To configure IPsec IKEv2 you must first have the certificate. This must be exported from the router and can be done either through Insight or the local GUI of the router.
To export the Certificate in Insight.
- Access the Insight Cloud Portal.
- Navigate to the Devices tab and the Device settings of the router.
- The router’s settings page will display.
- Click General > Certificate Authority.
- Highlight the certificate you wish to export and click Export Certificate. The certificate will be zipped and will need to be extracted.
- The certificate is now exported and can now be imported into iOS. This can be done by emailing the certificate to the user.
To export the Certificate on the local GUI.
- On a computer or mobile device that is connected to your PR60X router's network, access https://www.routerlogin.net. Your browser might display a security message, which you can ignore.
- A login window opens.
- Enter the router user name and password.
- The user name is admin. If you did not change your router's password during setup, enter password. The user name and password are case-sensitive.
- On the router dashboard, select VPN > Certificate.
- Under the Certificate page, select Authorities.
- Highlight the certificate you wish to export and click Export Certificate.
- The certificate is now exported and can now be imported into iOS.
To setup through iOS.
- Email the Certificate Authority file to an e-mail address that is reachable on the iOS device.
- Open the mail add and open the message with the attached Certificate Authority Certificate.
- Tap on the attachment to install the Certificate Authority Certificate and tap Install under the prompt.
- Next navigate to Settings and tap on Profile Download.
- Tap Install on the final prompt to add the Certificate Authority Certificate as a trusted entry.
- Next, open Settings and tap VPN.
- Tap Add VPN Configuration and set Type to IKEv2.
- Under the Description field add a descriptive name.
- Under the Server field, add the hostname or IP address.
- Under the Remote ID field, add the hostname or IP address. Note: The Server and Remote ID must match the same ID when configuring the policy.
- Under the User Authentication field, select Username.
- Add the Username and password.
- Tap Done on the upper right corner.
- To connect, under the VPN settings, toggle the Status to Connected.