SSTP AES hardware acceleration please! SSTP is the only standard protocol for Windows road warriors (but also can be used on other platforms with additional software) which works nearly anywhere. All other options like l2tp, ikev2, wireguard etc. are sometimes blocked in public or hotel networks. No...
We have the same problem on 2 of 4 RB1100ahx4. It occurs only on 2 routers which have l2tp server with ipsec. Also we had several times when only l2tp server stopped working so I could login to the router, disable/enable l2tp server and everything continued to work. It seems to me that those two pro...
嗨!任何机会P EAP Radius working? Are there any plans to implement it? We are using ikev2 with certificate authentication and Windows NPS server as radius server. It works well with Microsoft's always on vpn + Mikrotik as a router. But sometimes ipsec is blocked in some public wifi netw...
I can tell that Always On VPN works fine with Mikrotik's ikev2 eap radius. I used this guide to configure Windows Servers https://4sysops.com/archives/always-on-vpn-directaccess-for-windows-10/ Except RRAS part. Also I use trusted certificated from Comodo for Mikrotik's ikev2 instead of AD CS. You j...
After some changes in ipsec configuration you can use a command like this: ip ipsec identity set certificate=YOURCERTIFICATE.cer,comodorsadomainvalidationsecureserverca.crt And it seems that now you can also set a certificate chain using just Winbox GUI. I have just tested ikev2 eap radius with my c...
嗨!Can you please tell us when approximately will 6.44 be released? Several weeks or a mounth or maybe more? Just waiting for "*) ike2 - added option to specify certificate chain;" sooo muchDo not want to use beta in production. Thanks!
Sorry, my fault. It seems i was importing certificate private key with wrong password. I have imported it again and went back to the first error: "IKE authentication credentials are unacceptable". But after some more time I've got it working! It seems for now we have to use terminal to con...
Great news, mrz! I'm really glad you are working on this issue. But I cannot get it to work. I have installed 6.44beta6 and I cannot find this option. Can you tell me how to configure it? Or maybe it just works automatically? By the way, now I'm getting some other error when connecting from Windows ...
Thanks for the info! Thats so sad. We still have no really universal and modern vpn solution for RoadWarriors with mikrotik. Of course we can add sertificates with goup policy but in this case there's no need to purchase a trusted certificate :) But what about non-domain PCs? Again we have to write ...
嗨!Same situation here. I also use Comodo trusted certificate and windows 10 ikev2 cant connect too with the same error. If I'm not mistake, I think that I have already tested ike2 eap radius on mikrotik with the same trusted certificate and it worked before. Maybe several mounth ago. Have you trie...