IPsec mobile clients with 22.1

Started by atom, February 24, 2022, 10:32:26 AM

Previous topic - Next topic
Hello,

I've installed a fresh OPNsense with 22.1.
Then I've tried to enable Mobile Clients according to https://docs.opnsense.org/manual/how-tos/ipsec-rw-srv-mschapv2.html .
Unfortunatly I'm not able to add a phase 2 entry. ( step 3 from the guide )
There is no button "show 0 phase-2 entries".

Regards,
atom

Hi,

The button to open a new phase 2 entry is now at the end of the phase 1 entry. Phase 2 are automatically shown below when you click on the respective phase 1 in the table.


Cheers,
Franco

Hi Franco,

unfortunantly I can't see any button.

Regards,
atom

The "+" in the row of the phase 1 on the right is to create a new phase 2 for it.


Cheers,
Franco

February 24, 2022, 01:26:18 PM #4 Last Edit: February 24, 2022, 01:35:30 PM by atom
Yes, that is possible, but it is far from intuitive. ( like the entire change for ipsec ui in my opinion )

But now I have to submit a remote IP and '%any' is not possible.

Update: screenshot attached

You can append "&mobile=true" for now to the URL after opening it and the remote network disappears. We will fix it.


Cheers,
Franco

I've tried it this way: /vpn_ipsec_phase2.php?p2index=62177716eeef7&mobile=true , but the remote network is still visible.     :(

It only works on initial creation of the phase 2 (after clicking the "+"). Unfortunately these are the rules of the current code and we will be changing them:

https://github.com/opnsense/core/issues/5598


Cheers,
Franco

Hi Franco,

I have deleted the entry and added it again, but with "&mobile=true".

Thanks,
atom