What's new

Skynet Skynet - Router Firewall & Security Enhancements

  • SNBForums Code of Conduct

    SNBForums is a community for everyone, no matter what their level of experience.

    Please be tolerant and patient of others, especially newcomers. We are all here to share and learn!

    The rules are simple: Be patient, be nice, be helpful or be gone!

Hi,

Can anyone tell me what "firehol_level3.netset" means? It's associated with my Outbound Blocks, and seems to be communication with both Google and Microsoft servers. I'm not surprised nor paranoid about this, just curious.

Thanks
Anton
 
I have no idea what dnsmasq.conf.add is, how to use it, how to install it, or where to get it from.
It's a customization on top of the built-in dnsmasq configuration. See https://github.com/RMerl/asuswrt-merlin/wiki/Custom-config-files

You could create a file via SSH named /jffs/configs/dnsmasq.conf.add that includes:
Code:
server=/callhome.yourdomainhere.com/
server=/trackme.anotherdomainhere.com/
Then dnsmasq would not forward any hostname in those sub-domains upstream.
 
How do I list all the countries I banned long time ago ?
And can I add countries to the list, or do I have to add all the same countries again + the new ones in the same commandline ?
 
How do I list all the countries I banned long time ago ?
And can I add countries to the list, or do I have to add all the same countries again + the new ones in the same commandline ?
It's been awhile since Ive had to redo mine but I believe door number 2 is the correct option.

"add all the same countries again + the new ones in the same commandline"
 
It's been awhile since Ive had to redo mine but I believe door number 2 is the correct option.

"add all the same countries again + the new ones in the same commandline"
I was afraid of that. But I guess Im better of with compiling a new list.
 
I was afraid of that. But I guess Im better of with compiling a new list.
The list should be visible in the Skynet startup menu under the SWAP File line, unless you've removed it accidentally.
 
The list should be visible in the Skynet startup menu under the SWAP File line, unless you've removed it accidentally.
I only have a green line with numbers on how many IPs and ranges are banned. But no list of the countries I banned.
 
When you SSH into your router and then open Skynet the list of the countries you have manually banned is displayed as a row in the opening header.

You can then use this as your starting point for the countries to ban. You will have to retype all the existing entries then add the additional countries you want to ban onto the end of the string.

Be careful in typing as Skynet dose not check or edit what you type so it is quite possible to add non existent country codes or correct for missing commas.
 
When you SSH into your router and then open Skynet the list of the countries you have manually banned is displayed as a row in the opening header.

You can then use this as your starting point for the countries to ban. You will have to retype all the existing entries then add the additional countries you want to ban onto the end of the string.

Be careful in typing as Skynet dose not check or edit what you type so it is quite possible to add non existent country codes or correct for missing commas.
I see this :

Router Model; RT-AC68U
Skynet Version; v7.1.6 (26/04/2020) (37080f05acfdd01405d0cd2d5b71377c)
iptables v1.4.15 - (vlan101 @ 192.168.1.1)
ipset v6.32, protocol version: 6
IP Address; (xxx.xxx.xxx.xxx)
FW Version; 384.17_0 (Apr 25 2020) (2.6.36.4brcmarm)
Install Dir; /tmp/mnt/data/skynet (7.8G / 10.4G Space Available)
SWAP File; /tmp/mnt/data/myswap.swp (2.0G)

254133 IPs (+0) -- 1647 Ranges Banned (+0) || 34371 Inbound -- 0 Outbound !

Select Menu Option:
 
Last edited:
I see this :

Router Model; RT-AC68U
Skynet Version; v7.1.6 (26/04/2020) (37080f05acfdd01405d0cd2d5b71377c)
First, you may choose to remove your WAN IP from the output above.

Second, you could try to see if the country blocks are still in the big list:
Code:
grep Country /tmp/mnt/data/skynet/skynet.ipset
 
I was afraid of that. But I guess Im better of with compiling a new list.
FWIW, I keep a notepad ++ file with the banned countries that I pull up, copy, paste b/c I got tired of putting them in. Low-tech.
 
It's a customization on top of the built-in dnsmasq configuration. See https://github.com/RMerl/asuswrt-merlin/wiki/Custom-config-files

You could create a file via SSH named /jffs/configs/dnsmasq.conf.add that includes:
Code:
server=/callhome.yourdomainhere.com/
server=/trackme.anotherdomainhere.com/
Then dnsmasq would not forward any hostname in those sub-domains upstream.

I ended up individually blocking ALL of the samsung callback/callhome dns addresses that someone listed from their packet capture, with Skynet. Was about 40 or so entries but after having to run a TV reset Disney + now needs a samsung account to be installed. That was the last straw.
 
Last edited:
Two quick questions... running Skynet on my in-laws' RT-AC86U, Merlin v.384.17.

1) Because they have a home Comcast VOIP setup, between the modem and the Asus is a VOIP adapter with a little router that's assigning 192.168.7.3 to the Asus. Skynet sees this and gives a "Private WAN IP detected - Please Put Your Modem In Bridge Mode / Disable CG-NAT." Not sure what to do here. Should I ignore it or will making changes improve the overall stability / connectivity?

2) The Syslog has the line "Mounting Skynet Web Page As user2.asp," but if I go to Firewall -> Skynet I just get a pink background with 404 Not Found. What am I missing? :)

Thanks!!
 
1) Because they have a home Comcast VOIP setup, between the modem and the Asus is a VOIP adapter with a little router that's assigning 192.168.7.3 to the Asus. Skynet sees this and gives a "Private WAN IP detected - Please Put Your Modem In Bridge Mode / Disable CG-NAT." Not sure what to do here. Should I ignore it or will making changes improve the overall stability / connectivity?

If your setup is intentionally this way then you can ignore the error.

2) The Syslog has the line "Mounting Skynet Web Page As user2.asp," but if I go to Firewall -> Skynet I just get a pink background with 404 Not Found. What am I missing? :)

The quickest solution is just a simple reboot which should clear all the mounted pages for scripts.
 
Why wouldn't windows notepad work?
Maybe randomName’s just adopting consistent and good practices so he doesn’t get sloppy or forgetful and later uses Notepad to edit something requiring Unix formatting and then wastes time asking why something won’t work? After all, he never said Notepad wouldn’t work. ;)
 

Support SNBForums w/ Amazon

If you'd like to support SNBForums, just use this link and buy anything on Amazon. Thanks!

Sign Up For SNBForums Daily Digest

Get an update of what's new every day delivered to your mailbox. Sign up here!
Top