Configuring an L2TP over IPSec User on the Juniper Firewall
Knowledge Base ID: KB4112
Version: 5.0
Published: 07 Oct 2008
Updated: 07 Oct 2008
Categories: . Firewall/IPSec_VPN
. L2TP
. ScreenOS

Synopsis:
Configuring an L2TP over IPSec User on the Juniper Firewall

Solution:
Note: This article applies to ScreenOS 5.0 and above.

 

To configure an L2TP over IPSec user on the Juniper Firewall, perform the following steps:

 


Step one: Open the WebUI. For an example of how to access the WebUI, consult:KB4060 - Accessing Your NetScreen, SSG, or ISG Firewall Using the WebUI 

Step two: From the ScreenOS options menu, click Objects, select Users, and then click Local.

Image of step two

Step three: Click New.

Image of step three

Step four: From the Edit screen, enter a User Name.

Note: For this example, we entered John Doe.

Image of step four and five

Step five: Click to select Enable.

Step six: Click to select IKE User.

Image of step six and seven

Step seven: Click to choose Simple Identity or Use Distinguished Name For ID. From IKE Identity, enter an identity name.

Note: For this example, we have selected Simple Identity. From IKE Identity, we have entered jdoe@netscreen.com.

Step eight: Click to select L2TP User. Enter the User Password, and then Confirm Password.

Image of step eight

Note:  If you would like this user to use specific settings, from L2TP/XAuth Remote Settings, enter WINS, DNS, and select the IP Pool to bind to. Otherwise, use the default settings for L2TP.

Step nine: Click OK.

Image of step nine

Purpose:
Troubleshooting