Can I deploy a VPN server with IPSec/IKEv2 for internet?

Can I deploy a VPN server with IPSec/IKEv2 for internet?

Can I deploy a VPN server with IPSec/IKEv2 for internet?
Can I deploy a VPN server with IPSec/IKEv2 for internet?
a week ago - last edited Wednesday
Tags: #VPN
Model: ER605 (TL-R605)  
Hardware Version: V2
Firmware Version: 2.2.5 Build 20240522 Rel.75860

Hello
Can I deploy a VPN server with IPSec/IKEv2 so that clients can use the Internet?
I have deployed a VPN server and the clients can connect to the VPN LAN,

but the clients (Android mobile devices) cannot access the Internet.
Is there anything I can do?

  0      
  0      
#1
Options
2 Accepted Solutions
Re:Can I deploy a VPN server with IPSec/IKEv2 for internet?-Solution
Friday - last edited Wednesday

  @HeungBum 

 

No, there is nothing you can do about it on IPSec, if the clients need to have access to the internet, you must use OpenVPN/Wireguard/SSL VPN or L2TP.

 

Recommended Solution
  1  
  1  
#3
Options
Re:Can I deploy a VPN server with IPSec/IKEv2 for internet?-Solution
Wednesday - last edited Wednesday

Hi @HeungBum 
Thanks for posting in our business forum.

HeungBum wrote

@RaRu@MR.S

now I can access the internet after I set the Local network Type to custom IP and 0.0.0.0/0

I can use internet in my mobile android phone and can access the local network either.

 

This will pose a problem later on. You cannot create a second VPN server if you set it like this.

Don't recommend this. Consider L2TP over IPsec.

Best Regards! If you are new to the forum, please read: Howto - A Guide to Use Forum Effectively. Read Before You Post. Look for a model? Search your model NOW Official and Beta firmware. NEW features! Subscribe for the latest update!Download Beta Here☚ ☛ ★ Configuration Guide ★ ☚ ☛ ★ Knowledge Base ★ ☚ ☛ ★ Troubleshooting ★ ☚ ● Be kind and nice. ● Stay on the topic. ● Post details. ● Search first. ● Please don't take it for granted. ● No email confidentiality should be violated. ● S/N, MAC, and your true public IP should be mosaiced.
Recommended Solution
  1  
  1  
#8
Options
7 Reply
Re:Can I deploy a VPN server with IPSec/IKEv2 for internet?
a week ago

  @HeungBum 

 

Can you show your VPN configuration please?

 

Blur out any sensitive data.

 

Cheers

  0  
  0  
#2
Options
Re:Can I deploy a VPN server with IPSec/IKEv2 for internet?-Solution
Friday - last edited Wednesday

  @HeungBum 

 

No, there is nothing you can do about it on IPSec, if the clients need to have access to the internet, you must use OpenVPN/Wireguard/SSL VPN or L2TP.

 

Recommended Solution
  1  
  1  
#3
Options
Re:Can I deploy a VPN server with IPSec/IKEv2 for internet?
Friday - last edited Friday

@RaRu@MR.S

now I can access the internet after I set the Local network Type to custom IP and 0.0.0.0/0

I can use internet in my mobile android phone and can access the local network either.

  0  
  0  
#4
Options
Re:Can I deploy a VPN server with IPSec/IKEv2 for internet?
Friday

  @HeungBum 

 

Wow, did it work? There have been several issues about this on the forum before. I haven't tested it myself but then you have a solution.smiley

 

  0  
  0  
#5
Options
Re:Can I deploy a VPN server with IPSec/IKEv2 for internet?
Friday

  @HeungBum 

 

What type of encryption does the phone connect with? I have controler and can't choose more than one encryption. I thought I'd test it out a bit.

 

 

  0  
  0  
#6
Options
Re:Can I deploy a VPN server with IPSec/IKEv2 for internet?
Friday

  @MR.S 

 

I think the issue here was that he could connect to IPsec VPN, and LAN access worked but not WAN. 

It was not about routing whole internet traffic via VPN, it wor about having an internet on client at all.

 

IMO the problem could have been with subnet. The declarated subnet of IPsec configuration was the same as actual subnet of Client's network and that generated a problem for client after connecting to the VPN (LAN worked but WAN was not).

  0  
  0  
#7
Options
Re:Can I deploy a VPN server with IPSec/IKEv2 for internet?-Solution
Wednesday - last edited Wednesday

Hi @HeungBum 
Thanks for posting in our business forum.

HeungBum wrote

@RaRu@MR.S

now I can access the internet after I set the Local network Type to custom IP and 0.0.0.0/0

I can use internet in my mobile android phone and can access the local network either.

 

This will pose a problem later on. You cannot create a second VPN server if you set it like this.

Don't recommend this. Consider L2TP over IPsec.

Best Regards! If you are new to the forum, please read: Howto - A Guide to Use Forum Effectively. Read Before You Post. Look for a model? Search your model NOW Official and Beta firmware. NEW features! Subscribe for the latest update!Download Beta Here☚ ☛ ★ Configuration Guide ★ ☚ ☛ ★ Knowledge Base ★ ☚ ☛ ★ Troubleshooting ★ ☚ ● Be kind and nice. ● Stay on the topic. ● Post details. ● Search first. ● Please don't take it for granted. ● No email confidentiality should be violated. ● S/N, MAC, and your true public IP should be mosaiced.
Recommended Solution
  1  
  1  
#8
Options

Information

Helpful: 0

Views: 118

Replies: 7

Tags

Related Articles