View Issue Details

IDProjectCategoryView StatusLast Update
0000086Windows and other desktop OSServerpublic2015-11-10 23:15
ReporterDigitalMy 
PrioritynormalSeveritymajorReproducibilityN/A
Status resolvedResolutionfixed 
PlatformOSWindowsOS Version2008R2
Summary0000086: L2TP connection gives Error 809
DescriptionVPN server is over the NAT device.

PPTP goes OK
TagsNo tags attached.
FinishDate2015-11-10
StartDate2015-11-09
WasteTime
PriorityIndex7
LaboriousnessIndex1

Relationships

related to 0000169 checkingDigitalMy Unwanted network connections on windows server: disable and protect from 
related to 0000174 progressDigitalMy L2TP connection make port reassignment to non-standard for client 

Activities

DigitalMy

2014-02-21 22:59

administrator   ~0000079

Last edited: 2015-11-10 23:12

View 2 revisions

Add record to registry
DWORD (32 bit)
AssumeUDPEncapsulationContextOnSendRule
with value = 1
to path
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\PolicyAgent

tested as no result

DigitalMy

2014-02-21 23:10

administrator  

Windows6.1-KB2028625-x64.zip (1,054,387 bytes)

DigitalMy

2014-02-21 23:19

administrator   ~0000080

This is KB2028625 issue

DigitalMy

2015-11-10 18:19

administrator   ~0000314

Tested like:
wireshark monitored UDP ports 500 and 4500 for L2TP on both sides : server and client -
and proved that UDP data exchange is not blocked

DigitalMy

2015-11-10 18:20

administrator   ~0000315

Last edited: 2015-11-10 20:45

View 3 revisions

From the same client OS we can connect to another server using L2TP, which is not behind another NAT.
From another client (OS Android) we can connect to this server using L2TP.

So, this must be another IPsec issue (non-logging).

DigitalMy

2015-11-10 19:39

administrator   ~0000316

Last edited: 2015-11-10 23:10

View 4 revisions

On both server and client (Windows) set registry keys
path:
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\PolicyAgent
add:
type = DWORD (32-bit)
Name = AssumeUDPEncapsulationContextOnSendRule
Value = 2

And it works