VPN Client Connection Failures on Windows 11 Since This Morning — Authentication Policy Error

Ian Cox 20 Reputation points
2026-09-09T16:09:46.7933333+00:00

Problem description

I am experiencing an issue where all my Windows 11 Point-to-Site VPN clients using IKEv2 and certificate authentication cannot connect to the Azure VPN Gateway since this morning. The error message indicates a policy mismatch during authentication: "The connection was prevented because of a policy configured on your RAS/VPN server. Specifically, the authentication method used by the server to verify your username and password may not match the authentication method configured in your connection profile." I need assistance troubleshooting this connection failure.

Environment

Azure VPN Gateway Point-to-Site configuration, Tunnel type: IKEv2, Authentication: Certificate (EAP-TLS), Client OS: Windows 11, Gateway in default active-standby configuration across two instances.

What I've already tried

Tried new certificates, downloading new clients. resetting vpn

Current status

Currently, I am seeking guidance on how to diagnose and resolve the authentication policy mismatch preventing my VPN clients from connecting.

Azure VPN Gateway
Azure VPN Gateway

An Azure service that enables the connection of on-premises networks to Azure through site-to-site virtual private networks.

0 comments No comments

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.