• How to setup IVACY VPN on the pcWRT router (IKEv2)

    Download root CA certificate for IVACY VPN IKEv2 connections

    IVACY VPN server certificates are signed by USERTrust RSA Certification Authority, so you need to download the root CA certificate from there first.

    Follow the link above to download the CA certificate file, or click this link to download it directly. Save the file to your computer when prompted.

    Add an IVACY VPN IKEv2 connection

    1. Log on the pcWRT console, open the “strongSwan (IPsec)” page under Apps.
    2. Under the Client tab, check the network you want to enable IVACY VPN for, then click the Add button under “Auth Configs” to add a new authentication configuration for IVACY VPN.
    3. In the “Add IPsec Auth Config” dialog:
      • Enter a name for the Auth Config
      • In the Server Certificate field, select the root CA certificate file to upload
      • Enter your IVACY VPN username and password in the MSCHAPv2 username & password fields.

      Click OK to dismiss the dialog.

    4. Click the “Add” button under Connections. Then, enter a name for the IKEv2 connection, enter the server host name to connect to, select the Auth Config created in the previous step. Click OK.

      The list of IVACY VPN IKEv2 servers are available here: https://support.ivacy.com/servers-list/
    5. Click the Save button to save changes.

    Start an IVACY VPN IKEv2 connection

    1. Click on the blue “Play” button to start the IVACY VPN IKEv2 connection.
    2. If connection is successful, a green dot will appear on the left of the connection configuration line. In case of connection failure, click on the “log” icon to view IKEv2 logs.

Leave a Reply