Community discussions

MikroTik App
 
essides
newbie
Topic Author
Posts: 49
Joined: Fri Mar 10, 2017 6:18 pm
Location: Spain

Revoke Access to VPN IKEv2

Sun Jan 09, 2022 5:56 pm

Hi there,

I followed the instrucctions for Ikev2 RSA for road warriors

https://wiki.mikrotik.com/wiki/Manual:IP/IPsec

Road Warrior setup using IKEv2 with RSA authentication

It works , but I don't know how to revoke access for those road warriors that won't continue needing the VPN. I tried to revoke the user certificate, but it still working.

What I should to do?

Thanks you.
 
sindy
Forum Guru
Forum Guru
Posts: 10206
Joined: Mon Dec 04, 2017 9:19 pm

Re: Revoke Access to VPN IKEv2

Sun Jan 09, 2022 6:59 pm

If you haven't created the CA certificate you use to sign the clients' certificates with a CRL, the only thing you can do now is to create a dedicated identity row for each client, matching on its individual certificate.
 
sindy
Forum Guru
Forum Guru
Posts: 10206
Joined: Mon Dec 04, 2017 9:19 pm

Re: Revoke Access to VPN IKEv2

Sun Jan 09, 2022 9:35 pm

See this post on how to deal with certificate revocation properly.

Who is online

Users browsing this forum: critter, ihexley, jfibergran and 134 guests