galapogos01
Occasional Visitor
Hi guys,
I was setting up an IKEv2 VPN on my Asus AX86S with stock firmware and I noticed in the official guide the step to disable Extended Key Usage (EKU) checks on the client.
Without doing this, Windows will not connect to the VPN server.
Per the Strongswan documentation,
Is anyone else aware of this issue? Does Merlin fix it? Why can't Asus set the EKU flags correctly?
Thanks,
Jason
I was setting up an IKEv2 VPN on my Asus AX86S with stock firmware and I noticed in the official guide the step to disable Extended Key Usage (EKU) checks on the client.
Without doing this, Windows will not connect to the VPN server.
Per the Strongswan documentation,
This is potentially dangerous, as any certificate holder assured by your CA may act as the VPN gateway.
Is anyone else aware of this issue? Does Merlin fix it? Why can't Asus set the EKU flags correctly?
Thanks,
Jason