android ikev2 ipsec setup

Install IKEv2 IPSec Certificate

1. From your Android device install our IPSec certificate.

CLICK TO INSTALL CERT
You only have to do this part once per device.

2. Click on install to install our IPSec certificate

Install StrongSwan VPN Software

1. Install the free StrongSwan VPN Client from the Google Play Store.

Click Here for Play Store

Setup IKEv2 IPSec VPN Profile

Now that the IPSec certificate, and StrongSwan software is downloaded and installed you can setup the vpn profile so you can connect to the vpn

1. Go to: Programs > StrongSwan

2.Click on the three vertical dots in the top right corner and choose CA Certificates

3. Click the three vertical dots again and chose Import Certificate

4. Locate the IPSec_CA.crt that you just downloaded and click on it
5. Click on “import certificate” when prompted

6. Click the arrow in the top right to go back to the main vpn screen
7. Click on Add Profile

8. Fill in the following fields:

  • Server (you can choose any location):

    IPSec Server Location Addresses

    USA IPSec VPN Gateways

    ipsec.ashburn.witopia.net
    ipsec.atlanta.witopia.net
    ipsec.austin.witopia.net
    ipsec.boston.witopia.net
    ipsec.charlotte.witopia.net
    ipsec.chicago.witopia.net
    ipsec.dallas.witopia.net
    ipsec.losangeles.witopia.net
    ipsec.kansascity.witopia.net
    ipsec.longbeach.witopia.net
    ipsec.lasvegas.witopia.net
    ipsec.miami.witopia.net
    ipsec.newark.witopia.net
    ipsec.newyork.witopia.net
    ipsec.phoenix.witopia.net
    ipsec.portland.witopia.net
    ipsec.redding.witopia.net
    ipsec.sanfrancisco.witopia.net
    ipsec.seattle.witopia.net
    ipsec.washingtondc.witopia.net

    Canada IPSec VPN Gateways

    ipsec.montreal.witopia.net
    ipsec.toronto.witopia.net
    ipsec.vancouver.witopia.net

    Central/South America IPSec VPN Gateways

    ipsec.mexicocity.witopia.net
    ipsec.riodejaneiro.witopia.net

    Europe IPSec VPN Gateways

    ipsec.amsterdam.witopia.net
    ipsec.brussels.witopia.net
    ipsec.bucharest.witopia.net
    ipsec.copenhagen.witopia.net
    ipsec.dublin.witopia.net
    ipsec.frankfurt.witopia.net
    ipsec.helsinki.witopia.net
    ipsec.istanbul.witopia.net
    ipsec.kiev.witopia.net
    ipsec.kristiansand.witopia.net
    ipsec.lisbon.witopia.net
    ipsec.london.witopia.net
    ipsec.luxembourg.witopia.net
    ipsec.madrid.witopia.net
    ipsec.valencia.witopia.net
    ipsec.manchester.witopia.net
    ipsec.milan.witopia.net
    ipsec.moscow.witopia.net
    ipsec.munich.witopia.net
    ipsec.paris.witopia.net
    ipsec.prague.witopia.net
    ipsec.riga.witopia.net
    ipsec.reykjavik.witopia.net
    ipsec.stockholm.witopia.net
    ipsec.vilnius.witopia.net
    ipsec.warsaw.witopia.net
    ipsec.zurich.witopia.net

    Africa/Middle East IPSec VPN Gateways

    ipsec.jerusalem.witopia.net
    ipsec.johannesburg.witopia.net

    Asia IPSec VPN Gateways

    ipsec.bangkok.witopia.net
    ipsec.hanoi.witopia.net
    ipsec.hongkong.witopia.net
    ipsec.kualalumpur.witopia.net
    ipsec.newdelhi.witopia.net
    ipsec.singapore.witopia.net
    ipsec.seoul.witopia.net
    ipsec.tokyo.witopia.net

    Oceania IPSec VPN Gateways

    ipsec.sydney.witopia.net
    ipsec.auckland.witopia.net
    ipsec.melbourne.witopia.net

  • VPN Type = IKEv2 EAP
  • Username: [Your VPN username] (read below)

There are two potential formats for your vpn username. You must use the one you selected when you activated your service. If you do not remember, you can log into your account on our website here and under your active service it says “USERNAME”. This is your VPN username.

#1: Your email = W\your@email.com
#2: WiTopia username = username@witopia

If you are using version 1.9.0 of StrongSwan or higher (released July 3rd 2017) then you only need ONE backslash “\”

If you are using version 1.8.x or lower then you must use a Capital W with TWO backslashs “\\” if your vpn username is an email.

If you have a username ending in “@witopia” then you do *not* use W\ before the username or “.net” after the username

  • Password: [Your VPN password]
  • Uncheck the “select automatically” box under CA Certificate
  • Click on Select CA Certificate
  • Click on Imported > WITOPIA_IPSEC_CA Cert
  • Profile Name = (Can be anything – this is just a label)

Profile Name = (Can be anything – this is just a label)

Your VPN Profile will look similar to the follow example for NYC

9. Click SAVE at the top

Connecting IKEv2 IPSec VPN

1. Go to: Programs > StrongSwan

2. Click on profile name you want to connect to

3. Swipe down from the top of the screen to reveal your notifications
4. Clck on the entry for StrongSwan

5. To disconnect the vpn click on “disconnect”

Editing a VPN Profile

1. Go to: Programs > StrongSwan

2. Long press on the profile you want to edit > click “edit”

3. When completed with your edits click SAVE at the top

Have more questions? Let us know how we can help you.