Cannot authenticate on CCR1016-12G Router via L2TP VPN

Hi,

I have setup a home network with following (main) components:

  • 1 x CCR1016-12G Router behind a cable modem
    2 x CRS125-24G-1S + 1 x CRS112-8P-4S switches, directly connected with the CCR1016-12G Router

I use the same Username / PWD on all 4 devices. My PWD includes special characters.
I can logon to each of them without any problem via either WinBox or Web Interface from within the network

I recently configured a L2TP VPN server on the CCR1016-12G Router for (remote) VPN access to the local network from the WAN / Internet with a Windows 10 PC (using the Windows 10 built in VPN access).
This works fine: once I connect the L2TP VPN on my Windows 10 PC I have full access to all devices / VLANs in my home network.
I can also logon via either WinBox or Web Interface, using my standard Username / PWD, to all 3 switches.
However, although I can connect to the CCR1016-12G Router (I successfully pass the “Connecting” phase on WinBox and I get to the logon portal of the Web interface), I can’t get logged on to the CCR1016-12G Router using my standard Username / PWD (either via WinBox or via Web interface)!?!
If I use another username / PWD WITHOUT special characters I CAN logon, but ONLY via the Web interface (NOT via WinBox, that stays “stuck” on “Logging in …”)
I am also able to ping the (Management) IP of the CCR1016-12G Router from the remote Windows 10 PC

Any advice would be highly appreciated.

Thanks in advance!

If I use another username / PWD WITHOUT special characters I CAN logon, but ONLY via the Web interface (NOT via WinBox, that stays “stuck” on “Logging in …”)

And what does the log say on the CCR ?

Hi Zacharias,

Thanks for your swift reply on my request!
I’m a little bit unfamiliar with the logging features of the Router OS… What Logging Rules do I need to enable? <= critical / error / firewall / info / warning
Is it better to create a specific rule? If so kindly advise which one

Thanks in advance!

What Logging Rules do I need to enable? <= critical / error / firewall / info / warning

None, just check if there is any entry on the Log in red color when you re trying to connect…
What is your ROS version ?

Thanks for your reply!

This is wat I did:
While connected remotely via the L2TP VPN:

  • I started a Web interface session using a temporary Username / PWD combination that does not include any special characters such that I can see/view de Logs <= I opened the Log window from the main Menu on the far left. It showed me numerous entries from “Topics” ‘Firewall’ and ‘Info’…
  • I then tried to open a second session with WinBox (with my standard Username/PWD): as already stated, WinBox “freezes/stops” with the info “Logging in…”. There are no “red entries” in the Log window on the Web interface session
  • I finally logged out from the Web interface session and tried to logon with my standard Username / PWD (including special characters): during +/- 1 second I see “Loading ” and then I’m returned to the logon page / portal and under the Password entry field it is stated (in red) “Authentication failed: invalid username or password.”

I’m running Router OS v6.48.2 (stable)

Sorry but i ve never come up with such a problem…
And i don’t really see why the special characters can cause any problem…

I do use VPNs, with complex passwords and never had a problem like the one you describe…