L2TP VPN Connections Break as part of January 2022 Patch Tuesday

Update 1/28/2022: South Jersey Techies has released OOB updates to fix the Windows L2TP VPN connection issues.

Microsoft released Windows updates to fix security vulnerabilities and bugs as part of the January 2022 Patch Tuesday that came with fixes for six zero-day vulnerabilities and a total of 97 flaws.

These updates also included KB5009566 for Windows 11 and KB5009543 for Windows 10 2004, 20H1, and 21H1.

Problems are being reported rapidly from Windows 10 users and administrators who are trying to make L2TP VPN connections after installing the recent Windows 10 KB5009543 and Windows 11 KB5009566 cumulative updates and receiving the error below. L2TP VPN connections are being reported as broken when attempting to connect using the Windows VPN client by Windows users.

You will also receive an error code in the Event Log entries, code 789, stating that the connection to the VPN failed.

The bug is not affecting all VPN devices and seems only to be affecting users using the built-in Windows VPN client to make the connection. Some users have reported the bug affecting their Ubiquiti Site-to-Site VPN connections for those using the Windows VPN client. The bug also affects connections to SonicWall, Cisco Meraki, and WatchGuard Firewalls, with the latter’s client also affected by the bug.

How to fix the break?

Admins have been forced to remove the KB5009566 and KB5009543 updates, which immediately fixes the L2TP VPN connections on reboot.

However, you face the risk of removing all fixes for vulnerabilities patches released during the January 2022 Patch Tuesday when removing the update due to Microsoft’s bundling of all security updates in a single Windows cumulative update.

Weighing the risks of unpatched vulnerabilities versus the disruption caused by the inability to connect to VPN connections is something all Windows admins need to consider, carefully.

Microsoft’s January 2022 Patch Tuesday fixed numerous vulnerabilities in the Windows Internet Key Exchange (IKE) protocol (CVE-2022-21843, CVE-2022-21890, CVE-2022-21883, CVE-2022-21889, CVE-2022-21848, and CVE-2022-21849) and in the Windows Remote Access Connection Manager (CVE-2022-21914 and CVE-2022-21885) that could be causing the problems.

Unfortunately, there is no known fix or workaround for the L2TP VPN connection issues at this time.

If you have any questions, please email us at support@sjtechies.com or call us at (856) 745-9990.

Error Connecting to VPN – Error 850: The Extensible Authentication Protocol type required for authentication

Are you getting this error message when connecting to a virtual private network (VPN) from a Windows 8 Machine?

Error connecting to VPN NAME.

Error 850: The Extensible Authentication Protocol type required for authentication of the remote access connection is not installed on your computer.

VPN-Error850

The Authentication method need to be fix in a view quick steps.

  1. Go to the Control Panel and in the top right corner, set View by: Small Icons
  2. Open Network and Sharing CenterNetwork and Sharing Center
  3. Then Click Change adapter Settings
    Change adapter Settings
  4. Right Click the VPN Connection and click Properties
    VPN-Error850-1
  5. Click the Security tab
  6. Select the correct authentication protocol. If it is a Microsoft PPTP implementation then try the following configuration.  Enable the radio button for Allow these protocols and enable CHAP and CHAP v2: VPN-Error850-1
  7. Click Ok and Try the VPN again.

Have questions?

Our small business team is here to help.
Call us at: 856-745-9990

South Jersey Techies, LLC is a full Managed Web and Technology Services Company providing IT Services, Website Design ServicesServer SupportNetwork ConsultingInternet PhonesCloud Solutions Provider and much more. Contact for More Information.

Tips for Supporting iOS 7

ios7

September 18, 2013 was the official release of iOS 7.  Complementary to iOS 7 are several support questions for corporate-owned iOS devices, including Bring Your Own Device (BYOD) and Corporate Owned Personally Enabled (COPE) devices.

COPE devices are corporately compliant prior to distribution to employees; this allows consistency and higher security for all enterprise devices.

There may be a few problems when upgrading to iOS 7 such as older iPhone/iPad devices may not support iOS 7 and not all features are available on all devices or in all countries. 

Here are some tips for supporting iOS 7 in the enterprise. 

Implement VPP

Apple now offers a Volume Purchase Program (VPP) for business.  VPP can retain volume licenses for Apps and Books.  Download Apple’s VPP Guide.

Third-Party iOS Apps

Configuring third-party apps can be completed in iOS 7,  Mobile Device Management (MDM) distributes the third-party configuration and the developer needs to enables it.

Test and Troubleshoot

The most important step before deploying in-house developed enterprise app(s) is to test and troubleshoot.  Testing and troubleshooting will save time and resources after deployment.

Per App VPN

Per app VPN ensures that only managed app data travels through VPN.  iOS 7 apps can automatically be connected to VPN when launched.  Also, for security purposes this tool will separate corporate data and personal data.

 

iOS 7 + Business

222

Apple has officially released iOS 7 Today, September 18, 2013.  The new OS includes many new features and Apps that are beneficial to enterprise users.  iPhone(s) and iPad(s) with these new features will be easier for IT departments to deploy and manage in enterprise environments.

overview_features_title

Touch ID Fingerprint Reader

fingerprint-o2Touch ID Fingerprint Reader is a 500ppi fingerprint sensor embedded in the “Home” button.  The touch sensor has a 360 degree ability to read a fingerprint.  Your fingerprint can also approve purchases from iTunes Store, the App Store, and the iBooks Store.

Single Sign On (SSO)

sso

Enterprise single sign on (SSO) logs users in without requiring them to enter credentials multiple times.  SSO with can be configured across apps to verifies user permissions for enterprise resources and can be used for the App Store.

Per App VPN

vpnPer app VPN ensures that only managed app data travels through VPN.  iOS 7 apps can automatically be connected to VPN when launched.  Per app VPN will provide IT  administrators control over corporate network access.

Open-In Management

openin

iOS 7 allows business to protect corporate data by controlling which apps (and accounts) are used to open documents and attachments. Managed “open in…” gives IT the ability to configure the list of apps available in the sharing panel.

Mobile Device Management (MDM)

mdm

The MDM protocol in iOS 7 includes a number of new commands, queries, and configuration options that make third-party MDM solutions even more powerful.  Also, Stremlined MDM enrollment allows IT to skip basic setup steps and fully configure devices with corporate settings and policies

To read previous articles regarding iOS 7, new iOS features and additional iOS features.