> Source: [sk166415](https://support.checkpoint.com/results/sk/sk166415)

# sk166415 - Support for IKEv2 in Remote Access VPN Clients

| Property | Value |
|----------|-------|
| Solution ID | sk166415 |
| Date Created | 2020-04-20 |
| Last Modified | 2026-08-05 |
| Technical Level | General |
| Products | Security Gateway |
| Versions | R82 |
| OS | Gaia |

## Solution

Remote Access VPN clients support IKEv2 starting from Endpoint Security Client version E88.40 and Security Gateway version R82.

### Step 1 - Enable IKEv2 in the Policy

1. Log in to the SmartConsole.
2. In the **Menu** , click **Global Properties** .  
   **Global Properties** window appears.
3. Click **Remote Access** \> **VPN - Authentication and Encryption**.
4. In the Encryption Method, select **IKEv2 only** or **Prefer IKEv2, support IKEv1**.
5. Click **OK**.
6. From the top of the page, click **Install Policy**.

<br />

### Step 2 - Configure the Endpoint Security Client Devices

#### For managed Endpoint solution clients:

The client-side registry change can be applied centrally. See the [instructions](https://sc1.checkpoint.com/documents/Infinity_Portal/WebAdminGuides/EN/Harmony-Endpoint-Admin-Guide/cshelp.html?contextId=create_push_operations) in the Check Point Endpoint Security Administration Guide).  

#### For unmanaged Endpoint clients:

* **For Windows devices:**
  1. Open **Registry Editor**.
  2. Go to this location: `HKLM\SOFTWARE\WOW6432Node\CheckPoint\TRAC`
  3. Configure `disable_ikev2` to 0.
  4. Restart the device.

  **Note:** this step is valid for all client versions starting from E88.40.  

* **For macOS devices:**
  1. Open **Registry Editor**.
  2. Edit the **HKLM_registry.data** file.
  3. Change `disable_ikev2` from **4\[1\]** to **4\[0\]**.
  4. Restart the device.

  **Note:** starting from E89.00 this step is not required.

For more information, see [sk181127](https://support.checkpoint.com/results/sk/sk181127).

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
