VPN L2TP over IPSEC: double safety?

Discussion in 'Cisco' started by Bert Roos, Feb 25, 2004.

  Bert Roos

    Bert Roos Guest


    Is it a correct conclusion that L2TP over IPSEC offers two safety
    mechanisms? One because the clients must have a certificate issued by the CA
    registered in the VPN server (a PIX in my case) and one because the users
    must know a valid username/password combination (or certificate).
    Bert Roos, Feb 25, 2004
  2. Yes this is true. Be aware of the limitations though, chief among which is
    that you cannot have NAT in the way, all your clients must have real,
    routable IPs on the interface from which they're connecting.
    Eric Sorenson, Feb 25, 2004
