Hey there
I am new here, Support is indicating that they do not support x509 Authentication (Certificate or Smartcard) for remote authentication users to an IPSec Tunnel. Has anyone successfully enabled an IPSec tunnel for remote users to authenticate with a certificate or smartcard? Need help regarding this
For example, with a different vendor you can enable Radius and point it to a Windows or other Policy Enforcement service that can authenticate a user based on the certificate presented (EAP) and then authenticated and authorized for network resources
That is not supported in the product. IPsec uses PSK or a certificate for all tunnels. Then you can use a X509 in phase 2 to authenticate. But not a client certificate.
__________________________________________________________________________________________________________________