocol (PAP) authentication occurs in clear
text and does not use encryption. It’s probably not a good idea to rely on this
for security.
CHAP
- Challenge Handshake Authentication Protocol (CHAP) provides
authentication through a shared secret key and uses a three way handshake.
MSCHAPv1
- Microsoft CHAP v1 (MSCHAPv1) provides authentication
through a shared secret key and uses a three way handshake. It provides
improved usability with Microsoft products.
MSCHAPv2
- Microsoft CHAP v2 (MSCHAPv2) provides encryption through a
shared secret key and uses a three way handshake. It provides additional
security over
MSCHAPv1
, including two-way authentication.
MPPE Encryption
If
MSCHAPv1
or
MSCHAPv2
is selected as an
Auth Protocol
, use the drop-
down list box to select the type of Microsoft Point-to-Point Encryption (MPPE).
Options are:
MPPE 40 bits
-
MPPE with 40 bit session key length
MPPE 128 bits
-
MPPE with 128 bit session key length
Auto -
Automatically select either
MPPE 40 bits
or
MPPE 128 bits
MPPE Stateful?
Select
Yes
to enable stateful MPPE encryption. This can increase performance
over stateless MPPE, but should not be used in lossy network environments like
layer two tunnels over the Internet.
Server IP Address
Enter the IP address of the L2TP server.
User Name
Enter the user name for connecting to the L2TP server.