Todo #14871
closedFeedback on pfSense® software Configuration Recipes — IPsec Remote Access VPN Example Using IKEv2 with EAP-MSCHAPv2
0%
Description
Page: https://docs.netgate.com/pfsense/en/latest/recipes/ipsec-mobile-ikev2-eap-mschapv2.html
Feedback:
Impossible to follow instructions...........authentication method drop-down box only contains two options, Mutual Certificate and Mutual PSK. Remote Gateway field is a required field but instructions omit field completely.
I have IPSec Tunnel ID1 and that is the only option where the authentication method drop-down box allows additional methods.
Updated by Jim Pingle almost 2 years ago
- Status changed from New to Rejected
If that's what you see, you did not follow the instructions properly and you are not editing the mobile P1, but a site-to-site P1. If you need assistance, post on the forum.
Updated by brian neiferd almost 2 years ago
There is only VPN>IPSec>Tunnels, add P1. There is not a button to distinguish between mobile P1 and site-to-site P1 on the page. I have a feeling the real problem is that you can only have 1 IPSec tunnel associated as Mobile Client. Let me know if I'm wrong. The documentation does not mention this, nor make clear it is a requirement that no other mobile client tunnels exist, regardless if currently disabled. You can only complete the example instructions if starting from a clean configuration.
Updated by Jim Pingle almost 2 years ago
There can only be one mobile IPsec P1. It isn't called out in that recipe, but it's documented elsewhere.