<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[IKEv2 on PF2.2.2, iOS seems to send DELETE IKE_SA??]]></title><description><![CDATA[<p dir="auto">Hi everyone,</p>
<p dir="auto">I try to establish an IKEv2 Tunnel from my Iphone to my pfsense. I tried it with 2.2.1 and iOS 8.2.x. The connection seems to come up for some seconds, but then iOS seems to drop the connection and I don't know why.</p>
<p dir="auto">Since pf 2.2.2 and iOS 8.3 are released I thought I give it another try, but same effect :(</p>
<p dir="auto">I fallowed this guide: https://forum.pfsense.org/index.php?topic=85367.0<br />
This is the only VPN on my pf and I configured the apple configurator with exact the same settings and put the certificates in the payload of the configurator.</p>
<p dir="auto">When I disable my wifi connection and try to connect with edge/lte the logfile on pf shows that authentication etc. is fine for my understanding, I don't know what´s wrong so that iOS seems to drop the connection some seconds after connecting:</p>
<p dir="auto">I have cleared the logfile and tried to establish an connection and attached it.</p>
<p dir="auto">Anyone got any ideas what´s going wrong?</p>
<p dir="auto">Regards,</p>
<p dir="auto">Dennis<br />
<a href="/public/_imported_attachments_/1/ipsec_ikev2.txt">ipsec_ikev2.txt</a><br />
<a href="/public/_imported_attachments_/1/ipsec_ikev2.txt">ipsec_ikev2.txt</a></p>
]]></description><link>https://forum.netgate.com/topic/83260/ikev2-on-pf2-2-2-ios-seems-to-send-delete-ike_sa</link><generator>RSS for Node</generator><lastBuildDate>Thu, 11 Jun 2026 01:35:51 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/83260.rss" rel="self" type="application/rss+xml"/><pubDate>Thu, 23 Apr 2015 18:59:17 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to IKEv2 on PF2.2.2, iOS seems to send DELETE IKE_SA?? on Fri, 24 Apr 2015 17:04:12 GMT]]></title><description><![CDATA[<p dir="auto">Edit the config manually and on &lt;pool_netbits&gt;add an IPv6 subnet and see if it fixes it?&lt;/pool_netbits&gt;</p>
]]></description><link>https://forum.netgate.com/post/539611</link><guid isPermaLink="true">https://forum.netgate.com/post/539611</guid><dc:creator><![CDATA[eri--]]></dc:creator><pubDate>Fri, 24 Apr 2015 17:04:12 GMT</pubDate></item><item><title><![CDATA[Reply to IKEv2 on PF2.2.2, iOS seems to send DELETE IKE_SA?? on Fri, 24 Apr 2015 15:59:05 GMT]]></title><description><![CDATA[<p dir="auto">Thanks for your reply.<br />
So there is no chance to setup an IKEv2 Dialin for IPhones at this time?<br />
Is it possible to add an IPv6 entry in the config file(s) manually or will this be overwritten by pfsense config generators?</p>
<p dir="auto">Regards,</p>
<p dir="auto">Dennis</p>
]]></description><link>https://forum.netgate.com/post/539591</link><guid isPermaLink="true">https://forum.netgate.com/post/539591</guid><dc:creator><![CDATA[SiD67]]></dc:creator><pubDate>Fri, 24 Apr 2015 15:59:05 GMT</pubDate></item><item><title><![CDATA[Reply to IKEv2 on PF2.2.2, iOS seems to send DELETE IKE_SA?? on Fri, 24 Apr 2015 07:25:27 GMT]]></title><description><![CDATA[<p dir="auto">Probably because of this</p>
<blockquote>
<p dir="auto">Apr 23 20:31:16 charon: 09[IKE] &lt;con1|4&gt;no virtual IP found for %any6 requested by 'user@domain.tld'<br />
Apr 23 20:31:16 charon: 09[IKE] &lt;con1|4&gt;no virtual IP found for %any6 requested by 'user@domain.tld'&lt;/con1|4&gt;&lt;/con1|4&gt;</p>
</blockquote>
<p dir="auto">It is asking for a v6 as well as v4 virtual ip.<br />
It is supported by backend software but the configuration is not yet there.</p>
]]></description><link>https://forum.netgate.com/post/539428</link><guid isPermaLink="true">https://forum.netgate.com/post/539428</guid><dc:creator><![CDATA[eri--]]></dc:creator><pubDate>Fri, 24 Apr 2015 07:25:27 GMT</pubDate></item></channel></rss>