Can this DIAGRAM be achieved?

This thread has been locked for further replies. You can start a new thread to share your ideas or ask questions.

Can this DIAGRAM be achieved?

This thread has been locked for further replies. You can start a new thread to share your ideas or ask questions.
Can this DIAGRAM be achieved?
Can this DIAGRAM be achieved?
2014-12-07 05:45:05 - last edited 2021-08-21 04:31:44
Region : UnitedStates

Model : TL-ER604W

Hardware Version : V1

Firmware Version :

ISP :


Hello People!

I am now testing a TL-ER604W router, and thinking about buying 5-10 of them, together with a TL-ER6020. This will, however, depend on the answers to my following questions:

1) Can the setup seen in the diagram below be achieved with these two particular routers?
2) If yes, would someone be kind enough to provide me with step-by-step instructions on each setting in the L2TP pane of both routers?

At this point I'm not even sure if this is, in fact, a LAN-to-LAN setup, or a special case of CLIENT-to-LAN ?

Any thoughts and answers much appreciated!



  0      
  0      
#1
Options
5 Reply
Re:Can this DIAGRAM be achieved?
2014-12-08 17:34:20 - last edited 2021-08-21 04:31:44
  0  
  0  
#2
Options
Re:Can this DIAGRAM be achieved?
2014-12-08 23:15:37 - last edited 2021-08-21 04:31:44
I have a question.
Why are you using L2TP to accomplish the virtual private network in your diagram?
L2TP offers no encryption and no security what so ever.
  0  
  0  
#3
Options
Re:Can this DIAGRAM be achieved?
2014-12-09 00:30:46 - last edited 2021-08-21 04:31:44
First, thanks Ada for the link. It confirmed what I had been thinking and I successfully applied it using the L2TP tunnel option! I haven't yet received the 6020, but I was able to use Mac OS X 10.10.1 Yosemite as remote client to connect to the 604 and its LAN, set up for now as L2TP server.

Even without the 6020, and having to manually press "connect" on the Mac as L2TP client, I can already ping both ways from and to any computer on the 604's LAN. Works beautifully and I'm looking forward to receiving the 6020. Once I have that, I will reverse the roles as per diagram: 6020 at head end, multiple 604s at branches. I'm confident that through this setup my ultimate goal of an always-on LAN-to-LAN VPN network with automatic client-side initiation will be accomplished.

@Vpnrouter:
I'm actually using L2TP/IPsec, not simple L2TP. If employed together with IPSec, L2TP offers much superior encryption to PPTP.

As it states in the user guide of either of these routers, all you have to do to get L2TP/IPSec is enable "encryption" in the L2TP pane and enable IPSec under its own pane. No need to fill out anything else there!

My Mac is strictly L2TP/IPSec, so the fact that I got it to connect with the 604 (using the same shared secret) is proof that it's all properly encrypted using IPSec.

I hope this helps others as well. These are awesome products!
  0  
  0  
#4
Options
Re:Can this DIAGRAM be achieved?
2014-12-09 01:16:04 - last edited 2021-08-21 04:31:44
I updated my diagram above with corrections and additional info...
  0  
  0  
#5
Options
Re:Can this DIAGRAM be achieved?
2014-12-09 04:12:34 - last edited 2021-08-21 04:31:44
Good choice securing your data with IPSec.
  0  
  0  
#6
Options