Using ER7206 to connect to L2TP server in a different location

Using ER7206 to connect to L2TP server in a different location

Using ER7206 to connect to L2TP server in a different location
Using ER7206 to connect to L2TP server in a different location
2 weeks ago - last edited a week ago
Model: ER7206 (TL-ER7206)  
Hardware Version: V2
Firmware Version: 2.0.1

Hi all,

 

I must be missing something because this seems overly complicated.  I have a ER7206 in one location and a ER605 in another location.

 

The ER605, we set up a L2TP VPN, I can connect to it fine with windows vpn settings, all is working.

 

What I want to do is configure the ER7206 to connect to that same vpn server, and have any devices connected to that router also feed through the vpn.  Is this possible?  Everything I look up is all about setting up the server (which is already done) and connecting with the computer/device directly, but I really want the ROUTER to connect to that server.

 

Any help would be awesome, thank you.

 

 

  0      
  0      
#1
Options
1 Accepted Solution
Re:Using ER7206 to connect to L2TP server in a different location-Solution
a week ago - last edited a week ago

  @Halestormm 

 

In remote subnet you add a local network of your server where your cloent should connect.

So if you have a LAN (for example): 192.168.1.1 with mask 255.255.255.0 on your server then you should put there 192.168.1.0/24

 

 Name is just generic thing, just for you. No need to think on that.

 

Here's an article of how-to configure a Client on Omada gateway in Standalone Mode:

https://www.tp-link.com/pl/support/faq/3756/

 

And here's for server config, just in case:

https://www.tp-link.com/pl/support/faq/3025/

Recommended Solution
  1  
  1  
#4
Options
6 Reply
Re:Using ER7206 to connect to L2TP server in a different location
2 weeks ago

  @Halestormm 

 

Have you configured a VPN client on your ER7206 so it knows how to connect? 

 

Can you share screenshots of you server (er605) and client (ER7206) configuration? Blur out all sensitive data ofc. 

  0  
  0  
#2
Options
Re:Using ER7206 to connect to L2TP server in a different location
a week ago

Hi there,

 

So I was in the right spot in just adding a "VPN Client" on the non-server router?  I started to go through and got stuck on the "Remote Subnet:" as I did not know what to add in there.  Also wasn't sure if just having a generic name under "tunnel" or if that needs to have something entered.

 

Any help would be appreciated.

File:
vpn.pngDownload
  0  
  0  
#3
Options
Re:Using ER7206 to connect to L2TP server in a different location-Solution
a week ago - last edited a week ago

  @Halestormm 

 

In remote subnet you add a local network of your server where your cloent should connect.

So if you have a LAN (for example): 192.168.1.1 with mask 255.255.255.0 on your server then you should put there 192.168.1.0/24

 

 Name is just generic thing, just for you. No need to think on that.

 

Here's an article of how-to configure a Client on Omada gateway in Standalone Mode:

https://www.tp-link.com/pl/support/faq/3756/

 

And here's for server config, just in case:

https://www.tp-link.com/pl/support/faq/3025/

Recommended Solution
  1  
  1  
#4
Options
Re:Using ER7206 to connect to L2TP server in a different location
Thursday

Hi there,

 

Follow up question to this, just got around to getting everything configured and I was able to connect to the vpn server via the router, I can see in the tunnel list I am connected, I see in the system log that authentication and such was successful... BUT ... when I goto check my IP there is no change when connected with this router. 

 

Once the VPN client is set up correctly and connected... do I have to tell the WAN/LAN to use that vpn connection?  Or should it do it automatically?

 

Thanks for the help.

  0  
  0  
#5
Options
Re:Using ER7206 to connect to L2TP server in a different location
Friday

  @Halestormm 

 

Hi, 

 

I think IPsec, L2TP are designed to share LAN only. So all the external traffic goes via local ISP. 

 

If you wish to move whole traffic via one of your routers, I guess you should configure OpenVPN or SSL VPN connection with Full Mode enabled. Then whole network traffic will get redirected to your VPN server. 

 

I guess such thing is possible to do with other VPNs but would require some static routing config. 

  1  
  1  
#6
Options
Re:Using ER7206 to connect to L2TP server in a different location
Friday

Halestormm wrote

Hi there,

 

Follow up question to this, just got around to getting everything configured and I was able to connect to the vpn server via the router, I can see in the tunnel list I am connected, I see in the system log that authentication and such was successful... BUT ... when I goto check my IP there is no change when connected with this router. 

 

Once the VPN client is set up correctly and connected... do I have to tell the WAN/LAN to use that vpn connection?  Or should it do it automatically?

 

Thanks for the help.

  @Halestormm 

I'm not entirely sure how you do it in stand alone, but in controller mode I go to routing and policy routing, there you can define what should go in the L2TP tunnel, if you choose ipgroup_any as the destination all traffic goes via the L2TP tunnel.

 

here is an example of how it is done in controller mode. it is probably quite similar to stand alone

 

 

 

 

 

  0  
  0  
#7
Options