Posted On: Feb 6, 2019
We are excited to announce that AWS Site-to-Site VPN now supports Internet Key Exchange version 2 (IKEv2) for tunnel setup. Starting today, new VPN connections will be able to use IKEv2 or IKEv1 to negotiate a VPN session. This allows customers to use the newer and stronger protocol to establish their VPN.
To take advantage of this feature today, you will need to create a new VPN connection. You can control the IKE version to use by updating your customer gateway device's configuration and the AWS side endpoint will negotiate the session using the same protocol. This feature is not available for AWS Classic VPN. We will add IKEv2 support for existing AWS VPN connections soon.
For more information about AWS Site-to-Site VPN, see the web site and documentation.