• SNBForums Code of Conduct

    SNBForums is a community for everyone, no matter what their level of experience.

    Please be tolerant and patient of others, especially newcomers. We are all here to share and learn!

    The rules are simple: Be patient, be nice, be helpful or be gone!

ipsec

  1. DigitizedMe

    Let's Encrypt defaults to ECDSA - Revert to RSA to avoid IPsec Errors?

    Hopefully this is a quick one, and there's a config or script in JFFS I can modify to customize Let's Encrypt to pull both ECDSA and RSA certs, or just RSA? Then I can use RSA in my ipsec.postconf, insead of the ECDSA located in the in the /jffs/.le/hostname_ecc directory. Now that Let's...
  2. I

    Merlin WRT IPSec VPN Server - IKEv2 only

    Hello community, im searching in the web since hours and i couldn't find the right explanation or guide for it. I want to use my IPSec VPN Server on my RT-AC5300 router with latest merlin wrt firmware on it. As i am out of it security since 15 years i was not aware that IKEv1 is described now...
  3. C

    Tutorial Change Strongswan ciphersuite and enable MOBIKE to get rid of terrible VPN speeds

    -EDIT- I fixed this myself, see 2nd post in the thread. This thread is therefore marked as a tutorial now. Hello, Running merlin; but I believe this is a stock firmware thing? So posting here, sorry if wrong board. I'm using the ASUS' built-in Strongswan (so enabling IPSEC VPN with IKEv2 in...
  4. G

    Can't connect to IpSec VPN from Android 14

    Hy All! I have a Samsung Galaxy S22 Ultra with factory Android 14 and ASUS RT-AX56U with ASUSWRT-Merlin RT-AX56U 3004.388.6_0 firmware. I enabled the IpSec VPN server and I can't connect to it. ipsec.conf file: conn %default keyexchange=ikev1 authby=secret ike=aes256-sha1-modp1024...
  5. C

    Does Asus' IPsec implementation allow LAN access?

    Before anyone asks: 1. I'm already using OpenVPN and Wireguard for LAN Access; this is a question out of curiosity since I am tinkering with IPsec for fun (though if it does allow me to access devices on the LAN, it would be a helpful backup seeing as it's natively implemented into Windows and...
  6. lluke

    IPSec VPN Server and Internet routing

    Hi All, in the past, I configured 2 different IPSec VPN Servers to join the home network while on the go with the following setup: Server #1: just to connect to internal lan(s), achieved by leaving the "DNS Server" entries empty from the Advanced Settings of the VPN Server configuration page...
  7. K

    Help with IPSEC connection in ASUS RT-AX3000

    Hi I'm new here. I'm trying to connect an Asus RT-AX3000 with a Navigateworx NR300 using IPSEC (NR300 is using 4G). First I test my IPSEC server by connecting an iphone and it works, but when I try to connect my NR300 it doesn't work. Checking in the IPSEC log from the Asus i can't see what is...
  8. W

    ASUS AX Series IPSEC Cipher setting(Merlin firmware)

    Hello!! I'm using ASUS AX Series router and using Merlin Firmware(388.1 latest) And i'm using IPSEC VPN Server feature i wonder about IPSEC Cipher settings like aes256gcm16-prfsha384-modp2048 First. I can't found cipher settings in ipsec server settings page Second. Checking logs i found...
  9. wavefunction

    Has anyone gotten IKEv2/IPSec PSK VPN to work on Android 13 with Asus-Merlin 388.1?

    Hi everyone, It seems Android stopped supporting IPSec Xauth PSK VPN starting with version 12. However, the latest versions of the Asus-Merlin firmware support IKEv2 IPSec. Unfortunately, I've been unable to get it to work with Android 13. Has anyone gotten it to work? Are there any special...
  10. XIII

    388.1: Cannot set up IPSec VPN on GT-AX6000 (with settings from 386.7_2 on RT-AC86U)

    Recently I purchased a GT-AX6000 to replace my RT-AC86U, so that I can run the new 388 firmware. I managed to manually replicate my old 386.7_2 setup from scratch in 388.1, except for IPSec VPN which keeps failing: Dec 20 22:07:32 00[DMN] Starting IKE charon daemon (strongSwan 5.9.6, Linux...
  11. Y

    Asus RT-AX86U: VPN Client in Fusion with "IPSec" and Shared Secret

    So long story short. i need to configure in my ASUS Asus RT-AX86U a VPN Client with IPsec and a Shared Secret. i have following infos: VPN-Typ: Name Serveraddress IPSec-ID IPSec Key/Shared Secret Account Password But when i go into VPN Fusion setting of my AX86U, i cannot find this VPN...
  12. XIII

    How to manually configure IKEv2 VPN on iOS?

    The 386 Beta firmware supports IKEv2 VPN. I have requested a TestFlight invite for the Instant Guard iOS App to configure this, but did not get that invite yet, so I was hoping to configure this manually on my iOS devices. These are the instructions for Windows...
  13. R

    siting an ips/ids/dnsBlock(PfSense? or ClearOs?) in a vpn cascade?

    Current: Inet->wan-AC68u (ipsec passthrough)-lan ->wan-AX11000gt Hello all, Firstly, I wish everyone safe and well during this time of global worry. Please, could you kindly help me out, I think I know what to do, however I don't want to sway advice with my inexperienced opinion. After 8...
  14. sfx2000

    Meet Algo, the VPN that works

    Quoted from https://blog.trailofbits.com/2016/12/12/meet-algo-the-vpn-that-works/ GitHub Link for the scripts https://github.com/trailofbits/algo They recently added Wireguard support to their scripts... Do this on a DigitalOcean VPS - $5/month with 1TB transfer...
  15. R

    IPSec server and web UI stop responding

    Hi folks, I've got Asuswrt-Merlin 384.8_2 running on an RT-AC88U, and it is mostly fantastic - it does pretty much everything I want, quickly and reliably. However, there is one bug that seems to affect it sporadically (but often enough to be a problem) - once in a while I'll be out and about...
  16. H

    Asus RT-AC88U NAT Passthrough

    In Asus RT-AC88U, the VPN related NAT Passthrough by default allows PPTP Passthrough L2TP Passthrough IPSec Passthrough RTSP Passthrough H.323 Passthrough SIP Passthrough do any of these pose a security liability ? ie can someone from the WAN take advantage of these passthroughs to connect...
  17. J

    setting up a VPN Ipsec client

    Hi there, I'm looking at picking up a new router and one of the things that I need to be able to do with it is set up an Insec tunnel to a external VPN for work purposes. Does anyone have any recommendations as to what to choose here.
  18. A

    IPSec Server Crashes RT-AC88U when trying to access LAN resource

    I am running Asuswrt-Merlin 386.4 and recently set up the IPSec server using all the default configuration options in the advanced settings. I am able to successfully connect using the built-in VPN client in Android Oreo and navigate to public IP addresses(though I haven't confirmed yet if all...
  19. S

    L2TP/IPSEC VPN client on RT-AC86U - is this possible?

    I'm curious about whether one could get an L2TP/IPSEC VPN client running on the RT-AC86U. The Merlin firmware doesn't support that - it offers an L2TP/IPSEC server, but only unencrypted L2TP as a client. (Standard Asuswrt is the same). But is there some kind of installable extension that could...
  20. C

    RT-AC88U VPN IPSec Passthrough issue

    We use a RT-AC88U router as an internet gateway with one public IP and multiple internal hosts. We have a Centos 7.4 Virtual Machine that connects to an external VPN server using IPsec. The VPN connection drops about 6-12 times a day and cannot reconnect even if we restart the Virtual Machine...
Back
Top