IPsec Firewall Rules

Firewall rules are necessary to pass traffic from the client host over IPsec to establish the L2TP tunnel, and inside L2TP to pass the actual tunneled VPN traffic to systems across the VPN. Adding the L2TP rules was covered in the previous section. To add IPsec rules:

  • Navigate to Firewall > Rules, IPsec tab
  • Review the current rules. If there is an “allow all” style rule, then there is no need to add another. Continue to the next task.
  • Click  Add to add a new rule to the top of the list
  • Set the Protocol to anySet the Source and Destination to any

Note: This does not have to pass all traffic, but must at least pass L2TP (UDP port 1701) to the WAN IP address of the firewall

  • Click Save
  • Click Apply Changes