USG310: AD Users can't connect IKEv2 since update 4.35 AAPJ0

Options
KMB
KMB Posts: 2
First Anniversary
edited April 2021 in Security

since firmware update to 4.35 (AAPJ0) on my USG310 AD Users get an "Auth fail" when establishing a VPN connection via IKEv2. Local users of the USG can flawlessly connect. Apparently the user check in the AD fails.

I have already checked the "AAA server" settings and the Test function for the user name still returns "ok". The Authentication method for IKEv2 VPN is on "Group AD" and second set to "local".

Only "Auth fail" is displayed in the IKE log.

I've reporteted this error before with ID #94473. This inquriy was closed without fixing the problem.

Now I updated to 4.35 AAPJ2 and previously to 435AAPJ0ITS-WK46-r90773 but the error stays the same.


Could't you help?

All Replies

  • [Deleted User]
    [Deleted User] Posts: 213  Zyxel Employee
    First Anniversary Friend Collector First Answer First Comment
    Options

    Hello @KMB,

    we can also switch to german if desired.

    The old ticket was solved, as there was no feedback. We are already actively working on your new ticket.

    I think it makes sense to discuss this further via the ticket.

    Best regards

    Lukas

Security Highlight