IKEv2 with EAP-MSCHAPv2 failed to connect on Windows

Hi, I setup an IKEv2 EAP-MS-CHAPv2 VPN using this link https://help.mikrotik.com/docs/display/ROS/IPsec#IPsec-RoadWarriorsetupusingIKEv2withEAP-MSCHAPv2authenticationhandledbyUserManager(RouterOSv7).

When I tried connect on iOS, it work. But when I tried on Windows, I got error “IKE authentication credentials are unacceptable

How can I solve it? I tried googling, all the solution are using certificates to connect. I have changed the security tab on Windows to use EAP-MSCHAPv2 but still not working. Please help

2022-10-09_08-34-29.jpg

Thank you. Mikrotik help page really need to add this into their page. To those anyone who are having problem, you can download the Intermediate cert https://letsencrypt.org/certificates/. Download both of ISG root X1 and R3.

Problem solved.

Thanks a lot, this worked for me too. Just wanted to add that it’s not required to add both the root “ISRG Root X1” and the intermediate “R3”. Just with the intermediate certificate is enough as the root certificate is already present in the OS.