> Source: [sk104396](https://support.checkpoint.com/results/sk/sk104396)

# sk104396 - L2TP VPN connection on Windows clients does not work with CHAP

| Property | Value |
|----------|-------|
| Solution ID | sk104396 |
| Date Created | 2015-01-26 |
| Last Modified | 2015-01-28 |
| Technical Level | Advanced |
| OS | Gaia |

## Symptoms

- * When try to send VPN traffic through L2TP client to the Security Gateway using encrypted password (CHAP), the connection does not get established.
* When try to send VPN traffic through L2TP client to the Security Gateway using the non-encrypted password (PAP) connection is established

## Cause

Using CHAP or CHAP v2 is not supported for L2TP clients trying to connect to Security Gateway through the VPN tunnel.

The authentication between the L2TP client and the Security Gateway is not supported using MS-CHAP, but the authentication between the Security Gateway and RADIUS is supported, using MS-CHAP-V2.

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
