Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
snobs
New Contributor II

Forticlient IPSec + IKEv1

Dear all, I´d like to use Forticlient IPSec with Astaro firewall. Unfortunately Astaro uses an old Strongswan version that only supports [strike]IKEv2[/strike] IKEv1. With NCP IPSec secure client I can happily pass phase 1 when IKEv1 is being used. With Forticlient phase 1 fails. So, how can I explicitely enable IKEv1 within Forticlient? The XML configuration guide for Forticlient doesn´t include any option for it. Is IKEv1 supported at all? Thanks

Michael

2 REPLIES 2
emnoc
Esteemed Contributor III

Qs  confusion:

 

I believe  FClient does not support IKEv2, so it should be IKEv1 by default. What version of Forticlient are you using ( version and OS  ) ?

 

Are you  trying to use  IKEv1 or IKEv2 ? If the  Astaro firewall only supports IKEv2 than nothing you can do from the client will work.

 

if your on a macox or window, you have other choices that can give you IKEv2 ipsec-client access.

 

 

 

PCNSE 

NSE 

StrongSwan  

PCNSE NSE StrongSwan
snobs
New Contributor II

Sorry, my fault.

[ul]
  • That old version of Strongswan supports IKEv1, only. But it fails with Forticlient, but not with NCP client.[/ul]

     

  • Announcements

    Select Forum Responses to become Knowledge Articles!

    Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

    Labels
    Top Kudoed Authors