Project

General

Profile

Actions

Todo #14871

closed

Feedback on pfSense® software Configuration Recipes — IPsec Remote Access VPN Example Using IKEv2 with EAP-MSCHAPv2

Added by brian neiferd almost 2 years ago. Updated almost 2 years ago.

Status:
Rejected
Priority:
Normal
Assignee:
-
Category:
IPsec
Target version:
-
Start date:
Due date:
% Done:

0%

Estimated time:

Description

Page: https://docs.netgate.com/pfsense/en/latest/recipes/ipsec-mobile-ikev2-eap-mschapv2.html

Feedback:
Impossible to follow instructions...........authentication method drop-down box only contains two options, Mutual Certificate and Mutual PSK. Remote Gateway field is a required field but instructions omit field completely.

I have IPSec Tunnel ID1 and that is the only option where the authentication method drop-down box allows additional methods.

Actions #1

Updated by Jim Pingle almost 2 years ago

  • Status changed from New to Rejected

If that's what you see, you did not follow the instructions properly and you are not editing the mobile P1, but a site-to-site P1. If you need assistance, post on the forum.

Actions #2

Updated by brian neiferd almost 2 years ago

There is only VPN>IPSec>Tunnels, add P1. There is not a button to distinguish between mobile P1 and site-to-site P1 on the page. I have a feeling the real problem is that you can only have 1 IPSec tunnel associated as Mobile Client. Let me know if I'm wrong. The documentation does not mention this, nor make clear it is a requirement that no other mobile client tunnels exist, regardless if currently disabled. You can only complete the example instructions if starting from a clean configuration.

Actions #3

Updated by Jim Pingle almost 2 years ago

There can only be one mobile IPsec P1. It isn't called out in that recipe, but it's documented elsewhere.

Actions

Also available in: Atom PDF