This article describes the Routing and Remote Access Services encryption options for the Layer Two Tunneling Protocol with IPsec (L2TP/IPsec) on a Windows Server 2008-based Network Policy Server (NPS) and also how to configure the strongest encryption for an IPsec policy.
How to configure the strongest encryption for an IPsec policy
To configure the strongest encryptions for an IPsec policy, follow these steps:
Start the Network Policy Server (NPS) console. To do this, click Start, type Network Policy Server in the Start Search box, and then click Network Policy Server.
Under NPS(Local), expand Policies, click Network Policies in the left navigation pane, and then select the relevant policy in the right navigation pane.
Double-click the policy, and then click the Settings tab.
In the Settings area, click Encryption under Routing and Remote Access.
Click to select the Strongest encryption (MPPE 128-bit) check box.
Click Apply, and then click OK to apply the strongest encryption.