ER605 SHA2

This thread has been locked for further replies. You can start a new thread to share your ideas or ask questions.
12

ER605 SHA2

This thread has been locked for further replies. You can start a new thread to share your ideas or ask questions.
ER605 SHA2
ER605 SHA2
2024-05-25 00:48:55 - last edited 2024-05-27 02:40:05
Tags: #VPN
Model: ER605 (TL-R605)  
Hardware Version: V2
Firmware Version: 2.2.4

Hi

 

i have a er605 v2.0 with firmware 2.2.4 and i would like to configure a vpn ipsec with sh2 but i cant found this option.

 

How to activate sha2 ? i not found

 

Can you help me please ?

 

Thanks

  0      
  0      
#1
Options
2 Accepted Solutions
Re:ER605 SHA2-Solution
2024-05-25 07:40:02 - last edited 2024-05-27 02:40:05

  @ZIZOU94 

 

ok sounds like you know why ask.wink
but in short, sha2 consists of SHA-256, SHA-384, SHA-512

but on ER605 I recomand SHA-256

Recommended Solution
  0  
  0  
#4
Options
Re:ER605 SHA2-Solution
2024-05-27 02:46:40 - last edited 2024-05-27 02:46:43

Hi @ZIZOU94 

Thanks for posting in our business forum.

Our senior member MR.S gave some very helpful insight and comments.

For a standard IPsec, in the IKE, you have three options to be filled.

 

SHA: Responsible for data integrity and authentication.

AES: Responsible for data encryption and decryption, ensuring communication confidentiality.

DH: Responsible for key exchange, ensuring both parties can securely generate a shared key.

 

You miss the DH group which should be specified before it starts to work.

Port forwarding is necessary as well if you set up IPsec S2S.

Recommended Solution
  1  
  1  
#15
Options
14 Reply
Re:ER605 SHA2
2024-05-25 05:04:33 - last edited 2024-05-27 01:00:48

  @ZIZOU94 

 

Try this

 

  0  
  0  
#2
Options
Re:ER605 SHA2
2024-05-25 07:32:00 - last edited 2024-05-27 01:00:48

  @MR.S it's not sha2

 

 

  0  
  0  
#3
Options
Re:ER605 SHA2-Solution
2024-05-25 07:40:02 - last edited 2024-05-27 02:40:05

  @ZIZOU94 

 

ok sounds like you know why ask.wink
but in short, sha2 consists of SHA-256, SHA-384, SHA-512

but on ER605 I recomand SHA-256

Recommended Solution
  0  
  0  
#4
Options
Re:ER605 SHA2
2024-05-25 08:43:07 - last edited 2024-05-27 01:00:48

  @MR.S when I try to connect to a vpn site to site with sha256 not work and with a other router when I select sha2-256 works

 

i the forum I see some post when it's possible to select sha2-256 on the er605

  0  
  0  
#5
Options
Re:ER605 SHA2
2024-05-25 08:53:02 - last edited 2024-05-27 01:00:48

  @ZIZOU94 

 

I don't know what you have on the other end of the vpn but SHA2-256 SHA-256 should be the same. but there are many other parameters in a VPN tunnel that must match for it to work.

 

  0  
  0  
#6
Options
Re:ER605 SHA2
2024-05-25 09:26:06 - last edited 2024-05-27 01:00:48

  @MR.S Thanks for you reply.

 

i have a livebox orange already connected to a vpn site to site.

 

the configuration is like this

 

 

im trying to do the same configuration on the er605 but not work. i dont find the solution.

 

 

do you have any suggestion ?

 

Thanks for your help

  0  
  0  
#7
Options
Re:ER605 SHA2
2024-05-25 09:29:51 - last edited 2024-05-27 01:00:48

  @ZIZOU94 

what is phase 1 settings on ER605? screenshot

 

  0  
  0  
#8
Options
Re:ER605 SHA2
2024-05-25 09:34:19 - last edited 2024-05-27 01:00:48

  @MR.S sorry

 

  0  
  0  
#9
Options
Re:ER605 SHA2
2024-05-25 09:37:32 - last edited 2024-05-27 01:00:48

  @ZIZOU94 

 

ok, look right, but the story don't tel anything about dh group on  livebox orange you use dh14 on ER605 but what group on livebox orange

 

 

  1  
  1  
#10
Options
Re:ER605 SHA2
2024-05-25 09:38:40 - last edited 2024-05-27 01:00:48

  @MR.S this is the problem. It's not precised

  0  
  0  
#11
Options