ER605 SHA2

ER605 SHA2

ER605 SHA2
ER605 SHA2
2024-05-25 00:48:55 - last edited 2024-05-27 02:40:05
Tags: #VPN
Model: ER605 (TL-R605)  
Hardware Version: V2
Firmware Version: 2.2.4

Hi

 

i have a er605 v2.0 with firmware 2.2.4 and i would like to configure a vpn ipsec with sh2 but i cant found this option.

 

How to activate sha2 ? i not found

 

Can you help me please ?

 

Thanks

  0      
  0      
#1
Options
2 Accepted Solutions
Re:ER605 SHA2-Solution
2024-05-25 07:40:02 - last edited 2024-05-27 02:40:05

  @ZIZOU94 

 

ok sounds like you know why ask.wink
but in short, sha2 consists of SHA-256, SHA-384, SHA-512

but on ER605 I recomand SHA-256

Recommended Solution
  0  
  0  
#4
Options
Re:ER605 SHA2-Solution
2024-05-27 02:46:40 - last edited 2024-05-27 02:46:43

Hi @ZIZOU94 

Thanks for posting in our business forum.

Our senior member MR.S gave some very helpful insight and comments.

For a standard IPsec, in the IKE, you have three options to be filled.

 

SHA: Responsible for data integrity and authentication.

AES: Responsible for data encryption and decryption, ensuring communication confidentiality.

DH: Responsible for key exchange, ensuring both parties can securely generate a shared key.

 

You miss the DH group which should be specified before it starts to work.

Port forwarding is necessary as well if you set up IPsec S2S.

Best Regards! If you are new to the forum, please read: Howto - A Guide to Use Forum Effectively. Read Before You Post. Look for a model? Search your model NOW Official and Beta firmware. NEW features! Subscribe for the latest update!Download Beta Here☚ ☛ ★ Configuration Guide ★ ☚ ☛ ★ Knowledge Base ★ ☚ ☛ ★ Troubleshooting ★ ☚ ● Be kind and nice. ● Stay on the topic. ● Post details. ● Search first. ● Please don't take it for granted. ● No email confidentiality should be violated. ● S/N, MAC, and your true public IP should be mosaiced.
Recommended Solution
  1  
  1  
#15
Options
14 Reply
Re:ER605 SHA2
2024-05-25 05:04:33 - last edited 2024-05-27 01:00:48

  @ZIZOU94 

 

Try this

 

  0  
  0  
#2
Options
Re:ER605 SHA2
2024-05-25 07:32:00 - last edited 2024-05-27 01:00:48

  @MR.S it's not sha2

 

 

  0  
  0  
#3
Options
Re:ER605 SHA2-Solution
2024-05-25 07:40:02 - last edited 2024-05-27 02:40:05

  @ZIZOU94 

 

ok sounds like you know why ask.wink
but in short, sha2 consists of SHA-256, SHA-384, SHA-512

but on ER605 I recomand SHA-256

Recommended Solution
  0  
  0  
#4
Options
Re:ER605 SHA2
2024-05-25 08:43:07 - last edited 2024-05-27 01:00:48

  @MR.S when I try to connect to a vpn site to site with sha256 not work and with a other router when I select sha2-256 works

 

i the forum I see some post when it's possible to select sha2-256 on the er605

  0  
  0  
#5
Options
Re:ER605 SHA2
2024-05-25 08:53:02 - last edited 2024-05-27 01:00:48

  @ZIZOU94 

 

I don't know what you have on the other end of the vpn but SHA2-256 SHA-256 should be the same. but there are many other parameters in a VPN tunnel that must match for it to work.

 

  0  
  0  
#6
Options
Re:ER605 SHA2
2024-05-25 09:26:06 - last edited 2024-05-27 01:00:48

  @MR.S Thanks for you reply.

 

i have a livebox orange already connected to a vpn site to site.

 

the configuration is like this

 

 

im trying to do the same configuration on the er605 but not work. i dont find the solution.

 

 

do you have any suggestion ?

 

Thanks for your help

  0  
  0  
#7
Options
Re:ER605 SHA2
2024-05-25 09:29:51 - last edited 2024-05-27 01:00:48

  @ZIZOU94 

what is phase 1 settings on ER605? screenshot

 

  0  
  0  
#8
Options
Re:ER605 SHA2
2024-05-25 09:34:19 - last edited 2024-05-27 01:00:48

  @MR.S sorry

 

  0  
  0  
#9
Options
Re:ER605 SHA2
2024-05-25 09:37:32 - last edited 2024-05-27 01:00:48

  @ZIZOU94 

 

ok, look right, but the story don't tel anything about dh group on  livebox orange you use dh14 on ER605 but what group on livebox orange

 

 

  1  
  1  
#10
Options
Re:ER605 SHA2
2024-05-25 09:38:40 - last edited 2024-05-27 01:00:48

  @MR.S this is the problem. It's not precised

  0  
  0  
#11
Options