Disclaimer: This information is provided as-is for the benefit of the Community. Please contact Sophos Professional Services if you require assistance with your specific environment.
Table of Contents
Overview
The recommended reads contain the steps to configure an L2TP VPN connection between Sophos Firewall and Microsoft Windows.
This applies to the following Sophos products and versions:
Sophos Firewall
Changing the default Authentication Mechanism to Pre-shared Key
- Open Run.
- Enter
wf.msc
and click OK. - Click Properties.
- Go to IPSec Settings tab > IPsec defaults > Click Customize.
- Select Advanced under the Authentication method section and click Customize.
- Select and remove the current method under the First authentication section.
- Click Add in the same section.
- In the Add First Authentication Method screen, select Preshared Key (not recommended) and enter the preshared key configured in Sophos.
- Click OK.
Note: Ensure the IPSec Policy Agent, IKE, and AuthIP IPSec Keying Modules on the Windows computer run without error.
Creating the L2TP connection on the Windows computer
- Open Run.
- Enter the below command and click OK:
control.exe /name Microsoft.NetworkAndSharingCenter
- Click Setup a new connection or network
- Click Connect to a Workplace.
- Enter the details.
- Click Create.
Configuring the authentication mechanism of the L2TP connection
- Open the properties of the newly created L2TP connection and go to the Security tab.
- Click Advanced Settings.
- Select Use preshared key for authentication under the L2TP tab and specify the key configured in the Sophos Firewall.
- Click OK.
- Select the network symbol on the System Tray and right-click the previously created connection.
- Enter the credentials of the L2TP user.
The configuration establishes an L2TP connection between Sophos and a Windows computer.
Related information
- Sophos Firewall: View the VPN logs from the command-line interface
- Sophos Firewall: Create an L2TP remote access connection
Revamped
[edited by: Erick Jan at 7:49 AM (GMT -8) on 10 Dec 2024]