Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    iOS-style dual IPsec tunnel on Android?

    Scheduled Pinned Locked Moved IPsec
    1 Posts 1 Posters 309 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • senseivitaS
      senseivita
      last edited by

      On iOS, when devices are supervised and configured through Profile Manager or some other MDM/EMM, they can be set to have a tunnel on each interface (cellular and WLAN) so they transition seamlessly. They also aggressively maintain these tunnels too. iOS is amazing for this.

      On Android (strongSwan) though, I can't even bring up a single tunnel on Wi-Fi without blocking something so the intranet isn't accessible Android devices regardless if the subnets don't overlap at allfrom he Android device doesn't see it's on the same network. That's most likely the lack of experience I have with it I think, I'd like to know though if it's possible to configure dual tunneling like on iOS to save a little time beforehand trying to find non-existent documentation. Is it?

      PS I have an MDM solution for Android too, if it happens to be required like on iOS. It's super basic but then again, for Android all are. Currently I'm using non-domain-joined EAP-TLS auth with a temporary CA but I'll move to EAP-RADIUS eventually since there are device user (not machine) accounts already and a proper PKI -- any extra advice is welcome.

      Missing something? Word endings, maybe? I included a free puzzle in this msg if you solv--okay, I'm lying. It's dyslexia, makes me do that, sorry! Just finish the word; they're rarely misspelled, just incomplete. Yeah-yeah-I know. Same thing.

      1 Reply Last reply Reply Quote 0
      • First post
        Last post
      Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.