cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1618
Views
0
Helpful
2
Replies

Need the configuration for VPN IKEv2 inorder to use windows phone !

mahmoud_ayoub
Level 1
Level 1

I am having an issue configuring VPN over IPsec with IKEv2 to use Windows Mobile VPN Client(Nokia Lumia)

  1. Unable to find the configuration for the IKEv2 is not available !
  2. Also, Please advice if there would be any License requirements for using IKEv2 ?

 

Requirement: Configure remote access VPN to access the network through Nokia windows mobile (lumia 925).

Note: Windows phone 8.1 support IKEv2 only !!

 

#Firewall show version#

Cisco Adaptive Security Appliance Software Version 8.6(1)10   Device Manager Version 6.6(1)

Hardware:   ASA5525

 

Anyone there know how configure to or guide me with the steps and requirements? That could help ….

1 Accepted Solution

Accepted Solutions

Abaji Rawool
Level 3
Level 3

You need to use ASA 9.3.2 which has support for 3rd party ikev2 clients

Sample ASA config

ASA    Config:    Using EAP authentication

--------------------------------------------------------- 

tunnel-­‐group    DefaultRAGroup    general-­‐attributes    

    address-­‐pool    IPv4  

    authentication-­‐server-­‐group    <free-­‐rad  server>    

tunnel-­‐group    DefaultRAGroup    ipsec-­‐attributes    

    ikev2    remote-­‐authentication    eap    query-­‐identity    

    ikev2    local-­‐authentication    certificate    <cert> 

---------------------------------------------------------

You can read the ASA 9.3.2 release notes and configuration guide for full details.

View solution in original post

2 Replies 2

Abaji Rawool
Level 3
Level 3

You need to use ASA 9.3.2 which has support for 3rd party ikev2 clients

Sample ASA config

ASA    Config:    Using EAP authentication

--------------------------------------------------------- 

tunnel-­‐group    DefaultRAGroup    general-­‐attributes    

    address-­‐pool    IPv4  

    authentication-­‐server-­‐group    <free-­‐rad  server>    

tunnel-­‐group    DefaultRAGroup    ipsec-­‐attributes    

    ikev2    remote-­‐authentication    eap    query-­‐identity    

    ikev2    local-­‐authentication    certificate    <cert> 

---------------------------------------------------------

You can read the ASA 9.3.2 release notes and configuration guide for full details.

jaysoo
Level 1
Level 1

If you get WP 8.1 with Denim it provides support for L2TP with IPsec. IKEv2 is probably a better way to go though. I know Denim isn't available in some areas yet though.