Home > Archive > 70-220 > August 2003 > L2tp/firewall ?





You are viewing an archived Text-only version of the thread. To view this thread in it's original format and/or if you want to reply to this thread please [click here]

Author L2tp/firewall ?
_Lo_

2003-07-25, 10:05 am

Hello guys,

just 2 questions : does L2TP network trafic pass a firewall? I know it can't pass a NAT because the NAT modifies the headers.

And when do we need to use PPTP instead of L2TP (apart of the NAT case)?

thanx...
jeff_j_black

2003-07-25, 10:29 am

L2TP will pass a firewall, provided the appropriate ports are configured on the firewall. The only other restriction on L2tp that I know of concerns whether or not the client has the capability for L2TP.
_Lo_

2003-07-25, 11:08 am

quote:
Originally posted by jeff_j_black
L2TP will pass a firewall, provided the appropriate ports are configured on the firewall. The only other restriction on L2tp that I know of concerns whether or not the client has the capability for L2TP.


That's what I was thinking...

Thanx (as usual JB... )
curiousgeorge

2003-08-04, 3:15 am

The choice of PPTP or L2TP is a question of how you want to encrypt your data transmission.

PPTP automatically uses MPPE for encryption.

L2TP does not automatically use encryption. You must combine it with IPSec to encrypt data.

L2TP w/ IPSec is more secure than using PPTP w/ MPPE, but it is also harder to set up.
Tarzanboy

2003-08-04, 2:11 pm

You can use L2TP with ESP through NAT, but you need to make certain whether the NAT router is compatible with AH, if you want to use that method.

The issue with NAT is specific to AH rather than ESP as AH protects the header, preventing the change from internal IP addressing to the external IP address and ESP doesn't.

Cheers,
TB
Sponsored Links





Free Braindumps | MCSE braindumps software forum

Copyright 2003 - 2008 examnotes.net