
Android 4 and newer (using the strongSwan VPN client)Īfter following this guide, you will be able to connect to the VPN using IKEv2 in addition to the existing IPsec/L2TP and IPsec/XAuth ("Cisco IPsec") modes.This method does not require an IPsec PSK, username or password. Libreswan can authenticate IKEv2 clients on the basis of X.509 Machine Certificates using RSA signatures. Compared to IKE version 1, IKEv2 contains improvements such as Standard Mobility support through MOBIKE, and improved reliability. Internet Key Exchange (IKE or IKEv2) is the protocol used to set up a Security Association (SA) in the IPsec protocol suite. Modern operating systems (such as Windows 7 and newer) support the IKEv2 standard. Manually set up IKEv2 on the VPN server.

Note: You may also connect using IPsec/L2TP or IPsec/XAuth mode. Read this in other languages: English, 简体中文.
