3.129.69.58 - United States, Fairfield
Router

Setting up L2TP VPN on Mirkotik (RouterOS)

Setting up a VPN connection using the L2TP protocol in the Mikrotik RouterOS is easy.

1
Log in to the router's web interface. The password can be found on the sticker that comes with the router.
Next
Setting up L2TP VPN on RouterOS, step 1 Setting up L2TP VPN on RouterOS, step 1
2
Go to Interfaces, open tab Interface, click on Add new and select L2TP Client.
Next
Setting up L2TP VPN on RouterOS, step 2 Setting up L2TP VPN on RouterOS, step 2
3
Fill in the fields as follows:
  • Connect To - the connection server, the list of servers can be found in readme.txt in the subscription archive.
  • User and Password - the login and password of the subscription, can be found in readme.txt in the subscription archive.
  • Add Default Route - enable the checkbox.
  • Allow - enable only mschap2.
If you plan to use additional traffic encryption, you should fill in the following fields: If you do not plan to use traffic encryption (IPsec), you should go to step 8.
Далее
Setting up L2TP VPN on RouterOS, step 3 Setting up L2TP VPN on RouterOS, step 3
4
Go to IP - IPsec, open Proposals tab, click on default.
Далее
Setting up L2TP VPN on RouterOS, step 4 Setting up L2TP VPN on RouterOS, step 4
5
Set the checkboxes as shown in the screenshot, click ОК.
Next
Setting up L2TP VPN on RouterOS, step 5 Setting up L2TP VPN on RouterOS, step 5
6
Go to IP - IPsec, open Profile tab, click on default.
Next
Setting up L2TP VPN on RouterOS, step 6 Setting up L2TP VPN on RouterOS, step 6
7
Set the checkboxes as shown in the screenshot, click ОК.
Next
Setting up L2TP VPN on RouterOS, step 7 Setting up L2TP VPN on RouterOS, step 7
8
Go to Interfaces, open Interface tab. After about a minute, the letter R should appear to the left of the l2tp-out1 interface created in step 2, which means running – the connection has taken place. If the connection failed, you can press the D button and then the E button to disable and enable the interface, and wait another minute. If you enter the interface by clicking on l2tp-out1, you can see the Connected status.
Next
Setting up L2TP VPN on RouterOS, step 8 Setting up L2TP VPN on RouterOS, step 8
9
Go to IP - Firewall, open NAT tab, click Add New.
Next
Setting up L2TP VPN on RouterOS, step 9 Setting up L2TP VPN on RouterOS, step 9
10
In the Out. Interface field specify the L2TP interface created in step 3. Select masquerade in the Action field, then click OK (for convenience, the other options are not shown in the screenshot).
Next
Setting up L2TP VPN on RouterOS, step 10 Setting up L2TP VPN on RouterOS, step 10
11
If your Internet connection type is PPPoE, go to the Interfaces tab and click on the interface line with the PPPoE Client type.
Next
Setting up L2TP VPN on RouterOS, step 11 Setting up L2TP VPN on RouterOS, step 11
12
Set the Default Route Distance to 10 and click OK.
Next
Setting up L2TP VPN on RouterOS, step 12 Setting up L2TP VPN on RouterOS, step 12
13
If your Internet connection type is IPoE, go to the IP - Routes. At the top of the route list we see two routes with Dst. Address 0.0.0.0/0. The first route for our VPN traffic is inactive, as indicated by the absence of the letter A in the DS string. You also need to make sure that in the Gateway field for this route is specified "reacheble". The second route is standard, and it is active, as indicated by the letter A in the DAS line. In order for our traffic to go through the VPN, we need to lower the priority of the standard route by setting its Distance to 10. To do this, you need to remember the address of the gateway specified in the Gateway. In the screenshot, the gateway address is 192.168.10.1, it may be different for you. Next, click on the Add New button.
Next
Setting up L2TP VPN on RouterOS, step 13 Setting up L2TP VPN on RouterOS, step 13
14
In the Gateway field specify the gateway address from the previous step, in the Distance set 10 and click OK.
Next
Setting up L2TP VPN on RouterOS, step 14 Setting up L2TP VPN on RouterOS, step 14
15
We see that in the route table have two identical routes with different Distance fields. Now delete a route from Distance 1 by clicking on “-” button. This completes the setup.
To top
Setting up L2TP VPN on RouterOS, step 15 Setting up L2TP VPN on RouterOS, step 15

Registration


E-mail
Language
Password
Confirm Password

Support and Feedback