Skip to main content

How To Setup VPN L2TP server in Mikrotik Router

Easy process to configure L2TP VPN server in Mikrotik router.

In this tutorial, We can see how easily configure and deploy L2TP VPN server in Mikrotik router.This is a easy process we can see step by step how to it configure.

Step 1. Create a IP Pool.
Step 2: Create PPP Profile for L2TP.
Step 3: L2TP VPN Server configure
Step 4: Create user Secret for L2TP.


Lets consider the following Diagram for complete all these steps.


Here, Remote user is using ip 192.168.20.2 which can connect with L2TP VPN and connected with local network of 192.168.20.0/24 and 192.168.10.0/24. L2TP Local Address is 192.168.20.1.
Make sure that all this local block or subnet can NAT or src-nat in router through a public IP (here ip 10.5.8.10)

First Login to the Mikrotik Router via Winbox and click IP then Pool:


Click on the “+ Symbol” to add new pool, Name will be whatever you want like I named it VPN_Pool_20 add the address range (192.168.20.2-192.168.20.30, in my case), then click OK.

Now on the PPP page, switch to the “Profiles” tab. Click on the + sign to create new profile, Name will be whatever you like (like I use VPN-POOL), set local address 192.168.20.1 and set pool that we have created earlier for Remote address and set DNS Server address here we are using 8.8.8.8 then click OK.


Now go to the PPP Section click on Interface and Click “L2TP Server” and check the Enabled then in Default Profile select default or default-encryption or your created any profile.here we are using VPN-POOL then Checked all authentication protocol (chap,pap,mschap2,mschap1) and finally if you are want to use ipsec over L2TP you can select yes in Use IPsec tab and put a IPsec Secret key here we use abc123abc you can use whatever u want.But if you don’t want to use IPsec you can select no.

L2TP configuration has done now we will create user from Secrets tab. click on  the “Secrets” tab of the PPP window. Click on the + sign to create new user, add the name(which act as username), password and service may be any or l2tp and profile that we have created in the previous step.


L2TP Client Setup on Remote User laptop Windows 10:
I would like to request to visit https://net-ship.blogspot.com/2020/04/vpn-client-setup-in-windows.html  blog to configure step by step any VPN client in Windows System including PPTP, L2TP etc.


Comments

Post a Comment

Popular posts from this blog

How to Setup VPN PPTP Server in Mikrotik Router? (Tutorial)

PPTP Server is using for VPN. Its so easy to configure pptp server in Mikrotik. Now we can see how easily configure pptp server in Mikrotik router. Lets see the below diagram. Login to the Mikrotik Router via Winbox and click IP then Pool : Click on the “ + Symbol ” to add new pool, Name will be whatever you want like I named it VPN_Pool_20  add the address range ( 192.168.20.2-192.168.20.30 , in my case), then click  OK. Now go to the PPP Section and Click “ PPTP Server ” and check the Enabled : Now on the PPP  page, switch to the “ Profiles ” tab. Click on the + sign to create new profile, Name will be whatever you like (like I use VPN-POOL ), set the pool that we have created earlier for “Local Address” AND “Remote address“, then click  OK . Now click on  the “ Secrets ” tab of the PPP window. Click on the + sign to create new user, add the name(which act as username), password and service may be any or p...

How to Setup DHCP Server and IP Pool in Mikrotik Devices

DHCP( Dynamic Host Configuration Protocol),basically a network management protocol used to dynamically assign ip address to any network device. We will try to configure DHCP server in Mikrotik router in this tutorial. Consider following diagram we can see LAN gateway configure on ether1 interface.we will setup DHCP server for LAN 192.168.0.0/24. First, we have login Mikrotik with admin privilege.click IP tab and then click pool to create ip pool for dhcp server. In IP Pool window,click on Pools,  then click + symbol and then mention a pool name in Name here we use Local_Pool then mention range of ip address, we use 192.168.0.2-192.168.0.254  then click OK . But you can create ip range as you like and create multiple pool.Here Next pool is selected none but you can select another created pool in Next Pool if more ip requirements over existing pool. Then Local_Pool will create. Now click IP then click  DHCP Server to create ...

How to block Facebook, Youtube, any webpage and apps from Mikrotik effectively

 Steps 1: First of all we create a address list of local ip lan in IP Firewall Address List in Mikrotik Firewall or Router. Step 2: Then we can create a Firewall Raw rule for domain  .facebook.com  which can create a dynamic IP address list which can make a ip list for Facebook. here we have uses list name IP-Facebook. Similar way, we can use address list IP-Facebook in all raw rule for .facebook.net, .fbcdn.net, .fbsbx.com, .fb.com, .fb.gg, .messenger.com. Now we can create a Firewall raw rule for domain .facebook.com. First here, we can select chain prerouting in general tab. Then, in Raw advance tab, select IP-LAN address list which we have create earlier in src and dst address list as like as screenshot and select not ! sign in dst. address list. And in content option write .facebook.com similarly for .facebook.net, .fbcdn.net, .fbsbx.com, .fb.com, .fb.gg, .messenger.com. Then in action tab, we can select add dst to address list and in Address list we can ...