cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
677
Views
0
Helpful
2
Replies

ipsec ikev2 (site to site vpn) and ssl (anyconnect vpn) issue

Neetu Bhushan
Level 1
Level 1

Hi All,

Ikev2 site to site vpn is more reliable and secured, but it's not compatible on ssl anyconnect.  I really tested on GNS 3 and asa842, it really won't work.

But I'm using asa 9224 on my production, is there a solution on ikev2 and ssl together?  Or is it possible to have second outside connection just for ssl anyconnect so that site to site is on the first outside connection and it might work?  Or other solution you have without buying another asa or user-ssl-vpn appliance or software?

 

Thanks for any comment you may add.

2 Replies 2

Something is going wrong in your setup. AnyConnect/SSL and IKEv2 S2S works together:

AnyConnect Client            :      1 :         27 :           2 :        0
  SSL/TLS/DTLS               :      1 :         27 :           2 :        0
Site-to-Site VPN             :      1 :          1 :           1
  IKEv2 IPsec                :      1 :          1 :           1

Please give me the version of asa and anyconnect firmware you are using?  And are you using just password or ceritificate for the encryption phrase?  By the way I don't want to use ipsec on my anyconnect for it's blocked on most router unlike ssl.