IPSec over L2TP tunnels for Remote users

"Jayashree J" <jayashreej@future.futsoft.com> Wed, 23 May 2001 14:16 UTC

Received: from lists.tislabs.com (portal.gw.tislabs.com [192.94.214.101]) by above.proper.com (8.9.3/8.9.3) with ESMTP id HAA20651; Wed, 23 May 2001 07:16:40 -0700 (PDT)
Received: by lists.tislabs.com (8.9.1/8.9.1) id JAA09325 Wed, 23 May 2001 09:05:38 -0400 (EDT)
Reply-To: jayashreej@future.futsoft.com
From: Jayashree J <jayashreej@future.futsoft.com>
To: ipsec@lists.tislabs.com
Subject: IPSec over L2TP tunnels for Remote users
Date: Wed, 23 May 2001 18:41:32 +0530
Message-Id: <001601c0e389$e3d6be20$0b02060a@future.futsoft.com>
MIME-Version: 1.0
X-Priority: 3 (Normal)
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook CWS, Build 9.0.2416 (9.0.2910.0)
X-MimeOLE: Produced By Microsoft MimeOLE V5.00.2615.200
Importance: Normal
Content-Type: text/plain; charset="iso-8859-1"
Content-Transfer-Encoding: 7bit
Sender: owner-ipsec@lists.tislabs.com
Precedence: bulk

Hi,

I have some questions in implementing IPSec over L2TP for a security gateway
in case of a Remote User Access.
1) Has anyone done interop with Windows 2000 as a Remote Client?

2) It seems Windows 2000 operates only in transport mode for L2TP with
IPSec( in remote user scenario). Is it necessary to supprot transport mode
also in a security gateway to interop with Windows server?

3) In the above case how does Windows 2000 handle dynamic address received
from PPP negotiations (is it as per the
draft-ietf-l2tpext-security-02.txt>)?

Thanks,
Jayashree