How to configure L2TP VPN with Android Mobile Devices (2024)

Zyxel_Charlie Posts: 1,034 How to configure L2TP VPN with Android Mobile Devices (2) Zyxel Employee

How to configure L2TP VPN with Android Mobile Devices (3)How to configure L2TP VPN with Android Mobile Devices (4)How to configure L2TP VPN with Android Mobile Devices (5)How to configure L2TP VPN with Android Mobile Devices (6)

October 2017 edited June 2022 in VPN

The example instructs how to configure the VPN tunnel between each site. When the VPN tunnel is configured, each site can be accessed securely and allow traffic from L2TP clients to go to the Internet.

Topology:

How to configure L2TP VPN with Android Mobile Devices (7)

Note:
All network IP addresses and subnet masks are used as examples in this article.
Please replace them with your actual network IP addresses and subnet masks.

This example was tested using USG310 (Firmware Version: 4.13) and Android version (Firmware Version: 5.0)

Step

Step 1: Set Up the L2TP VPN Tunnel on the ZyWALL/USG

1. In the ZyWALL/USG, go toCONFIGURATION > Quick Setup > VPN Setup Wizard, use theVPNSettings for L2TP VPN Settingswizard to create aL2TP VPNrule that can be used with the remote Android Mobile Devices. ClickNext.

Quick Setup > VPN Setup Wizard > Welcome

How to configure L2TP VPN with Android Mobile Devices (8)

2. Then, configure theRule Nameand setMy Addressto be thewan1interface which is connected to the Internet. Type a securePre-Shared Key(8-32 characters).

Quick Setup > VPN Setup Wizard > Welcome > VPN Settings

How to configure L2TP VPN with Android Mobile Devices (9)

3. Assign the remote users IP addresses range from 192.168.10.10 to 192.168.10.20 for use in the L2TP VPN tunnel and checkAllow L2TP traffic Through WANto allow traffic from L2TP clients to go to the Internet. ClickNext.

Quick Setup > VPN Setup Wizard > Welcome > VPN Settings (L2TP VPN Settings)

How to configure L2TP VPN with Android Mobile Devices (10)

4. This screen provides a read-only summary of the VPN tunnel. ClickSave.

Quick Setup > VPN Setup Wizard > Welcome > VPN Settings (Summary)

How to configure L2TP VPN with Android Mobile Devices (11)

5. Now the rule is configured on the ZyWALL/USG. The rule settings appear in theVPN > L2TP VPNscreen. ClickCloseto exit the wizard.

Quick Setup > VPN Setup Wizard > Welcome > VPN Settings > WizardCompleted

How to configure L2TP VPN with Android Mobile Devices (12)

6. Go toCONFIGURATION > VPN > L2TP VPN > Create new Object > Userto addUser NameandPassword(4-24 characters). Then, setAllowed Userto the newly created object (L2TP_Remote_Users/zyx168 in this example).

CONFIGURATION > VPN > L2TP VPN > Create new Object > User

How to configure L2TP VPN with Android Mobile Devices (13)

Configure the L2TP VPN

How to configure L2TP VPN with Android Mobile Devices (14)

7. If some of the traffic from the L2TP clients need to go to the Internet, create a policy route to send traffic from the L2TP tunnels out through a WAN trunk. SetIncomingtoTunneland select your L2TP VPN connection. Set theSource Addressto be the L2TP address pool. Set theNext-HopTypetoTrunkand select the appropriate WAN trunk.

CONFIGURATION > Network > Routing > Policy Route

How to configure L2TP VPN with Android Mobile Devices (15)

Tagged:

  • L2TP VPN
  • VPN
  • srihiru Posts: 6

    How to configure L2TP VPN with Android Mobile Devices (17)

    November 2021

    Hi i tried this tuto, never worked, and tried other tutorials too, I didn't found a solution to connect via l2tp, can you pleas help me, I did exactly the way you explained

  • Zyxel_Jeff Posts: 1,054 How to configure L2TP VPN with Android Mobile Devices (19) Zyxel Employee

    How to configure L2TP VPN with Android Mobile Devices (20)How to configure L2TP VPN with Android Mobile Devices (21)How to configure L2TP VPN with Android Mobile Devices (22)How to configure L2TP VPN with Android Mobile Devices (23)

    November 2021

    Hi @srihiru

    Can you provide your device config file to us via private message for further investigation?

  • anno_t34 Posts: 12 How to configure L2TP VPN with Android Mobile Devices (25) Freshman Member

    How to configure L2TP VPN with Android Mobile Devices (26)How to configure L2TP VPN with Android Mobile Devices (27)

    December 2021 edited December 2021

    Could you provide a USEFUL documentation, instead of spreading the same misleading documentation, like this one.

    Just read the first paragraph of this tutorial:

    "The example instructs how to configure the VPN tunnel between each site. When the VPN tunnel is configured, each site can be accessed securely and allow traffic from L2TP clients to go to the Internet."

    What a nonsense!

    Have a look at the picture above. Is the "Networking Pool" on the other side of the tunnel, on the "Android Device"? Really?

    The old saying RTFM does apply only if the FM are correct and well written, which unfortunately for zywall manuals, since Zywall 2 if i remember, is not the case.

    Regards,
    A.

  • Zyxel_Jeff Posts: 1,054 How to configure L2TP VPN with Android Mobile Devices (29) Zyxel Employee

    How to configure L2TP VPN with Android Mobile Devices (30)How to configure L2TP VPN with Android Mobile Devices (31)How to configure L2TP VPN with Android Mobile Devices (32)How to configure L2TP VPN with Android Mobile Devices (33)

    December 2021

    Hi @anno_t34

    Thanks for your suggestion.

    We had corrected this title to “How to configureL2TP VPN with Android Mobile Devices”

    You can refer to our latest handbook ofP.242~253.

    https://download.zyxel.com/ATP500/handbook/ATP500_ZLD5.10_Handbook.pdf

    BTW, "Networking Pool” means the L2TP client's IP address pool.


  • anno_t34 Posts: 12 How to configure L2TP VPN with Android Mobile Devices (35) Freshman Member

    How to configure L2TP VPN with Android Mobile Devices (36)How to configure L2TP VPN with Android Mobile Devices (37)

    December 2021

    1. Title "IPSec/L2TP Connection: RemoteClient to Site (zywall Server Role).
    2. Enumerate the requirements for implementing the connection.
    2.1 : Server Side requirements, includes ISP services.
    2.3 : Client Side requirements, includes ISP services.

    Can you build an IPSec/L2TP VPN Connection from a client device which is behind a firewall, that filters IPSec/L2TP protocols?

    Can you build an IPSec/L2TP VPN Connection to a VPN Server which is NAT'ed by the ISP (private NAT or CGNAT, out of your control?

    How can you build an IPSec/L2TP VPN connection, if the VPN Server has a dynamic public IP address?

    Anyway, establishing an IPSec/L2TP channel per se has no value. What matters is a full case scenario, that describes ALL steps including the implementation of the required firewall security policies, troubleshooting methods, etc.

    From the tutorial above, you can get the impression, that configuring a VPN connection is a piece of cake, which is not. Securing one is another story.

    I made this picture, that should provide a more realistic view of the landscape. Feel free to correct me, if I'm wrong.

    Regards,
    A.

    How to configure L2TP VPN with Android Mobile Devices (38)

  • Zyxel_Jeff Posts: 1,054 How to configure L2TP VPN with Android Mobile Devices (40) Zyxel Employee

    How to configure L2TP VPN with Android Mobile Devices (41)How to configure L2TP VPN with Android Mobile Devices (42)How to configure L2TP VPN with Android Mobile Devices (43)How to configure L2TP VPN with Android Mobile Devices (44)

    December 2021

    Hi @anno_t34

    Thanks for your suggestion.

    We will enhance the contents of the technical document for L2TP behind NAT scenarios in the future.

Categories

  • All Categories
  • 383 Beta Program
  • 2.1K Nebula
  • 116 Nebula Ideas
  • 77 Nebula Status and Incidents
  • 5.1K Security
  • 49 USG FLEX H Series
  • 246 Security Ideas
  • 1.3K Switch
  • 67 Switch Ideas
  • 909 WirelessLAN
  • 33 WLAN Ideas
  • 5.9K Consumer Product
  • 328 News and Release
  • 135 Success Stories
  • 71 Security Advisories
  • 21 Education Center
  • 5 [Campaign] Zyxel Network Detective
  • 1.9K FAQ
  • 856 Nebula FAQ
  • 411 Security FAQ
  • 220 Switch FAQ
  • 192 WirelessLAN FAQ
  • 45 Consumer Product FAQ
  • 34 Documents
  • 34 Nebula Monthly Express
  • 71 About Community
  • 61 Security Highlight
How to configure L2TP VPN with Android Mobile Devices (2024)

FAQs

How to configure L2TP VPN with Android Mobile Devices? ›

Configure the L2TP Network Settings

On the Settings page, in the Wireless & Networks section, select More > VPN. Click + to add a VPN network. The Edit VPN profile page appears. In the Name text box, type a name for this VPN connection, such as "L2TP Firebox".

How to setup L2TP VPN on Android phone? ›

Configure the L2TP Network Settings

On the Settings page, in the Wireless & Networks section, select More > VPN. Click + to add a VPN network. The Edit VPN profile page appears. In the Name text box, type a name for this VPN connection, such as "L2TP Firebox".

Does Android support L2TP? ›

Android 12 and later no longer let you add a L2TP VPN connection manually from the device settings. Android 12 will still keep your old L2TP settings working if your device upgrades from an earlier Android version.

How to set L2TP on android 13? ›

L2TP (IPSec) is no longer an option on Android 13 and 14. On Android 13 and 14, there is only IKEv2/lPSec MSCHAPv2, IKEv2/lPSec PSK and IKEv2/lPSec RSA.

How to make L2TP connection in Android 12? ›

Android devices running Android 12 and above do not support L2TP/IPsec VPNs. Devices with existing configurations will continue to work. Client VPN connection cannot be configured on new devices.

Why is L2TP not available on my Android phone? ›

Android 13 does not support L2TP VPNs anymore. It is usually not possible to downgrade, your institution needs to upgrade their VPN. Welcome to the Android community. Android 13 does not support L2TP VPNs anymore.

Why is L2TP VPN not working on Android 13? ›

This article describes that Native VPN (L2TP VPN) is no longer supported in Android 13 and above android version. Android 13 and above do not support L2TP VPNs anymore due to security issues with L2TP which use Ikev1. From Andriod 13 and above we only have 3-options to establish a VPN: Ikev2/IPsec MSCHAPv2.

Why PPTP VPN is not available on my android phone? ›

If PPTP is not available when adding a new VPN on your Android phone, it's likely that your device or Android version no longer supports this outdated and insecure protocol. Consider using more secure alternatives like OpenVPN or IKEv2, which are widely supported and provide better security.

Does Android 13 support PPTP? ›

After Android 12 and higher, VPN type PPTP or IPSEC is not available.

Does Android 12 support L2TP VPN? ›

With the release of Android 12, Google has introduced numerous exciting updates that enhance the VPN experience for its users. However, it's worth noting that the support for L2TP and PPTP protocols has been discontinued.

Why my phone doesn t have L2TP? ›

This article describes that Native VPN (L2TP VPN) is no longer supported in Android 13 and above android version. Android 13 and above do not support L2TP VPNs anymore due to security issues with L2TP which use Ikev1. From Andriod 13 and above we only have 3-options to establish a VPN: Ikev2/IPsec MSCHAPv2.

References

Top Articles
Latest Posts
Article information

Author: Nathanael Baumbach

Last Updated:

Views: 6094

Rating: 4.4 / 5 (75 voted)

Reviews: 90% of readers found this page helpful

Author information

Name: Nathanael Baumbach

Birthday: 1998-12-02

Address: Apt. 829 751 Glover View, West Orlando, IN 22436

Phone: +901025288581

Job: Internal IT Coordinator

Hobby: Gunsmithing, Motor sports, Flying, Skiing, Hooping, Lego building, Ice skating

Introduction: My name is Nathanael Baumbach, I am a fantastic, nice, victorious, brave, healthy, cute, glorious person who loves writing and wants to share my knowledge and understanding with you.