Hi,
I’m trying to create a site-to-site VPN (L2TP/IPsec with preshared key) from RRAS in Windows Server 2008 R2 to a Cyberoam Appliance. But it is not working. I have troubleshooted it down to understand that RRAS use DH group 20 or 19 in IKE Main Mode negotiation, but the Cyberoam do not support those Diffie Hellman groups. Is it possible to force/change the RRAS to use DH group 2 or 14 on a Demand-dial VPN interface?
Ericho