1
18.7 Legacy Series / *SOLVED* (upgrading). IPsec mobile clients with DH2 (modp1024) can't connect.
« on: December 13, 2018, 12:19:32 pm »
Privet everybody,
Android clients support DH2 (modp1024) and not support DH14(2048).
in OPNsense web settings: VPN: IPsec: Tunnel Settings for VPN: DH key group = 2(1024 bits)
but in IPsec log:
Dec 13 15:10:05 charon: 16[IKE] <146> negotiated DH group not supported
How to enable DH2 support?
OPNsense 18.7.4-amd64
Android clients support DH2 (modp1024) and not support DH14(2048).
in OPNsense web settings: VPN: IPsec: Tunnel Settings for VPN: DH key group = 2(1024 bits)
but in IPsec log:
Dec 13 15:10:05 charon: 16[IKE] <146> negotiated DH group not supported
How to enable DH2 support?
OPNsense 18.7.4-amd64