User can't connect to VPN with their creds but I can?

The issue is always their home / cafe / hotel network.

Try going into device manager and uninstalling all of the WAN miniport adapters. Check hardware changes to make sure they come back. You can check event viewer too to see if there’s any error codes.

Not sure if it’s been mentioned yet but I found after trying all of these other things, if it’s still not working you have to delete the l2tp wan mini port in the device manager.

It’s those two checkboxes, I’ve run across this thousands of times. Also WSUS resets these every. single. fucking. time and it’s maddening, but this is why I’m primarily a *nix admin/engineer with Windows as an ongoing shitty side project I hate for a lot of reasons… like this one.

Make sure unencrypted password is checked and CHAP is unchecked. I also noticed in some cases when a client VPN fails to connect, Windows VPN will change some of the settings I just set, so my common practice is to go in and re-set everything up upon any failures to connect.

This.

Always this.

He stated he had the user shown the password in the password line and it was fine, so that’s not the issue. It’s something about settings imo.

I had the user copy and past too, using the exact same source that I was using, and I double checked what they had pasted to make sure it matched the source.

Oh that’s a good question. It’s using AD.

I don’t know, I can’t imagine this issue occurring, and then replacing it with a brand new computer, and that brand new computer also having a keyboard issue. It also wouldn’t make sense for copying and pasting not to work.

I will be connected to their machine remotely, and copy and past their credentials from a notepad on their machine, into the log in window to connect to the VPN from their machine, and it will work.

They will copy and past the exact same credentials from the exact same notepad file into the exact same window and it won’t work.

You know what, I always thought of those as two completely separate things. But this makes so much more sense and I probably need to get my hearing checked lol

Also if it is a frequent issue, have a login script that deletes the VPN connection and adapters, then recreates the VPN connection.

When I worked at a MSP meraki shop we used to deploy the VPN this way via GPO/Intune.

Many English speakers do not pronounce the v so it ends up sounding like wala, I get it. But now you can impress your friends with your knowledge of French, voilà!