Setup VPN to connect to home network

I’m wanting to setup a VPN so I can remote into my home network. i Originally was going to use a PI to do this but than read that available to do through my unifi setup. im using L2TP Server

I have the the cloud Key gen 2 plus and the security gateway. I tried following this guide but can’t seem to get it to connect. I don’t understand the guide completely. So I think I have my radius user setup correctly. I created a new Network for the VPN if I understand correctly it needs to be on a different gateway ip/subnet as my regular LAN. so my regular LAN ends in .1.0 /24 so this one ends in .2.0/24 is that correct? When I try and connect on my mac under System preferences network VPN it fails. For the server address I put in my public ip address that i found under devices USG wan (is that correct?)

The only other thing it says to check is firewall. I don’t have any firewalls or rules setup in Unifi and my modem is from charter business and don’t have access to the settings.

Any help or things to try would be much appreciated

Are you setting up with the classic or new interface? I found I had to go to classic settings in order to get it to work properly. Under Radius server there is a check box that says “configure clients section for whole network”. I couldn’t check this box at all. I had to do an html work around to turn this on. Once it was on it worked properly. Note that this only shows up in classic view. I spent more hours on it that I would like to admit but this finally fixed it for me. I got my information from this thread: https://community.ui.com/questions/L2TP-VPN-to-USG3-get-The-connection-was-terminated-because-the-remote-computer-did-not-respond-in-a/a9e6bba6-6a27-4000-b405-72a31fc3c3b2?page=1

Thanks so much for your post and insight. I was having so many problems with the new interface on the UDM Pro. It makes it look like the setup is nice and easy but it just doesn’t work. It was putting the VPN in a different VLAN and not able to reach the internal network devices. On top of that I used the old interface to change my IP range for the VPN assignment and it will still for some reason assign it as a 192.168 range, like it was ignoring the settings. Come on Ubiquiti, get some quality control on these software releases.

That worked perfectly. I’m glad I had everything right and it was something outside my control. Can’t thank you enough

I don’t have a static ip and was planning to see how frequently it changes before deciding on fixing that issue. Do you recommend any of those free ddns services like noip. A lot I have looked at tend to data mine a lot. I’m not opposed to paying

You know I haven’t really looked at any of those. I have a “dynamic” ip that hasn’t changed in obey six years so didn’t bother with it. I’m sure someone else can chime in with their experience.

I’m hoping that is the case for me too