Solved

Configuring an L2TP Over IPSec Tunnel on Juniper SSG520

Posted on 2010-09-17
9
2,662 Views
Last Modified: 2013-11-21
I am trying to create an L2TP Over IPSec Tunnel on a Juniper SSG520 Firewall.  I have been following this document:  http://kb.juniper.net/KB4094 and it is still not working.  I am not seeing any traffic even going to the "Dial Up VPN" policy.  My ultimate goal is to get mobile devices (iPhones, iPads, Android devices) connected to the VPN to be able to remote desktop computer/servers inside our network.  Has anyone done this before?  Or is there a better way to accomplish this?
0
Comment
Question by:NorthAmerican
  • 4
  • 3
9 Comments
 
LVL 36

Expert Comment

by:Jian An Lim
Comment Utility
mobile devices (iPhones, iPads, Android devices) connected to the VPN to be able to remote desktop computer/servers inside our network

I will strongly recommend not to go down with SSG VPN. they are more design to staticly assign.
If you want to get mobile device, I will recommend to use Juniper SA2500. These devices are clear cut and have much granular access to the network.

since you have relationship with Juniper, you should get a demo device from them to try out.

0
 

Author Comment

by:NorthAmerican
Comment Utility
We also have an F5 firepass 1200 VPN appliance, but have not figured out how to get that to work with mobile devices, which is why we decided to try with the SSG520.  Is there a way to make it work better with the F5 vpn appliance?
0
 

Author Comment

by:NorthAmerican
Comment Utility
Side note:  We are able to log into the vpn from mobile devices, but iPads, iPhones, and adroid devices are not able to download the necessary files to make remote desktop possible.
0
What Should I Do With This Threat Intelligence?

Are you wondering if you actually need threat intelligence? The answer is yes. We explain the basics for creating useful threat intelligence.

 
LVL 36

Expert Comment

by:Jian An Lim
Comment Utility
do iPhones, iPads, Android devices have java running?

i believe juniper SA (and maybe f5) use java as thier platform to make remote desktop possible.

from what my experience, i can't even get Mac to get a remote desktop because it lack of java.
0
 

Author Comment

by:NorthAmerican
Comment Utility
No, I don't believe they run java.  I was thinking somewhere along the lines of creating a tunnel from the mobile devices to either the Juniper SSG520 or Firepass 1200 so that these devices can then use their own apps to log into computers on the network.
0
 
LVL 36

Expert Comment

by:Jian An Lim
Comment Utility
good luck on that then.

i think i have exhausted my part.

If you SSG is under maintenance, give JTAC a call and let them sort out for you.
0
 

Accepted Solution

by:
NorthAmerican earned 0 total points
Comment Utility
I'm going to try posting a different question about this same problem to see if anyone has successfully connected an ipad, iphone, and android device with a sonicwall.  That may be the route we end up going.
0

Featured Post

PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

Join & Write a Comment

Have you considered what group policies are backwards and forwards compatible? Windows Active Directory servers and clients use group policy templates to deploy sets of policies within your domain. But, there is a catch to deploying policies. The…
Secure VPN Connection terminated locally by the Client.  Reason 442: Failed to enable Virtual Adapter. If you receive this error on Windows 8 or Windows 8.1 while trying to connect with the Cisco VPN Client then the solution is a simple registry f…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

744 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

13 Experts available now in Live!

Get 1:1 Help Now