Configuring a Dial-up VPN Using Windows XP Client with L2TP Over IPSec (without NetScreen-Remote)
Knowledge Base ID: KB10939
Version: 3.0
Published: 07 Oct 2008
Updated: 07 Oct 2008
Categories: . Firewall/IPSec_VPN
. L2TP
. ScreenOS

Synopsis:
Juniper Networks recommends using an IPSec VPN client application such as NetScreen-Remote due to Windows and protocol limitations. However, the Microsoft Windows XP native VPN client can be used for this application.

Problem:

Environment:
  • L2TP over IPSec
  • Windows XP Operating System on client
  • No NetScreen-Remote involved on client side
  • L2TP tunnel over IP Sec configuration on firewall

Solution:

The following Application Note documents 'Configuring a Dial-up VPN Using Windows XP Client with L2TP Over IPSec (without NetScreen-Remote)':

ScreenOS Windows L2TP IPSec


IMPORTANT:  Read the 'Limitations and Caveats' section of the Application Note.

Purpose:
Configuration