USG Flex 100 IKEv2 tunnel stability with iPhone
Hello,
Want to share my experience with USG Flex 100 IKEv2 and LT2P/IPSec tunnels in practical usage. The configs what I have in USG are standard ones, I have not done any modifications to what the wizards give, while setting up the configs.
With iPhone and iPad having the latest iOS versions, clearly it seems to be so that L2TP tunnel is much more stable compared to IKEv2. IKEv2 tunnel is breaking with or without I’m using any application creating traffic between some 10min. While L2TP tunnel in practice is not breaking at all.
I would like ot ask experiences from other users? And if there is any tips how to change enhance the stability for IKEv2 tunnel as well via changing parameters in USG?
Regards
K
All Replies
-
Hi @kelmi
I did a local test with 5.40 firmware and iOS 26.0 but I didn't encounter this issue. The IKEv2 connection is kept over 10 minutes.
May I know if this issue happened in the previous iOS version? Also, what's the logs of the IKEv2 connection?
Update: Change the phase 2 proposal DH to none get better stable connection. But the VPN connection is still disconnect when the iPhone screen is locked. This is the iOS's limitation, need to make some change on iPhone.
Zyxel Melen1
Categories
- All Categories
- 439 Beta Program
- 2.8K Nebula
- 199 Nebula Ideas
- 125 Nebula Status and Incidents
- 6.3K Security
- 489 USG FLEX H Series
- 322 Security Ideas
- 1.6K Switch
- 83 Switch Ideas
- 1.3K Wireless
- 46 Wireless Ideas
- 6.8K Consumer Product
- 284 Service & License
- 455 News and Release
- 89 Security Advisories
- 31 Education Center
- 10 [Campaign] Zyxel Network Detective
- 4.3K FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 85 About Community
- 95 Security Highlight