• To anyone looking to acquire commercial radio programming software:

    Please do not make requests for copies of radio programming software which is sold (or was sold) by the manufacturer for any monetary value. All requests will be deleted and a forum infraction issued. Making a request such as this is attempting to engage in software piracy and this forum cannot be involved or associated with this activity. The same goes for any private transaction via Private Message. Even if you attempt to engage in this activity in PM's we will still enforce the forum rules. Your PM's are not private and the administration has the right to read them if there's a hint to criminal activity.

    If you are having trouble legally obtaining software please state so. We do not want any hurt feelings when your vague post is mistaken for a free request. It is YOUR responsibility to properly word your request.

    To obtain Motorola software see the Sticky in the Motorola forum.

    The various other vendors often permit their dealers to sell the software online (i.e., Kenwood). Please use Google or some other search engine to find a dealer that sells the software. Typically each series or individual radio requires its own software package. Often the Kenwood software is less than $100 so don't be a cheapskate; just purchase it.

    For M/A Com/Harris/GE, etc: there are two software packages that program all current and past radios. One package is for conventional programming and the other for trunked programming. The trunked package is in upwards of $2,500. The conventional package is more reasonable though is still several hundred dollars. The benefit is you do not need multiple versions for each radio (unlike Motorola).

    This is a large and very visible forum. We cannot jeopardize the ability to provide the RadioReference services by allowing this activity to occur. Please respect this.

XTL/XTS5000 Xts5000 and 2500i encryption compatibility

Status
Not open for further replies.

BigBackwoodsJim

Member
Premium Subscriber
Joined
May 25, 2024
Messages
5
I have 2 XTS2500i and 1 XTS5000 all of them have AES256 hardware encryption with either H869 or Q498 multikey. I programmed them all the exact same way in the CPS and the 2 2500i radios communicate encrypted voice just fine. However, I can not get the xts5000 to work encrypted with the 2 2500i radios. Transmitting encrypted both to and from the xts5000 sounds like digital noise.

I'm pretty new to these radios and I'm wondering if my system Package and Flashport options is the reason for the encryption problem. The xts5000 has H35- Conventional System operation and Q806- ASTRO Digital Operation the other 2 don't. Could that be my problem? Has anyone else experienced this? Any help is appreciated.

Here is the info on the radios and some pictures of the feature sets:
Xts5000
System package: Conventional
Host version: R20.50.07
DSP Version: R19.50.01
Secure Version: R05.07.15
KG1: AES-256
KG2: AES-GCM
Flashcode: 5A001-101306-4

Tan XTS2500i
System Package: SMARTZone
Host Ver: R20.50.10
DSP Version: R19.50.01
Secure Version: R05.07.15
KG1: AES-256
FLASHcode: 5A909A-C0178C-4

Black XTS2500i
System Package: SMARTZone
Host Version: R20.00.05
DSP Ver: R19.50.00
Secure Version: R05.07.15
KG1: AES-256
FLASHcode: 56900A-50078D-4

Here is a YouTube video of the problem I'm having.
https://youtu.be/F6qHwwMPFFI?si=uV1n7BfRWeRli3in20240526_152327.jpg
 

Attachments

  • 20240526_152251.jpg
    20240526_152251.jpg
    83.8 KB · Views: 14

BigBackwoodsJim

Member
Premium Subscriber
Joined
May 25, 2024
Messages
5
The key itself doesn't match; the "digital noise" is ciphertext. Check that CKR-KID mapping is correct, and reload keys.
Thank you for the information. I will try that as soon as I can. Unfortunately my key loading cable has a stuck pin and will not make contact with the radio. I ordered a new one but didn't get a tracking number yet. FML20240522_223654.jpg
 

BigLebowski

Member
Joined
May 5, 2004
Messages
914
Location
Piedmont NC
Are you using KFDTool or a variant to keyload these?

The behavior you describe would lead me to believe that you have the Key ID correct across all 3 radios but the key value itself is different in the XTS5000. The radio will unmute on a matching Key ID with garble even if the key value doesn’t match.

If both the Key ID and Key Value are wrong the radios would stay muted (unless you are in monitor mode).
 

BigBackwoodsJim

Member
Premium Subscriber
Joined
May 25, 2024
Messages
5
Are you using KFDTool or a variant to keyload these?

The behavior you describe would lead me to believe that you have the Key ID correct across all 3 radios but the key value itself is different in the XTS5000. The radio will unmute on a matching Key ID with garble even if the key value doesn’t match.

If both the Key ID and Key Value are wrong the radios would stay muted (unless you are in monitor mode).
I used the KFDmini variant of the KFDtool to load the xts5000 myself.
The other 2 radios were keyloaded by the sellers (each 2500 came from a different seller) with the same key I provided them and is the one I'm trying to load into the 5000. I double checked that it was the same key when I uploaded it to the 5000 and I just opened up my container in the KFDtool and it is still the same key. I did leave the "key type" setting as auto. Should I have changed that to TEK or KEK?
 

BigBackwoodsJim

Member
Premium Subscriber
Joined
May 25, 2024
Messages
5
Since all your radios have ADP, why not use that? No keyloader, or cable needed.
At this point, I've spent the money for hardware encryption and I want to learn to use it. This is just a hobby project for me. I'll probably switch to ADP if I get a 4th radio without a UCM.
 

BigBackwoodsJim

Member
Premium Subscriber
Joined
May 25, 2024
Messages
5
When you get the new keyloader cable just reload all 3 radios at the same time with the same key and Key ID information and double check in CPS. As to your question on TEK or KEK, you want the TEK that stands for Traffic Encryption Key.
Thank you so much for all the help everyone. My issue is resolved! Reloading the key on the 5000 with it set to TEK made it work without having to rekey the other 2 radios.
I have a friend that knows how to solder electronics and we stole a pin off of a motorola speaker mic to use on the keyloading cable.
 

ElevatorsAndRadios

yarewesog
Premium Subscriber
Joined
May 26, 2017
Messages
131
Location
SoCal
Since all your radios have ADP, why not use that? No keyloader, or cable needed.
"Why don't you just sacrifice your information security for convenience!" Lol this is so silly.

Hardware AES-256 encryption is the most secure any consumer such as OP is going to get on their two way radio. If they can afford the necessary hardware, they should continue to use this method of encryption if they care about the security of their radio traffic.
 

N4KVE

Member
Joined
Mar 1, 2003
Messages
4,165
Location
PALM BEACH, FLORIDA
"Why don't you just sacrifice your information security for convenience!" Lol this is so silly.

Hardware AES-256 encryption is the most secure any consumer such as OP is going to get on their two way radio. If they can afford the necessary hardware, they should continue to use this method of encryption if they care about the security of their radio traffic.
Because he said it’s a hobby project. Not a NSA project. I have all the Algo’s in my radio, but the only time I use it with friends is when we’re meeting at the pizza joint, so the other listeners don’t know where we’re eating. So since he said his key loading cable was broken, he could use ADP until he replaces, or fixes the cable. His friend works pretty fast.
 
Status
Not open for further replies.
Top