<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: L2TP don't work in some Windows10 Client and in other yes in Cisco Software Discussions</title>
    <link>https://community.cisco.com/t5/cisco-software-discussions/l2tp-don-t-work-in-some-windows10-client-and-in-other-yes/m-p/4537103#M4331</link>
    <description>&lt;P&gt;here the conf&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;!&lt;BR /&gt;!&lt;BR /&gt;version 16.9&lt;BR /&gt;service timestamps debug datetime msec&lt;BR /&gt;service timestamps log datetime msec&lt;BR /&gt;platform qfp utilization monitor load 80&lt;BR /&gt;no platform punt-keepalive disable-kernel-core&lt;BR /&gt;!&lt;BR /&gt;hostname&lt;BR /&gt;!&lt;BR /&gt;boot-start-marker&lt;BR /&gt;boot-end-marker&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;no logging console&lt;BR /&gt;enable secret 9 $9$R.dF66pVmIN14U$tBfVtx7OIjBCns0YjcfmjEb/pPuc0tqEevacIIlRj8M&lt;BR /&gt;!&lt;BR /&gt;no aaa new-model&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;ip domain name&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;login on-success log&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;subscriber templating&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;multilink bundle-name authenticated&lt;BR /&gt;vpdn enable&lt;BR /&gt;!&lt;BR /&gt;vpdn-group 1&lt;BR /&gt;! Default L2TP VPDN group&lt;BR /&gt;accept-dialin&lt;BR /&gt;protocol l2tp&lt;BR /&gt;virtual-template 1&lt;BR /&gt;no l2tp tunnel authentication&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;crypto pki trustpoint TP-self-signed-3881647904&lt;BR /&gt;enrollment selfsigned&lt;BR /&gt;subject-name cn=IOS-Self-Signed-Certificate-3881647904&lt;BR /&gt;revocation-check none&lt;BR /&gt;rsakeypair TP-self-signed-3881647904&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;&lt;BR /&gt;!&lt;BR /&gt;diagnostic bootup level minimal&lt;BR /&gt;!&lt;BR /&gt;spanning-tree extend system-id&lt;BR /&gt;spanning-tree vlan 1,20-21,25-26,30,50 priority 8192&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;username nnnnn privilege 15 secret 9 S5/Sa8HWRSuqXBLMWyo&lt;BR /&gt;!&lt;BR /&gt;redundancy&lt;BR /&gt;mode none&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;vlan internal allocation policy ascending&lt;BR /&gt;no cdp run&lt;BR /&gt;!&lt;BR /&gt;track 1 ip sla 1&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;crypto logging session&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;crypto isakmp policy 1&lt;BR /&gt;encr 3des&lt;BR /&gt;authentication pre-share&lt;BR /&gt;group 2&lt;BR /&gt;crypto isakmp key 43334rfr4431 address xx.xx.xx.xxx&lt;BR /&gt;crypto isakmp key ssswwxxedqdd! address xx.xx.xx.xx&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;crypto ipsec transform-set ESP-3DES-SHA esp-3des esp-sha-hmac&lt;BR /&gt;mode tunnel&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;crypto map SDM_CMAP_1 local-address Vlan100&lt;BR /&gt;crypto map SDM_CMAP_1 1 ipsec-isakmp&lt;BR /&gt;set peer xx.xx.xx.xx&lt;BR /&gt;set peer xx.xx.xx.xx&lt;BR /&gt;set transform-set ESP-3DES-SHA&lt;BR /&gt;match address VPN-TO-xxx&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;interface Loopback0&lt;BR /&gt;ip address 172.30.16.254 255.255.255.255&lt;BR /&gt;!&lt;BR /&gt;interface Loopback100&lt;BR /&gt;no ip address&lt;BR /&gt;!&lt;BR /&gt;interface Tunnel1&lt;BR /&gt;bandwidth 1000&lt;BR /&gt;ip address 172.30.0.254 255.255.255.0&lt;BR /&gt;no ip redirects&lt;BR /&gt;ip nhrp network-id 1&lt;BR /&gt;ip tcp adjust-mss 1350&lt;BR /&gt;ip ospf network broadcast&lt;BR /&gt;ip ospf priority 2&lt;BR /&gt;delay 1000&lt;BR /&gt;tunnel source GigabitEthernet0/0/0&lt;BR /&gt;tunnel mode gre multipoint&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/0/0&lt;BR /&gt;ip address 10.0.146.254 255.255.255.0&lt;BR /&gt;negotiation auto&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/0/1&lt;BR /&gt;no ip address&lt;BR /&gt;negotiation auto&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/0/1.20&lt;BR /&gt;encapsulation dot1Q 20&lt;BR /&gt;ip address 172.21.0.20 255.255.255.192&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/0/1.21&lt;BR /&gt;encapsulation dot1Q 21&lt;BR /&gt;ip address 172.21.1.20 255.255.255.192&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/0/1.25&lt;BR /&gt;encapsulation dot1Q 25&lt;BR /&gt;ip address 172.21.21.20 255.255.255.192&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/0/1.26&lt;BR /&gt;encapsulation dot1Q 26&lt;BR /&gt;ip address 172.21.22.20 255.255.255.192&lt;BR /&gt;ip nat inside&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/0/1.30&lt;BR /&gt;encapsulation dot1Q 30&lt;BR /&gt;ip address 172.20.1.148 255.255.255.128&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/1/0&lt;BR /&gt;description OUTSIDE&lt;BR /&gt;switchport access vlan 100&lt;BR /&gt;switchport mode access&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/1/1&lt;BR /&gt;description TRUNK-INTERNAL-VLAN&lt;BR /&gt;switchport trunk native vlan 110&lt;BR /&gt;switchport trunk allowed vlan 40,101-103,110&lt;BR /&gt;switchport mode trunk&lt;BR /&gt;spanning-tree portfast trunk&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/1/2&lt;BR /&gt;shutdown&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/1/3&lt;BR /&gt;shutdown&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/1/4&lt;BR /&gt;shutdown&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/1/5&lt;BR /&gt;shutdown&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/1/6&lt;BR /&gt;shutdown&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/1/7&lt;BR /&gt;shutdown&lt;BR /&gt;!&lt;BR /&gt;interface Virtual-Template1&lt;BR /&gt;ip unnumbered Loopback100&lt;BR /&gt;peer default ip address pool test&lt;BR /&gt;ppp authentication chap callout&lt;BR /&gt;ppp ipcp dns 4.2.2.1 4.2.2.2&lt;BR /&gt;!&lt;BR /&gt;interface Vlan1&lt;BR /&gt;no ip address&lt;BR /&gt;!&lt;BR /&gt;interface Vlan40&lt;BR /&gt;description&lt;BR /&gt;ip address 10.0.174.253 255.255.255.0&lt;BR /&gt;standby 1 ip 10.0.174.254&lt;BR /&gt;standby 1 priority 150&lt;BR /&gt;!&lt;BR /&gt;interface Vlan100&lt;BR /&gt;description WAN-CISCO&lt;BR /&gt;ip address 2.117.211.194 255.255.255.252&lt;BR /&gt;ip nat outside&lt;BR /&gt;crypto map SDM_CMAP_1&lt;BR /&gt;!&lt;BR /&gt;interface Vlan101&lt;BR /&gt;description&lt;BR /&gt;ip address 10.0.171.253 255.255.255.0&lt;BR /&gt;ip nat inside&lt;BR /&gt;standby 1 ip 10.0.171.254&lt;BR /&gt;standby 1 priority 150&lt;BR /&gt;!&lt;BR /&gt;interface Vlan102&lt;BR /&gt;description&lt;BR /&gt;ip address 10.0.173.253 255.255.255.0&lt;BR /&gt;standby 1 ip 10.0.173.254&lt;BR /&gt;standby 1 priority 150&lt;BR /&gt;!&lt;BR /&gt;interface Vlan103&lt;BR /&gt;description&lt;BR /&gt;ip address 10.0.172.253 255.255.255.0&lt;BR /&gt;standby 1 ip 10.0.172.254&lt;BR /&gt;standby 1 priority 150&lt;BR /&gt;!&lt;BR /&gt;interface Vlan110&lt;BR /&gt;description&lt;BR /&gt;ip address 10.0.145.253 255.255.255.0&lt;BR /&gt;ip nat inside&lt;BR /&gt;standby 1 ip 10.0.145.254&lt;BR /&gt;standby 1 priority 150&lt;BR /&gt;!&lt;BR /&gt;router ospf 1&lt;BR /&gt;router-id 172.30.16.254&lt;BR /&gt;passive-interface Loopback0&lt;BR /&gt;network 172.16.1.0 0.0.0.255 area 0&lt;BR /&gt;network 172.20.1.128 0.0.0.127 area 0&lt;BR /&gt;network 172.21.0.0 0.0.0.63 area 0&lt;BR /&gt;network 172.21.1.0 0.0.0.63 area 0&lt;BR /&gt;network 172.21.21.0 0.0.0.63 area 0&lt;BR /&gt;network 172.21.22.0 0.0.0.63 area 0&lt;BR /&gt;network 172.30.0.0 0.0.0.255 area 0&lt;BR /&gt;network 172.30.16.254 0.0.0.0 area 0&lt;BR /&gt;!&lt;BR /&gt;ip local pool test 10.1.1.2 10.1.1.100&lt;BR /&gt;ip nat inside source static tcp 10.0.171.250 22 2.117.211.194 24 extendable&lt;BR /&gt;ip nat inside source static tcp 10.0.145.251 443 2.117.211.194 443 extendable&lt;BR /&gt;ip nat inside source list NAVIGAZIONE interface Vlan100 overload&lt;BR /&gt;ip forward-protocol nd&lt;BR /&gt;ip http server&lt;BR /&gt;ip http authentication local&lt;BR /&gt;no ip http secure-server&lt;BR /&gt;ip tftp source-interface GigabitEthernet0/0/0&lt;BR /&gt;ip route 10.0.1.0 255.255.255.0 2.117.211.193 track 1&lt;BR /&gt;ip route 10.0.1.0 255.255.255.0 10.0.146.253 10 track 1&lt;BR /&gt;ip route 0.0.0.0 0.0.0.0 2.117.211.193 track 1&lt;BR /&gt;ip route 0.0.0.0 0.0.0.0 2.117.211.193&lt;BR /&gt;ip route 10.1.47.0 255.255.255.0 10.0.145.251&lt;BR /&gt;ip ssh version 2&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;ip access-list extended MANAGEMENT&lt;BR /&gt;permit tcp 94.124.48.0 0.0.0.255 any eq 22&lt;BR /&gt;permit tcp host 89.96.177.201 any eq 22&lt;BR /&gt;permit tcp host 88.50.156.171 any eq 22&lt;BR /&gt;permit tcp host 217.133.194.150 any eq 22&lt;BR /&gt;permit tcp host 217.133.194.150 any eq 24&lt;BR /&gt;permit ip 10.0.1.0 0.0.0.255 any&lt;BR /&gt;permit ip 10.0.146.0 0.0.0.255 any&lt;BR /&gt;permit ip 10.0.145.0 0.0.0.255 any&lt;BR /&gt;deny ip any any log&lt;BR /&gt;ip access-list extended NAVIGAZIONE&lt;BR /&gt;deny ip 10.0.145.0 0.0.0.255 172.16.0.0 0.15.255.255&lt;BR /&gt;deny ip 10.0.145.0 0.0.0.255 10.1.47.0 0.0.0.255&lt;BR /&gt;deny ip 10.0.145.0 0.0.0.255 195.1.0.0 0.0.1.255&lt;BR /&gt;deny ip 10.0.145.0 0.0.0.255 192.168.0.0 0.0.255.255&lt;BR /&gt;deny ip 10.0.145.0 0.0.0.255 10.0.1.0 0.0.0.255&lt;BR /&gt;deny ip 10.0.146.0 0.0.0.255 10.0.1.0 0.0.0.255&lt;BR /&gt;deny ip 10.0.171.0 0.0.0.255 10.0.1.0 0.0.0.255&lt;BR /&gt;deny ip 10.0.171.0 0.0.0.255 195.1.0.0 0.0.1.255&lt;BR /&gt;deny ip 10.0.172.0 0.0.0.255 10.0.1.0 0.0.0.255&lt;BR /&gt;deny ip 10.0.173.0 0.0.0.255 10.0.1.0 0.0.0.255&lt;BR /&gt;deny ip 172.21.22.0 0.0.0.255 10.0.1.0 0.0.0.255&lt;BR /&gt;deny ip 172.21.21.0 0.0.0.255 10.0.1.0 0.0.0.255&lt;BR /&gt;permit ip 10.0.145.0 0.0.0.255 any&lt;BR /&gt;permit ip host 172.21.22.24 any&lt;BR /&gt;permit ip 172.21.21.0 0.0.0.255 any&lt;BR /&gt;permit ip 10.0.171.0 0.0.0.255 any&lt;BR /&gt;ip access-list extended VPN-TO-xxx&lt;BR /&gt;permit ip 10.0.145.0 0.0.0.255 10.0.1.0 0.0.0.255&lt;BR /&gt;permit ip 10.0.145.0 0.0.0.255 195.1.0.0 0.0.1.255&lt;BR /&gt;permit ip 10.0.146.0 0.0.0.255 10.0.1.0 0.0.0.255&lt;BR /&gt;permit ip 172.20.0.0 0.0.1.255 10.0.1.0 0.0.0.255&lt;BR /&gt;permit ip 172.21.0.0 0.0.1.255 10.0.1.0 0.0.0.255&lt;BR /&gt;permit ip 172.16.96.0 0.0.31.255 10.0.1.0 0.0.0.255&lt;BR /&gt;permit ip 172.16.128.0 0.0.31.255 10.0.1.0 0.0.0.255&lt;BR /&gt;permit ip 10.0.171.0 0.0.0.255 10.0.1.0 0.0.0.255&lt;BR /&gt;permit ip 10.0.172.0 0.0.0.255 10.0.1.0 0.0.0.255&lt;BR /&gt;permit ip 10.0.173.0 0.0.0.255 10.0.1.0 0.0.0.255&lt;BR /&gt;permit ip 172.21.21.0 0.0.0.255 10.0.1.0 0.0.0.255&lt;BR /&gt;permit ip 172.21.22.0 0.0.0.255 10.0.1.0 0.0.0.255&lt;BR /&gt;permit ip 172.21.24.0 0.0.0.255 10.0.1.0 0.0.0.255&lt;BR /&gt;permit ip 172.21.25.0 0.0.0.255 10.0.1.0 0.0.0.255&lt;BR /&gt;!&lt;BR /&gt;ip sla 1&lt;BR /&gt;icmp-echo 8.8.8.8 source-interface Vlan110&lt;BR /&gt;ip sla schedule 1 life forever start-time now&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;control-plane&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;line con 0&lt;BR /&gt;login local&lt;BR /&gt;transport input none&lt;BR /&gt;stopbits 1&lt;BR /&gt;line vty 0&lt;BR /&gt;access-class MANAGEMENT in&lt;BR /&gt;login local&lt;BR /&gt;transport input telnet ssh&lt;BR /&gt;line vty 1&lt;BR /&gt;access-class MANAGEMENT in&lt;BR /&gt;no activation-character&lt;BR /&gt;login local&lt;BR /&gt;no exec&lt;BR /&gt;transport preferred none&lt;BR /&gt;transport input telnet ssh&lt;BR /&gt;stopbits 1&lt;BR /&gt;line vty 2 4&lt;BR /&gt;access-class MANAGEMENT in&lt;BR /&gt;login local&lt;BR /&gt;transport input telnet ssh&lt;BR /&gt;line vty 5 15&lt;BR /&gt;access-class MANAGEMENT in&lt;BR /&gt;login local&lt;BR /&gt;transport input telnet ssh&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;end&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Mon, 24 Jan 2022 14:35:43 GMT</pubDate>
    <dc:creator>AlexBar76</dc:creator>
    <dc:date>2022-01-24T14:35:43Z</dc:date>
    <item>
      <title>L2TP don't work in some Windows10 Client and in other yes</title>
      <link>https://community.cisco.com/t5/cisco-software-discussions/l2tp-don-t-work-in-some-windows10-client-and-in-other-yes/m-p/4534421#M4298</link>
      <description>&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;I've been configure an L2TP connection on a cisco router cp 1111-8p ios-xe with this parameters&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;PRE&gt;vpdn enable
&lt;BR /&gt;vpdn-group 1&lt;BR /&gt;&amp;nbsp;! Default L2TP VPDN group&lt;BR /&gt;&amp;nbsp;accept-dialin&lt;BR /&gt;&amp;nbsp; protocol l2tp&lt;BR /&gt;&amp;nbsp; virtual-template 1&lt;BR /&gt;&amp;nbsp;no l2tp tunnel authentication
&amp;nbsp;
interface Virtual-Template1&lt;BR /&gt;&amp;nbsp;ip unnumbered Loopback100&lt;BR /&gt;&amp;nbsp;peer default ip address pool test&lt;BR /&gt;&amp;nbsp;ppp authentication chap callout&lt;BR /&gt;&amp;nbsp;ppp ipcp dns 4.2.2.1 4.2.2.2&lt;BR /&gt;end
&amp;nbsp;
ip local pool test 10.1.1.2 10.1.1.100 &lt;BR /&gt;&lt;BR /&gt;Then i've configure my w10 client using the vpn software enbedded on w10 ... all ok the l2tp works fine, then take another &lt;BR /&gt;client w10 and doing the same thing but doesn't work and the router return this error&lt;BR /&gt;Jan 19 15:52:17.586: %CRYPTO-5-IKMP_SETUP_FAILURE: IKE SETUP FAILED for local:public ip of the client local_id:public ip of the client remote:public ip remote remote_id:public ip remote IKE profile:None fvrf:None fail_reason:Proposal failure fail_class_cnt:1&lt;BR /&gt;try to use another client doing the same error.&lt;BR /&gt;only one up tree works, all clients had the same updates annd sw version&lt;BR /&gt;&lt;BR /&gt;please anyone can help me ?&lt;BR /&gt;&lt;BR /&gt;&lt;/PRE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 19 Jan 2022 15:57:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cisco-software-discussions/l2tp-don-t-work-in-some-windows10-client-and-in-other-yes/m-p/4534421#M4298</guid>
      <dc:creator>AlexBar76</dc:creator>
      <dc:date>2022-01-19T15:57:57Z</dc:date>
    </item>
    <item>
      <title>Re: L2TP don't work in some Windows10 Client and in other yes</title>
      <link>https://community.cisco.com/t5/cisco-software-discussions/l2tp-don-t-work-in-some-windows10-client-and-in-other-yes/m-p/4534457#M4299</link>
      <description>&lt;P&gt;what is the IOS XE version, also check what is the difference between working vs not working, any windows patches extra ? different ISP ?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 19 Jan 2022 16:26:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cisco-software-discussions/l2tp-don-t-work-in-some-windows10-client-and-in-other-yes/m-p/4534457#M4299</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2022-01-19T16:26:55Z</dc:date>
    </item>
    <item>
      <title>Re: L2TP don't work in some Windows10 Client and in other yes</title>
      <link>https://community.cisco.com/t5/cisco-software-discussions/l2tp-don-t-work-in-some-windows10-client-and-in-other-yes/m-p/4534466#M4300</link>
      <description>&lt;P&gt;Hi the cisco sw version is the 16.09.02&lt;/P&gt;&lt;P&gt;the w10 client have the same os version and the same patchs&lt;/P&gt;&lt;P&gt;i have also try to change isp and the machine that works still to work fine if i do the same with the w10 that do not work have the same result&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 19 Jan 2022 16:30:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cisco-software-discussions/l2tp-don-t-work-in-some-windows10-client-and-in-other-yes/m-p/4534466#M4300</guid>
      <dc:creator>AlexBar76</dc:creator>
      <dc:date>2022-01-19T16:30:47Z</dc:date>
    </item>
    <item>
      <title>Re: L2TP don't work in some Windows10 Client and in other yes</title>
      <link>https://community.cisco.com/t5/cisco-software-discussions/l2tp-don-t-work-in-some-windows10-client-and-in-other-yes/m-p/4534474#M4301</link>
      <description>&lt;P&gt;Run complete debug on router, also run wireshark capture what is wrong ?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 19 Jan 2022 16:45:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cisco-software-discussions/l2tp-don-t-work-in-some-windows10-client-and-in-other-yes/m-p/4534474#M4301</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2022-01-19T16:45:02Z</dc:date>
    </item>
    <item>
      <title>Re: L2TP don't work in some Windows10 Client and in other yes</title>
      <link>https://community.cisco.com/t5/cisco-software-discussions/l2tp-don-t-work-in-some-windows10-client-and-in-other-yes/m-p/4534479#M4302</link>
      <description>&lt;P&gt;the debug on the router return that all negotiations are ok in the connection that work&amp;nbsp;&lt;/P&gt;&lt;P&gt;and for the connection that do not work return this&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;PRE&gt;Jan 19 15:52:17.586: %CRYPTO-5-IKMP_SETUP_FAILURE: IKE SETUP FAILED for local:public ip of the client local_id:public ip of the client remote:public ip remote remote_id:public ip remote IKE profile:None fvrf:None fail_reason:Proposal failure fail_class_cnt:1&lt;/PRE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 19 Jan 2022 16:50:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cisco-software-discussions/l2tp-don-t-work-in-some-windows10-client-and-in-other-yes/m-p/4534479#M4302</guid>
      <dc:creator>AlexBar76</dc:creator>
      <dc:date>2022-01-19T16:50:40Z</dc:date>
    </item>
    <item>
      <title>Re: L2TP don't work in some Windows10 Client and in other yes</title>
      <link>https://community.cisco.com/t5/cisco-software-discussions/l2tp-don-t-work-in-some-windows10-client-and-in-other-yes/m-p/4534493#M4303</link>
      <description>&lt;P&gt;troubleshoot from windows side :&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://docs.microsoft.com/en-us/troubleshoot/windows-client/networking/l2tp-ipsec-vpn-client-connection-issue" target="_blank"&gt;https://docs.microsoft.com/en-us/troubleshoot/windows-client/networking/l2tp-ipsec-vpn-client-connection-issue&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 19 Jan 2022 17:07:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cisco-software-discussions/l2tp-don-t-work-in-some-windows10-client-and-in-other-yes/m-p/4534493#M4303</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2022-01-19T17:07:37Z</dc:date>
    </item>
    <item>
      <title>Re: L2TP don't work in some Windows10 Client and in other yes</title>
      <link>https://community.cisco.com/t5/cisco-software-discussions/l2tp-don-t-work-in-some-windows10-client-and-in-other-yes/m-p/4534540#M4304</link>
      <description>&lt;P&gt;this debug show IPSec over L2TP, are you config any IPSec?&lt;/P&gt;&lt;P&gt;check windows if the Ipsec is enable with L2TP.&lt;/P&gt;</description>
      <pubDate>Wed, 19 Jan 2022 18:23:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cisco-software-discussions/l2tp-don-t-work-in-some-windows10-client-and-in-other-yes/m-p/4534540#M4304</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2022-01-19T18:23:33Z</dc:date>
    </item>
    <item>
      <title>Re: L2TP don't work in some Windows10 Client and in other yes</title>
      <link>https://community.cisco.com/t5/cisco-software-discussions/l2tp-don-t-work-in-some-windows10-client-and-in-other-yes/m-p/4534888#M4307</link>
      <description>&lt;P&gt;Thanks..&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;as i told you the two client windows are configured in the same way&amp;nbsp;&lt;/P&gt;&lt;P&gt;One work the other not&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 20 Jan 2022 07:50:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cisco-software-discussions/l2tp-don-t-work-in-some-windows10-client-and-in-other-yes/m-p/4534888#M4307</guid>
      <dc:creator>AlexBar76</dc:creator>
      <dc:date>2022-01-20T07:50:56Z</dc:date>
    </item>
    <item>
      <title>Re: L2TP don't work in some Windows10 Client and in other yes</title>
      <link>https://community.cisco.com/t5/cisco-software-discussions/l2tp-don-t-work-in-some-windows10-client-and-in-other-yes/m-p/4535015#M4310</link>
      <description>&lt;PRE&gt;as i told you the two client windows are configured in the same way &lt;/PRE&gt;
&lt;P&gt;we understand - since you have problem you need to troubleshoot to get bottom of the problem, since we can only suggest based on the information we have here.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 20 Jan 2022 11:38:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cisco-software-discussions/l2tp-don-t-work-in-some-windows10-client-and-in-other-yes/m-p/4535015#M4310</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2022-01-20T11:38:01Z</dc:date>
    </item>
    <item>
      <title>Re: L2TP don't work in some Windows10 Client and in other yes</title>
      <link>https://community.cisco.com/t5/cisco-software-discussions/l2tp-don-t-work-in-some-windows10-client-and-in-other-yes/m-p/4536142#M4321</link>
      <description>&lt;P&gt;friend&amp;nbsp;&lt;BR /&gt;IPSec SA like encrypt hash...etc is different between each window OS, so if it work in some it failed in other, check IPSec I think the L2TP is OK.&lt;/P&gt;</description>
      <pubDate>Fri, 21 Jan 2022 23:18:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cisco-software-discussions/l2tp-don-t-work-in-some-windows10-client-and-in-other-yes/m-p/4536142#M4321</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2022-01-21T23:18:03Z</dc:date>
    </item>
    <item>
      <title>Re: L2TP don't work in some Windows10 Client and in other yes</title>
      <link>https://community.cisco.com/t5/cisco-software-discussions/l2tp-don-t-work-in-some-windows10-client-and-in-other-yes/m-p/4536798#M4324</link>
      <description>&lt;P&gt;The VDPN in W10 had the L2TP / IPSEC selected&amp;nbsp;&lt;/P&gt;&lt;P&gt;I've check&amp;nbsp;&lt;STRONG&gt;Security&amp;nbsp;&amp;gt;&lt;/STRONG&gt;&lt;STRONG&gt;Type of VPN&amp;nbsp;&amp;gt;&lt;/STRONG&gt;&lt;STRONG&gt;Layer 2 Tunneling Protocol with IPsec&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;No encryption allowed&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;Like the other w10 that work fine&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I can share the router configuration if must be an help&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 24 Jan 2022 07:30:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cisco-software-discussions/l2tp-don-t-work-in-some-windows10-client-and-in-other-yes/m-p/4536798#M4324</guid>
      <dc:creator>AlexBar76</dc:creator>
      <dc:date>2022-01-24T07:30:29Z</dc:date>
    </item>
    <item>
      <title>Re: L2TP don't work in some Windows10 Client and in other yes</title>
      <link>https://community.cisco.com/t5/cisco-software-discussions/l2tp-don-t-work-in-some-windows10-client-and-in-other-yes/m-p/4537076#M4327</link>
      <description>&lt;P&gt;How can i Check the ipsec on the router if i have configured the l2tp ?&amp;nbsp;&lt;/P&gt;&lt;P&gt;There is an IPSec configured and the crypto is applyed on the outside interface because i have an ipsec isakmp vpn&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 24 Jan 2022 13:50:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cisco-software-discussions/l2tp-don-t-work-in-some-windows10-client-and-in-other-yes/m-p/4537076#M4327</guid>
      <dc:creator>AlexBar76</dc:creator>
      <dc:date>2022-01-24T13:50:01Z</dc:date>
    </item>
    <item>
      <title>Re: L2TP don't work in some Windows10 Client and in other yes</title>
      <link>https://community.cisco.com/t5/cisco-software-discussions/l2tp-don-t-work-in-some-windows10-client-and-in-other-yes/m-p/4537086#M4328</link>
      <description>&lt;P&gt;can you share the config of the router ?&lt;/P&gt;</description>
      <pubDate>Mon, 24 Jan 2022 14:13:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cisco-software-discussions/l2tp-don-t-work-in-some-windows10-client-and-in-other-yes/m-p/4537086#M4328</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2022-01-24T14:13:17Z</dc:date>
    </item>
    <item>
      <title>Re: L2TP don't work in some Windows10 Client and in other yes</title>
      <link>https://community.cisco.com/t5/cisco-software-discussions/l2tp-don-t-work-in-some-windows10-client-and-in-other-yes/m-p/4537103#M4331</link>
      <description>&lt;P&gt;here the conf&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;!&lt;BR /&gt;!&lt;BR /&gt;version 16.9&lt;BR /&gt;service timestamps debug datetime msec&lt;BR /&gt;service timestamps log datetime msec&lt;BR /&gt;platform qfp utilization monitor load 80&lt;BR /&gt;no platform punt-keepalive disable-kernel-core&lt;BR /&gt;!&lt;BR /&gt;hostname&lt;BR /&gt;!&lt;BR /&gt;boot-start-marker&lt;BR /&gt;boot-end-marker&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;no logging console&lt;BR /&gt;enable secret 9 $9$R.dF66pVmIN14U$tBfVtx7OIjBCns0YjcfmjEb/pPuc0tqEevacIIlRj8M&lt;BR /&gt;!&lt;BR /&gt;no aaa new-model&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;ip domain name&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;login on-success log&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;subscriber templating&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;multilink bundle-name authenticated&lt;BR /&gt;vpdn enable&lt;BR /&gt;!&lt;BR /&gt;vpdn-group 1&lt;BR /&gt;! Default L2TP VPDN group&lt;BR /&gt;accept-dialin&lt;BR /&gt;protocol l2tp&lt;BR /&gt;virtual-template 1&lt;BR /&gt;no l2tp tunnel authentication&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;crypto pki trustpoint TP-self-signed-3881647904&lt;BR /&gt;enrollment selfsigned&lt;BR /&gt;subject-name cn=IOS-Self-Signed-Certificate-3881647904&lt;BR /&gt;revocation-check none&lt;BR /&gt;rsakeypair TP-self-signed-3881647904&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;&lt;BR /&gt;!&lt;BR /&gt;diagnostic bootup level minimal&lt;BR /&gt;!&lt;BR /&gt;spanning-tree extend system-id&lt;BR /&gt;spanning-tree vlan 1,20-21,25-26,30,50 priority 8192&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;username nnnnn privilege 15 secret 9 S5/Sa8HWRSuqXBLMWyo&lt;BR /&gt;!&lt;BR /&gt;redundancy&lt;BR /&gt;mode none&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;vlan internal allocation policy ascending&lt;BR /&gt;no cdp run&lt;BR /&gt;!&lt;BR /&gt;track 1 ip sla 1&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;crypto logging session&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;crypto isakmp policy 1&lt;BR /&gt;encr 3des&lt;BR /&gt;authentication pre-share&lt;BR /&gt;group 2&lt;BR /&gt;crypto isakmp key 43334rfr4431 address xx.xx.xx.xxx&lt;BR /&gt;crypto isakmp key ssswwxxedqdd! address xx.xx.xx.xx&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;crypto ipsec transform-set ESP-3DES-SHA esp-3des esp-sha-hmac&lt;BR /&gt;mode tunnel&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;crypto map SDM_CMAP_1 local-address Vlan100&lt;BR /&gt;crypto map SDM_CMAP_1 1 ipsec-isakmp&lt;BR /&gt;set peer xx.xx.xx.xx&lt;BR /&gt;set peer xx.xx.xx.xx&lt;BR /&gt;set transform-set ESP-3DES-SHA&lt;BR /&gt;match address VPN-TO-xxx&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;interface Loopback0&lt;BR /&gt;ip address 172.30.16.254 255.255.255.255&lt;BR /&gt;!&lt;BR /&gt;interface Loopback100&lt;BR /&gt;no ip address&lt;BR /&gt;!&lt;BR /&gt;interface Tunnel1&lt;BR /&gt;bandwidth 1000&lt;BR /&gt;ip address 172.30.0.254 255.255.255.0&lt;BR /&gt;no ip redirects&lt;BR /&gt;ip nhrp network-id 1&lt;BR /&gt;ip tcp adjust-mss 1350&lt;BR /&gt;ip ospf network broadcast&lt;BR /&gt;ip ospf priority 2&lt;BR /&gt;delay 1000&lt;BR /&gt;tunnel source GigabitEthernet0/0/0&lt;BR /&gt;tunnel mode gre multipoint&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/0/0&lt;BR /&gt;ip address 10.0.146.254 255.255.255.0&lt;BR /&gt;negotiation auto&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/0/1&lt;BR /&gt;no ip address&lt;BR /&gt;negotiation auto&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/0/1.20&lt;BR /&gt;encapsulation dot1Q 20&lt;BR /&gt;ip address 172.21.0.20 255.255.255.192&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/0/1.21&lt;BR /&gt;encapsulation dot1Q 21&lt;BR /&gt;ip address 172.21.1.20 255.255.255.192&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/0/1.25&lt;BR /&gt;encapsulation dot1Q 25&lt;BR /&gt;ip address 172.21.21.20 255.255.255.192&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/0/1.26&lt;BR /&gt;encapsulation dot1Q 26&lt;BR /&gt;ip address 172.21.22.20 255.255.255.192&lt;BR /&gt;ip nat inside&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/0/1.30&lt;BR /&gt;encapsulation dot1Q 30&lt;BR /&gt;ip address 172.20.1.148 255.255.255.128&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/1/0&lt;BR /&gt;description OUTSIDE&lt;BR /&gt;switchport access vlan 100&lt;BR /&gt;switchport mode access&lt;BR /&gt;spanning-tree portfast&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/1/1&lt;BR /&gt;description TRUNK-INTERNAL-VLAN&lt;BR /&gt;switchport trunk native vlan 110&lt;BR /&gt;switchport trunk allowed vlan 40,101-103,110&lt;BR /&gt;switchport mode trunk&lt;BR /&gt;spanning-tree portfast trunk&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/1/2&lt;BR /&gt;shutdown&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/1/3&lt;BR /&gt;shutdown&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/1/4&lt;BR /&gt;shutdown&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/1/5&lt;BR /&gt;shutdown&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/1/6&lt;BR /&gt;shutdown&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/1/7&lt;BR /&gt;shutdown&lt;BR /&gt;!&lt;BR /&gt;interface Virtual-Template1&lt;BR /&gt;ip unnumbered Loopback100&lt;BR /&gt;peer default ip address pool test&lt;BR /&gt;ppp authentication chap callout&lt;BR /&gt;ppp ipcp dns 4.2.2.1 4.2.2.2&lt;BR /&gt;!&lt;BR /&gt;interface Vlan1&lt;BR /&gt;no ip address&lt;BR /&gt;!&lt;BR /&gt;interface Vlan40&lt;BR /&gt;description&lt;BR /&gt;ip address 10.0.174.253 255.255.255.0&lt;BR /&gt;standby 1 ip 10.0.174.254&lt;BR /&gt;standby 1 priority 150&lt;BR /&gt;!&lt;BR /&gt;interface Vlan100&lt;BR /&gt;description WAN-CISCO&lt;BR /&gt;ip address 2.117.211.194 255.255.255.252&lt;BR /&gt;ip nat outside&lt;BR /&gt;crypto map SDM_CMAP_1&lt;BR /&gt;!&lt;BR /&gt;interface Vlan101&lt;BR /&gt;description&lt;BR /&gt;ip address 10.0.171.253 255.255.255.0&lt;BR /&gt;ip nat inside&lt;BR /&gt;standby 1 ip 10.0.171.254&lt;BR /&gt;standby 1 priority 150&lt;BR /&gt;!&lt;BR /&gt;interface Vlan102&lt;BR /&gt;description&lt;BR /&gt;ip address 10.0.173.253 255.255.255.0&lt;BR /&gt;standby 1 ip 10.0.173.254&lt;BR /&gt;standby 1 priority 150&lt;BR /&gt;!&lt;BR /&gt;interface Vlan103&lt;BR /&gt;description&lt;BR /&gt;ip address 10.0.172.253 255.255.255.0&lt;BR /&gt;standby 1 ip 10.0.172.254&lt;BR /&gt;standby 1 priority 150&lt;BR /&gt;!&lt;BR /&gt;interface Vlan110&lt;BR /&gt;description&lt;BR /&gt;ip address 10.0.145.253 255.255.255.0&lt;BR /&gt;ip nat inside&lt;BR /&gt;standby 1 ip 10.0.145.254&lt;BR /&gt;standby 1 priority 150&lt;BR /&gt;!&lt;BR /&gt;router ospf 1&lt;BR /&gt;router-id 172.30.16.254&lt;BR /&gt;passive-interface Loopback0&lt;BR /&gt;network 172.16.1.0 0.0.0.255 area 0&lt;BR /&gt;network 172.20.1.128 0.0.0.127 area 0&lt;BR /&gt;network 172.21.0.0 0.0.0.63 area 0&lt;BR /&gt;network 172.21.1.0 0.0.0.63 area 0&lt;BR /&gt;network 172.21.21.0 0.0.0.63 area 0&lt;BR /&gt;network 172.21.22.0 0.0.0.63 area 0&lt;BR /&gt;network 172.30.0.0 0.0.0.255 area 0&lt;BR /&gt;network 172.30.16.254 0.0.0.0 area 0&lt;BR /&gt;!&lt;BR /&gt;ip local pool test 10.1.1.2 10.1.1.100&lt;BR /&gt;ip nat inside source static tcp 10.0.171.250 22 2.117.211.194 24 extendable&lt;BR /&gt;ip nat inside source static tcp 10.0.145.251 443 2.117.211.194 443 extendable&lt;BR /&gt;ip nat inside source list NAVIGAZIONE interface Vlan100 overload&lt;BR /&gt;ip forward-protocol nd&lt;BR /&gt;ip http server&lt;BR /&gt;ip http authentication local&lt;BR /&gt;no ip http secure-server&lt;BR /&gt;ip tftp source-interface GigabitEthernet0/0/0&lt;BR /&gt;ip route 10.0.1.0 255.255.255.0 2.117.211.193 track 1&lt;BR /&gt;ip route 10.0.1.0 255.255.255.0 10.0.146.253 10 track 1&lt;BR /&gt;ip route 0.0.0.0 0.0.0.0 2.117.211.193 track 1&lt;BR /&gt;ip route 0.0.0.0 0.0.0.0 2.117.211.193&lt;BR /&gt;ip route 10.1.47.0 255.255.255.0 10.0.145.251&lt;BR /&gt;ip ssh version 2&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;ip access-list extended MANAGEMENT&lt;BR /&gt;permit tcp 94.124.48.0 0.0.0.255 any eq 22&lt;BR /&gt;permit tcp host 89.96.177.201 any eq 22&lt;BR /&gt;permit tcp host 88.50.156.171 any eq 22&lt;BR /&gt;permit tcp host 217.133.194.150 any eq 22&lt;BR /&gt;permit tcp host 217.133.194.150 any eq 24&lt;BR /&gt;permit ip 10.0.1.0 0.0.0.255 any&lt;BR /&gt;permit ip 10.0.146.0 0.0.0.255 any&lt;BR /&gt;permit ip 10.0.145.0 0.0.0.255 any&lt;BR /&gt;deny ip any any log&lt;BR /&gt;ip access-list extended NAVIGAZIONE&lt;BR /&gt;deny ip 10.0.145.0 0.0.0.255 172.16.0.0 0.15.255.255&lt;BR /&gt;deny ip 10.0.145.0 0.0.0.255 10.1.47.0 0.0.0.255&lt;BR /&gt;deny ip 10.0.145.0 0.0.0.255 195.1.0.0 0.0.1.255&lt;BR /&gt;deny ip 10.0.145.0 0.0.0.255 192.168.0.0 0.0.255.255&lt;BR /&gt;deny ip 10.0.145.0 0.0.0.255 10.0.1.0 0.0.0.255&lt;BR /&gt;deny ip 10.0.146.0 0.0.0.255 10.0.1.0 0.0.0.255&lt;BR /&gt;deny ip 10.0.171.0 0.0.0.255 10.0.1.0 0.0.0.255&lt;BR /&gt;deny ip 10.0.171.0 0.0.0.255 195.1.0.0 0.0.1.255&lt;BR /&gt;deny ip 10.0.172.0 0.0.0.255 10.0.1.0 0.0.0.255&lt;BR /&gt;deny ip 10.0.173.0 0.0.0.255 10.0.1.0 0.0.0.255&lt;BR /&gt;deny ip 172.21.22.0 0.0.0.255 10.0.1.0 0.0.0.255&lt;BR /&gt;deny ip 172.21.21.0 0.0.0.255 10.0.1.0 0.0.0.255&lt;BR /&gt;permit ip 10.0.145.0 0.0.0.255 any&lt;BR /&gt;permit ip host 172.21.22.24 any&lt;BR /&gt;permit ip 172.21.21.0 0.0.0.255 any&lt;BR /&gt;permit ip 10.0.171.0 0.0.0.255 any&lt;BR /&gt;ip access-list extended VPN-TO-xxx&lt;BR /&gt;permit ip 10.0.145.0 0.0.0.255 10.0.1.0 0.0.0.255&lt;BR /&gt;permit ip 10.0.145.0 0.0.0.255 195.1.0.0 0.0.1.255&lt;BR /&gt;permit ip 10.0.146.0 0.0.0.255 10.0.1.0 0.0.0.255&lt;BR /&gt;permit ip 172.20.0.0 0.0.1.255 10.0.1.0 0.0.0.255&lt;BR /&gt;permit ip 172.21.0.0 0.0.1.255 10.0.1.0 0.0.0.255&lt;BR /&gt;permit ip 172.16.96.0 0.0.31.255 10.0.1.0 0.0.0.255&lt;BR /&gt;permit ip 172.16.128.0 0.0.31.255 10.0.1.0 0.0.0.255&lt;BR /&gt;permit ip 10.0.171.0 0.0.0.255 10.0.1.0 0.0.0.255&lt;BR /&gt;permit ip 10.0.172.0 0.0.0.255 10.0.1.0 0.0.0.255&lt;BR /&gt;permit ip 10.0.173.0 0.0.0.255 10.0.1.0 0.0.0.255&lt;BR /&gt;permit ip 172.21.21.0 0.0.0.255 10.0.1.0 0.0.0.255&lt;BR /&gt;permit ip 172.21.22.0 0.0.0.255 10.0.1.0 0.0.0.255&lt;BR /&gt;permit ip 172.21.24.0 0.0.0.255 10.0.1.0 0.0.0.255&lt;BR /&gt;permit ip 172.21.25.0 0.0.0.255 10.0.1.0 0.0.0.255&lt;BR /&gt;!&lt;BR /&gt;ip sla 1&lt;BR /&gt;icmp-echo 8.8.8.8 source-interface Vlan110&lt;BR /&gt;ip sla schedule 1 life forever start-time now&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;control-plane&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;line con 0&lt;BR /&gt;login local&lt;BR /&gt;transport input none&lt;BR /&gt;stopbits 1&lt;BR /&gt;line vty 0&lt;BR /&gt;access-class MANAGEMENT in&lt;BR /&gt;login local&lt;BR /&gt;transport input telnet ssh&lt;BR /&gt;line vty 1&lt;BR /&gt;access-class MANAGEMENT in&lt;BR /&gt;no activation-character&lt;BR /&gt;login local&lt;BR /&gt;no exec&lt;BR /&gt;transport preferred none&lt;BR /&gt;transport input telnet ssh&lt;BR /&gt;stopbits 1&lt;BR /&gt;line vty 2 4&lt;BR /&gt;access-class MANAGEMENT in&lt;BR /&gt;login local&lt;BR /&gt;transport input telnet ssh&lt;BR /&gt;line vty 5 15&lt;BR /&gt;access-class MANAGEMENT in&lt;BR /&gt;login local&lt;BR /&gt;transport input telnet ssh&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;end&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 24 Jan 2022 14:35:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cisco-software-discussions/l2tp-don-t-work-in-some-windows10-client-and-in-other-yes/m-p/4537103#M4331</guid>
      <dc:creator>AlexBar76</dc:creator>
      <dc:date>2022-01-24T14:35:43Z</dc:date>
    </item>
    <item>
      <title>Re: L2TP don't work in some Windows10 Client and in other yes</title>
      <link>https://community.cisco.com/t5/cisco-software-discussions/l2tp-don-t-work-in-some-windows10-client-and-in-other-yes/m-p/4537212#M4333</link>
      <description>&lt;P&gt;&lt;A href="https://social.technet.microsoft.com/Forums/Azure/en-US/75d78372-185e-4df0-900f-7e9da73cc20f/l2tp-no-ipsec-to-cisco-2901-from-win10-use-wrong-port?forum=win10itpronetworking" target="_blank"&gt;https://social.technet.microsoft.com/Forums/Azure/en-US/75d78372-185e-4df0-900f-7e9da73cc20f/l2tp-no-ipsec-to-cisco-2901-from-win10-use-wrong-port?forum=win10itpronetworking&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 24 Jan 2022 16:38:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cisco-software-discussions/l2tp-don-t-work-in-some-windows10-client-and-in-other-yes/m-p/4537212#M4333</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2022-01-24T16:38:53Z</dc:date>
    </item>
    <item>
      <title>Re: L2TP don't work in some Windows10 Client and in other yes</title>
      <link>https://community.cisco.com/t5/cisco-software-discussions/l2tp-don-t-work-in-some-windows10-client-and-in-other-yes/m-p/4537808#M4337</link>
      <description>&lt;P&gt;Thank&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I've fix the problem&amp;nbsp;&lt;/P&gt;&lt;P&gt;for some reason many w10 client with l2tp vpn configured do not use l2tp port 1700 but try to use the 500 that is for the ipsec also if no ipsec are configured in the vpn client&lt;/P&gt;&lt;P&gt;so you need to modify the windows registry and block the ipsec under l2tp configuration&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;many thanks !!!&lt;/P&gt;</description>
      <pubDate>Tue, 25 Jan 2022 07:21:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/cisco-software-discussions/l2tp-don-t-work-in-some-windows10-client-and-in-other-yes/m-p/4537808#M4337</guid>
      <dc:creator>AlexBar76</dc:creator>
      <dc:date>2022-01-25T07:21:26Z</dc:date>
    </item>
  </channel>
</rss>

