Routed IKEv2 IPSec to VPN provider (i.e. pfsense IKEv2 client)
-
Re: Is is possible to set up pfSense as a client for IKEv2?
@jimp @stephenw10 this is an older question/issue which was not possible at the time it was first asked, but if I understand it correctly, it is now possible in 2.4.4. to do routed IPSec (VTI), perhaps in the way referenced by the OP ("create several IPsec clients to my providers, set them as interfaces and load balance them"). Would you please confirm if that is indeed possible and, if yes, help with a basic how-to? One issue (before any others could even surface) is ability (via GUI or CLI) to set up an EAP-MSCHAP authentication (user/password) in P1 (rather than PSK or RSA certs) which some providers use. Thanks for any pointers.