How to set up IKEv2 VPN Radius server to cooperate with MikroTik for authentication on Windows server 2012 r2?

互联宽带网 11 Reputation points
2020-11-04T15:17:37.78+00:00

Hello,

As in the title, how to set up the IKEv2-VPN Radius server and client, does MikroTik Radius client need to install a certificate, and how is this certificate generated on the server?

Best regards,

Windows Server 2012
Windows Server 2012
A Microsoft server operating system that supports enterprise-level management, data storage, applications, and communications.
1,620 questions
0 comments No comments
{count} votes

5 answers

Sort by: Most helpful
  1. 互联宽带网 11 Reputation points
    2020-11-16T13:24:23.033+00:00

    Hello,

    The system version is Windows Server 2016 Datacenter Evaluation. I first established AD DS, then AD CS, and finally established a Radius server based on IKEv2 in NPS, but there was a problem. I imported the VPN Server certificate generated in Windows Server 2016 into MikroTik Router , The router cannot recognize the private key. What is the reason? Attach a screenshot:

    Best regards

    40068-mikrotik-1.png40111-mikrotik-2.png40121-mikrotik-3.png40103-1.png40092-2.png40028-3.png40045-4.png40046-5.png40047-6.png40040-7.png40122-8.png40123-9.png40093-10.png40048-11.png40049-12.png40131-13.png40132-14.png39989-15.png40069-16.png40019-17.png![40020-18.png][21]![40070-19.png][22]![40124-20.png][23]![40125-21.png][24]![40073-22.png][25]![40104-23.png][26]![40126-24.png][27]![40105-25.png][28]![40106-26.png][29]![40007-27.png][30]

    1 person found this answer helpful.
    0 comments No comments

  2. 互联宽带网 11 Reputation points
    2020-11-16T13:30:12.4+00:00

    Continuing the picture:

    40141-18.png40142-19.png40152-20.png40094-21.png40075-22.png40127-23.png40153-24.png40128-25.png40129-26.png40143-27.png

    1 person found this answer helpful.

  3. Gloria Gu 3,921 Reputation points
    2020-11-05T08:00:24.703+00:00

    @互联宽带网 Hi,

    Thank you for posting in Q&A!

    Is the Radius server you use to set up IKEV2 VPN connection Microsoft NPS server? If you use Microsoft NPS server as the Radius server, please confirm the following information first:

    1. The client can connect to the VPN server successfully without NPS server.
    2. Add the VPN user account into the VPN users group ou ADUC

    Based on the successful connection between client and VPN server, the Configuration of Mikrotik device as the RADIUS client can be referred to:
    https://mivilisnet.wordpress.com/2018/10/01/how-to-integrate-your-mikrotik-router-with-windows-ad/
    https://www.youtube.com/watch?v=7bA6fhmCJw4

    Hope you have a nice day!
    Gloria

    ============================================

    If the Answer is helpful, please click "Accept Answer" and upvote it.
    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.
    https://learn.microsoft.com/en-us/answers/articles/67444/email-notifications.html


  4. 互联宽带网 11 Reputation points
    2020-11-09T08:17:05.6+00:00

    Hello,

    I am setting up an experimental environment for testing. If necessary, I will post feedback as soon as possible, thank you.

    Best regards,

    0 comments No comments

  5. James 1 Reputation point
    2021-11-16T11:04:22.16+00:00

    Hello, did you manage to find the solution for this?

    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.