Windows Dropping Mobile IKEv2 on Idle After Upgrading From 2.6 to 22.05
-
We seem to have an issue where windows will drop a Mobile IKEv2 split tunnel to the router after a certain period of time with the following entry in event log:
The user X dialed a connection named vpn.ourdomain.com which has terminated. The reason code returned on termination is 828.
According to the following 828 is ERROR_IDLE_TIMEOUT:
https://kb.eventtracker.com/evtpass/evtpages/EventId_20226_RasClient_65339.aspIdle timeout is not configured on NPS acting as RADIUS nor on the client. Client is Windows 11 22H2 Pro running latest patches.
This issue occurs less often when all traffic is sent through the tunnel for obvious reasons.
I started noticing this issue after upgrading from 2.6 to 22.05. I see the following redmine issue but I'm not sure if it's related:
https://redmine.pfsense.org/issues/12169A keep alive option doesn't seem to be available for Mobile P2.