Community discussions

MikroTik App
 
User avatar
mdd
Frequent Visitor
Frequent Visitor
Topic Author
Posts: 53
Joined: Mon Oct 02, 2017 4:25 pm
Location: Klaipeda, Lithuania

IKEv2 setup + WIN10 built-in client cannot connect anymore

Thu Jan 28, 2021 1:51 pm

Hello all good people.

Just this day realized that i cannot connect to my office using setup, which was working fine before.
I have Mikrotik Router setup with IKEv2 vpn. All my clients use win10 build-in client with cert login without password.
And now when i trying connect - get this message "The context has expired and can no longer be used."
Tried debug on Mikrotik router, but i cannot get any hit to router which is very odd.
On Windows also have tried to turn off FW, but still looks the same. Has any one had this issue ? Or maybe know where to look for ?
 
Sob
Forum Guru
Forum Guru
Posts: 9188
Joined: Mon Apr 20, 2009 9:11 pm

Re: IKEv2 setup + WIN10 built-in client cannot connect anymore

Thu Jan 28, 2021 2:11 pm

I don't know if it's that, but "certificate" and "expired" can be related, certificates do expire. So that's the first thing you should check.
 
billybons2006
just joined
Posts: 21
Joined: Fri Jun 27, 2014 11:43 am

Re: IKEv2 setup + WIN10 built-in client cannot connect anymore

Thu Jan 28, 2021 2:19 pm

If there are no any log records in mikrotik, so trouble with client side. If you can't even start try to connect the problem is not with ISP. And because all your computers stop connect at one time, the problem is common - common part is c erts, agree with Sob - are your certs have correct time to expire?
 
User avatar
mdd
Frequent Visitor
Frequent Visitor
Topic Author
Posts: 53
Joined: Mon Oct 02, 2017 4:25 pm
Location: Klaipeda, Lithuania

Re: IKEv2 setup + WIN10 built-in client cannot connect anymore  [SOLVED]

Thu Jan 28, 2021 2:44 pm

Ok good people. One thing i have found out already is that WIN10 issues.
For some reason service was disabled "IKE and AuthIP IPsec Keying Modules" and when i enabled and started VPN trys connecting now and hits the Router...
As always but... event if i change on adapter configuration and try connect its push me to metro window to connect. And what i see that if i try to change Type of sing-in to certificate and save it still dumps backs up to General ... which Mikrotik router does not like :)
 
User avatar
mdd
Frequent Visitor
Frequent Visitor
Topic Author
Posts: 53
Joined: Mon Oct 02, 2017 4:25 pm
Location: Klaipeda, Lithuania

Re: IKEv2 setup + WIN10 built-in client cannot connect anymore

Thu Jan 28, 2021 3:14 pm

Yep thats WIN10 issues with Metro GUI. Sorted out now. Thanks all.