8.18.1 Convert IKE v1 Offices to IKE v2
The IKEv1 protocol does not comply with current security standards. If one of the UC Tenants uses the VPN connection with IKEv1, a warning message is displayed. You cannot create new offices and must convert the existing IKEv1 connections to IKEv2.
Make sure that your hardware supports IKEv2.
During the conversion of an office and until the necessary configuration has been completed, the telephony functionality is not available to the customer at the corresponding location. Client connections via RemoteConnector continue to work.
After successful conversion to IKEv2, it is necessary to update the following settings on the customer side:
- The endpoint for the VPN must be updated in the configuration of the VPN Gateway in the local customer network.
The required information(VPN remote peer and identity of the VPN remote peer) can be found under UC Tenant | Network | Offices | | Information.
To convert an IKEv1 office to IKEv2
1 Select in the menu UC Tenant.
*A list appears with all UC Tenants or the selected Partner’s UC Tenants.
2 In the row of the corresponding UC tenant, click on Select.
*The submenu for UC Tenant. You can edit the settings for the selected UC Tenant.
3 Select in the menu UC Tenant | Network.
*A list appears with the Offices of the selected UC Tenants.
4 In the row of an IKEv1 office, click on (see the VPN connection type column).
5 Click on Convert to IKEv2at the top.
*The Convert to IKEv2configuration wizard appears.
6 Read the safety instructions and check the configuration data.
7 Click on Convert.
The conversion may take a few minutes.
8 Click Finish
*The office has been converted to IKEv2 and complies with the new security standards.
9 Check the new gateway settings.
10 Ensure that the required configuration has been carried out on the customer side and check the status of the connection to the UC Tenant.
You can tell whether an Office is connected to SwyxON by the status icon in the list of all Offices.