@@ -10,19 +10,19 @@ Need customize:
1010- SHARED-SECRET
1111- ROUTER-IP
1212- IP-POOL-START
13- - IP-POOL-END>
13+ - IP-POOL-END
1414
1515Be sure that IP-POOL-START and IP-POOL-END no interfer on local network IPs.
1616
1717My example on network 10.0.0.1/24 with a DHCP in range 10.0.0.32 to 10.0.0.199.
1818Assuming that internet connection is on * eth0*
1919
20- USER: vpnuser
21- PASSWORD: vpnpass
22- SHARED-SECRET: thesecret
23- ROUTER-IP: 10.0.0.1
24- IP-POOL-START: 10.0.0.200
25- IP-POOL-END: 10.0.0.249
20+ - USER: vpnuser
21+ - PASSWORD: vpnpass
22+ - SHARED-SECRET: thesecret
23+ - ROUTER-IP: 10.0.0.1
24+ - IP-POOL-START: 10.0.0.200
25+ - IP-POOL-END: 10.0.0.249
2626
2727Access to router via ssh:
2828
@@ -58,22 +58,22 @@ set firewall name WAN_LOCAL rule 60 log disable
5858set firewall name WAN_LOCAL rule 60 protocol udp
5959
6060set vpn l2tp remote-access ipsec-settings authentication mode pre-shared-secret
61- set vpn l2tp remote-access ipsec-settings authentication pre-shared-secret < SHARED-SECRET>
61+ set vpn l2tp remote-access ipsec-settings authentication pre-shared-secret SHARED-SECRET
6262
6363set vpn l2tp remote-access authentication mode local
64- set vpn l2tp remote-access authentication local-users username < USER> password < PASSWORD>
64+ set vpn l2tp remote-access authentication local-users username USER password PASSWORD
6565
66- set vpn l2tp remote-access client-ip-pool start < IP-POOL-START>
67- set vpn l2tp remote-access client-ip-pool stop < IP-POOL-END>
66+ set vpn l2tp remote-access client-ip-pool start IP-POOL-START
67+ set vpn l2tp remote-access client-ip-pool stop IP-POOL-END
6868
69- set vpn l2tp remote-access dns-servers server-1 < ROUTER-IP>
69+ set vpn l2tp remote-access dns-servers server-1 ROUTER-IP
7070set vpn l2tp remote-access dns-servers server-2 1.1.1.1
7171
7272set vpn l2tp remote-access outside-address 0.0.0.0
7373
7474set vpn ipsec ipsec-interfaces interface eth0
7575
76- set service dns forwarding options "listen-address=< ROUTER-IP> "
76+ set service dns forwarding options "listen-address=ROUTER-IP"
7777
7878commit ; save
7979
0 commit comments