Windows 2012R2 RRAS problem


dear microsoft guru,

could please support me in resolving problem simultaneous work of l2tp(psk) , ikev2(peap-mschapv2) on server 2012r2 (rras+nps).

i have issued certificate server , clients can connect ikev2(peap-mschapv2) without problems.

i need add l2tp(preshared key) support rras server. enabled "allow custom ipsec policy l2tp/ikev2 connection" , entered preshared key. since users can connect rras using l2tp(psk).

but(!!!!) users lost ability connect using ikev2. error: "ike authentication credentials unacceptable"

in event log: "the user domain\username dialed connection named ikev2 has failed. error code returned on failure 13801"

is there way operate l2tp(preshared key) , ikev2 (peap-mschapv2) @ same time?

hi maksym sidorchuk,

check if understanding correct. set ikev2 (peap-mschapv2) first, works, check "allow custom ipsec policy l2tp/ikev2 connection" psk, works, while when change connection type ikev2 using certificate, won't work anymore.

if understanding correct, behavior normal, since after checking "allow custom ipsec policy l2tp/ikev2 connection", certificate no longer work, unless unchecking again.

best regards,

anne


please remember mark replies answers if , unmark them if provide no help. if have feedback technet support, contact tnmff@microsoft.com.




Windows Server  >  Security



Comments

Popular posts from this blog

WIMMount (HSM) causing cluster storage to go redirected (2012r2 DC)

Failed to delete the test record dcdiag-test-record in zone test.com

Azure MFA with Azure AD and RDS