This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

IPSEC VPN on IOS using Certifcates

Hi,

I am in process of testing some MDM solution which will push VPN solution to IOS devices and having issues.

This has been raised many times before but nothing has been fixed with regards to this.

The only option from the MDM solution is to select one certificate being the remote certificate in Sophos XG setup.  I am mentioning this before i get a reply as before mentioning i also need to import both the certificates for it to work. I and others within the forums have already tried this and it still failed.

The error as always is "The servers certificates identity is incorrect"

Logs from sophos xg is:

IPSec
Failed
 
parsing IKE message from XXXXXXXXXXX [4558] failed

Any chance someone from Sophos could look into this? 



This thread was automatically locked due to age.
Parents Reply
  • Hi

    We are trying to use the IPSEC with certificate authentication.  We don't have any issues using preshared key which works as we expect.  

    There are number various post by different users from past year having had similar issue with certificates and IPSEC VPN with IOS. 

    Preshared key has always worked although VPN on demand, per-app VPN requires certificates on IOS and preshared key is not something our CAB (change request board) will approve.

    Thanks

Children