How to make iPhone Cisco VPN client work with ASA with certificate authentication
- by Ben Jencks
I have an ASA that's providing IPsec VPN services using certificate authentication (no xauth, just the certs). It works perfectly with the Cisco IPsec VPN Client. Now I'm trying to let iPhones connect.
I've installed the CA cert and a client certificate on the iPhone with a profile using iPCU, along with the VPN configuration. Then connecting gives the error "Could not validate the server certificate". Additionally, the ASA logs the error "Received encrypted Oakley Informational packet with invalid payloads".
FWIW, I receive the same invalid payload error when trying to use the Snow Leopard IPsec client to connect.
Has anyone successfully gotten the iPhone IPsec client to work with certificate auth?