L2TP VPN [message #123669] |
Fri, 21 August 2015 19:54  |
RMCholewa
Messages: 9 Registered: July 2014
|
|
|
|
Hi there,
I currently use multiple VPN service subscriptions with Kerio. Most VPN providers offer various VPN protocols, like PPTP, L2TP and OpenVPN.
Kerio is lacking regarding VPN config options. In fact, in Advanced, you may choose the auth method and, under security, Use MPPE, Require 128-bit encryption and allow stateful encryption.
I think that these Security options are only applicable when using PPTP. Funny is that even if you choose a L2TP tunnel, the security options are there too.
I want to use L2TP (more secure) but I can´t see anywhere any evidence that the tunnel is in fact encrypted and the parameters negotiated. The debug log says nothing about encryption, cypher etc.
How can I be sure that my l2tp traffic is encrypted? Are there any settings that I may use to force encryption options?
Thank you!
|
|
|
Re: L2TP VPN [message #123843 is a reply to message #123669] |
Tue, 01 September 2015 00:18  |
RMCholewa
Messages: 9 Registered: July 2014
|
|
|
|
Hi again,
Sorry to bump it, but I find it rather amusing that l2tp is a potentially more secure form of VPN, but there is not a single way of verifying that my connection is encrypted.
I am hardly a security expert, but afaik, you might use l2tp without encryption and, in fact, l2tp does not "provide" encryption. That´s why you associate l2tp with ipsec.
So, basically, there is no way of verifying that those l2tp connections I set up are encrypted, not by looking at the config options or looking at the logs, at least.
Any ideas?? Using PPTP and forcing 128-bit encryption at least means I am sure traffic is encrypted...
|
|
|