IKEv1 VPN fails to connect if Network Extension is enabled?

Hi guys,

Does anyone fail to connect IKEv1 (Cisco IPSec) VPN when using the "filtering network traffic" sample code?

I find that, if the SimpleFirewall is enabled, IKEv1 VPN will fail to connect. If SimpleFirewall is enabled after connecting VPN, no application will establish network connection (all TCP/UDP/ICMP will be dropped).

Is this expected behavior (that IKEv1 VPN is not compatible with data-filter)?

ref FB7742493

Best regards,
Shay
I forgot to mention that, I reproduced this issue on macOS 10.15.5 and 10.15.6 beta.
I vaguely remember seeing someone else complaining about this but I wasn’t able to track down the bug number )-:

Is this expected behavior (that IKEv1 VPN is not compatible with data-filter)?

No.

ref FB7742493

Thanks!

Share and Enjoy

Quinn “The Eskimo!” @ DTS @ Apple
let myEmail = "eskimo" + "1" + "@apple.com"

WWDC runs Mon, 22 Jun through to Fri, 26 Jun. During that time all of DTS will be busy with conference duties.
Please file a bug report with reproduction steps and sysdiagnose output. Thankyou!
Hi guys,

I checked this and it can be reproduced on Big Sur(beta), too.

IKEv1 VPN fails to connect if Network Extension is enabled?
 
 
Q