<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: IKE failure : Reason unsupported encryption algorithm in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IKE-failure-Reason-unsupported-encryption-algorithm/m-p/141670#M21887</link>
    <description>&lt;P&gt;SHA1 has been deprecated for awhile now, is the new gateway perhaps running a newer version of code that is blocking the use of SHA1?&amp;nbsp; DH Group 2 is pretty old but should still be supported by all code versions.&lt;/P&gt;</description>
    <pubDate>Wed, 16 Feb 2022 14:49:04 GMT</pubDate>
    <dc:creator>Timothy_Hall</dc:creator>
    <dc:date>2022-02-16T14:49:04Z</dc:date>
    <item>
      <title>IKE failure : Reason unsupported encryption algorithm</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IKE-failure-Reason-unsupported-encryption-algorithm/m-p/141559#M21857</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;I'm trying to establish and IPSEC (S2S) tunnel between 2 managed Check Point firewalls. I previously succeeded with the same kind of HW/version. This one throws an error I've never seen before :&lt;/P&gt;&lt;LI-CODE lang="markup"&gt;Main Mode Failed to match proposal: Transform: SHA1, Certificate, Group 2 (1024 bit); Reason: unsupported encryption algorithm -1 (NA)&lt;/LI-CODE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I've tried lowering the algorithm, still the same issue.&lt;/P&gt;&lt;P&gt;Any idea how to troubleshoot that ? I'm currently planning on upgrading that remote GW to the latest available firmware, and rebooting it.&lt;/P&gt;&lt;P&gt;Thanks !&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 15 Feb 2022 14:33:24 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IKE-failure-Reason-unsupported-encryption-algorithm/m-p/141559#M21857</guid>
      <dc:creator>Ob1lan</dc:creator>
      <dc:date>2022-02-15T14:33:24Z</dc:date>
    </item>
    <item>
      <title>Re: IKE failure : Reason unsupported encryption algorithm</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IKE-failure-Reason-unsupported-encryption-algorithm/m-p/141567#M21859</link>
      <description>&lt;P&gt;I cant say 100% this is related, but just see what you have there. I changed mine, so yours would look different if you never touched it.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot_1.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/15408iC0A3E40EC092A752/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Screenshot_1.png" alt="Screenshot_1.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt; &lt;/P&gt;</description>
      <pubDate>Tue, 15 Feb 2022 15:42:21 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IKE-failure-Reason-unsupported-encryption-algorithm/m-p/141567#M21859</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2022-02-15T15:42:21Z</dc:date>
    </item>
    <item>
      <title>Re: IKE failure : Reason unsupported encryption algorithm</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IKE-failure-Reason-unsupported-encryption-algorithm/m-p/141570#M21860</link>
      <description>&lt;P&gt;Hi, thanks for your answer. In my case I don't have the same screen as yours, all should be set in the Community:&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot 2022-02-15 at 16.45.55.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/15409iBEF5C86291F2CAAD/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Screenshot 2022-02-15 at 16.45.55.png" alt="Screenshot 2022-02-15 at 16.45.55.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;And in the said community (I tried various combination):&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot 2022-02-15 at 16.47.14.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/15410i361AAD231E883AC8/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Screenshot 2022-02-15 at 16.47.14.png" alt="Screenshot 2022-02-15 at 16.47.14.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;This works for more than 10 gateways in the same community (as Satellite), but doesn't work for a new one I wanted to add. &lt;span class="lia-unicode-emoji" title=":disappointed_face:"&gt;😞&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 15 Feb 2022 15:48:18 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IKE-failure-Reason-unsupported-encryption-algorithm/m-p/141570#M21860</guid>
      <dc:creator>Ob1lan</dc:creator>
      <dc:date>2022-02-15T15:48:18Z</dc:date>
    </item>
    <item>
      <title>Re: IKE failure : Reason unsupported encryption algorithm</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IKE-failure-Reason-unsupported-encryption-algorithm/m-p/141575#M21862</link>
      <description>&lt;P&gt;Ok, so just to make sure I get this right, apologies if I had wrong assumption. Are you saying there are multiple satellite gateways with one centre gateway? If so, is it the case that this new firewall you added is also a satellite, correct? And thats where you get the error?&lt;/P&gt;</description>
      <pubDate>Tue, 15 Feb 2022 16:36:58 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IKE-failure-Reason-unsupported-encryption-algorithm/m-p/141575#M21862</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2022-02-15T16:36:58Z</dc:date>
    </item>
    <item>
      <title>Re: IKE failure : Reason unsupported encryption algorithm</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IKE-failure-Reason-unsupported-encryption-algorithm/m-p/141614#M21869</link>
      <description>&lt;P&gt;Exactly, this community is used for many of our remote offices, and I just want to add a new one into it. The Centre gateway is our main cluster, and the Satellites are the remote offices' firewalls. The one that I didn't succeed in adding is a remote office, so a Satellite. That's where I get the error.&lt;/P&gt;</description>
      <pubDate>Wed, 16 Feb 2022 08:27:28 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IKE-failure-Reason-unsupported-encryption-algorithm/m-p/141614#M21869</guid>
      <dc:creator>Ob1lan</dc:creator>
      <dc:date>2022-02-16T08:27:28Z</dc:date>
    </item>
    <item>
      <title>Re: IKE failure : Reason unsupported encryption algorithm</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IKE-failure-Reason-unsupported-encryption-algorithm/m-p/141670#M21887</link>
      <description>&lt;P&gt;SHA1 has been deprecated for awhile now, is the new gateway perhaps running a newer version of code that is blocking the use of SHA1?&amp;nbsp; DH Group 2 is pretty old but should still be supported by all code versions.&lt;/P&gt;</description>
      <pubDate>Wed, 16 Feb 2022 14:49:04 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IKE-failure-Reason-unsupported-encryption-algorithm/m-p/141670#M21887</guid>
      <dc:creator>Timothy_Hall</dc:creator>
      <dc:date>2022-02-16T14:49:04Z</dc:date>
    </item>
    <item>
      <title>Re: IKE failure : Reason unsupported encryption algorithm</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IKE-failure-Reason-unsupported-encryption-algorithm/m-p/141675#M21889</link>
      <description>&lt;P&gt;I get what&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/597"&gt;@Timothy_Hall&lt;/a&gt;&amp;nbsp;is saying...though, I had seen customer running on R81.10 use sha1 and works perfectly fine. I would definitely confirm with TAC to get official statement/answer.&lt;/P&gt;</description>
      <pubDate>Wed, 16 Feb 2022 15:07:47 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IKE-failure-Reason-unsupported-encryption-algorithm/m-p/141675#M21889</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2022-02-16T15:07:47Z</dc:date>
    </item>
    <item>
      <title>Re: IKE failure : Reason unsupported encryption algorithm</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IKE-failure-Reason-unsupported-encryption-algorithm/m-p/143661#M22343</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;I actually updated the firmware to the latest version available, and it solved it.&lt;/P&gt;&lt;P&gt;Thanks for your help.&lt;/P&gt;&lt;P&gt;Regards.&lt;/P&gt;</description>
      <pubDate>Mon, 14 Mar 2022 15:07:01 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IKE-failure-Reason-unsupported-encryption-algorithm/m-p/143661#M22343</guid>
      <dc:creator>Ob1lan</dc:creator>
      <dc:date>2022-03-14T15:07:01Z</dc:date>
    </item>
    <item>
      <title>Re: IKE failure : Reason unsupported encryption algorithm</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IKE-failure-Reason-unsupported-encryption-algorithm/m-p/143736#M22362</link>
      <description>&lt;P&gt;These were SMB GWs ?&lt;/P&gt;</description>
      <pubDate>Tue, 15 Mar 2022 11:46:32 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IKE-failure-Reason-unsupported-encryption-algorithm/m-p/143736#M22362</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2022-03-15T11:46:32Z</dc:date>
    </item>
    <item>
      <title>Re: IKE failure : Reason unsupported encryption algorithm</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IKE-failure-Reason-unsupported-encryption-algorithm/m-p/145349#M22884</link>
      <description>&lt;P&gt;Yes it was &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 04 Apr 2022 07:13:56 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/IKE-failure-Reason-unsupported-encryption-algorithm/m-p/145349#M22884</guid>
      <dc:creator>Ob1lan</dc:creator>
      <dc:date>2022-04-04T07:13:56Z</dc:date>
    </item>
  </channel>
</rss>

