• April 15, 2024, 09:00:51 PM
  • Welcome, Guest
Please login or register.

Login with username, password and session length
Advanced search  

News:

This Forum Beta is ONLY for registered owners of D-Link products in the USA for which we have created boards at this time.

Author Topic: [DFL-260] - L2TP/IPSec VPN roaming client - error 789 and 792 on Win Clients  (Read 6802 times)

zhenhao

  • Level 1 Member
  • *
  • Posts: 2

I have a DFL-260, am trying to setup L2TP/IPSec VPN for roaming clients.

My setup is as below:

[ADSL ISP] <-> [CISCO ADSL ROUTER] <-> [DFL-260] <-> SWITCHES

I had configured the Cisco ADSL router to port forward to DFL-260 for the following ports:
- UDP 500
- UDP 4500
- UDP 1701

I had followed this guide for the whole setup: (PSK)
http://www.dlink.com/support/faqDetail/?prod_id=3248&print=1

Currently i have this issue where my Windows clients (XP/2003/7), when connecting, it will show "connecting to [vpn name]" then after awhile show either

Error 789 : The L2TP connection failed because the
security layer encountered a processing error during
initial negotiations with the remote computer.

Error 792:
The L2TP connection attempt failed because security
negotiation timed out.

I had tried many ways, but still not able to get it to work. I'm using the PSK setup for initial testing, easier to set than to introduction certs, additional complexity, i presume.

Please advise. Thanks.
Logged

Fatman

  • Level 9 Member
  • ****
  • Posts: 1675

Make sure that your Cisco is passing all the ports and protocols listed under the l2tp_ipsec-suite service group on your DFL-210.

It looks like you are missing a tunnelling protocol from your list.
Logged
non progredi est regredi

zhenhao

  • Level 1 Member
  • *
  • Posts: 2

Guess i missed the IP 50 and 51, now got to figure out how to relay that from the router to the firewall..  ???
Logged