Search results

  • SNBForums Code of Conduct

    SNBForums is a community for everyone, no matter what their level of experience.

    Please be tolerant and patient of others, especially newcomers. We are all here to share and learn!

    The rules are simple: Be patient, be nice, be helpful or be gone!

  1. grogi

    What does it mean when ISP doesn't provide IPv6?

    Nonsense. 6in4 tunnels (exp. from HE) work well, even Netflix stopped complaining recently. I even prefer HurricaneElectric over native IPv6 from my ISP, who is handling out /56 prefixes - they are assigned dynamically, change every ~24h... :| Configuring any firewall rules locally is close to...
  2. grogi

    What does it mean when ISP doesn't provide IPv6?

    It is not a requirement. Explained already above.
  3. grogi

    What does it mean when ISP doesn't provide IPv6?

    Xbox exclusively uses IPv6. When IPv6 address is not available, the console will try to setup an IPv6 tunnel (Teredo IIRC) and use that. In some scenarios the tunnel cannot be established and it will completely refuse to talk to Xbox services.
  4. grogi

    Issue 386.7_2: iptables rules created by VPN Director get lost

    :) I didn't know exactly what was causing the issue - after digging a bit and playing around I know. It is the restart_net_and_phy service restart. I will update the original post to include that. The problem is that those rules DON'T get reinstated with the OpenVPN client restart, when it is...
  5. grogi

    Issue 386.7_2: iptables rules created by VPN Director get lost

    Meanwhile, following openvpn-event script does the job... obeys the Accept DNS Configuration for each of the VPN Clients (will redirect DNS through given tunnel only if Strict or Exlusive policy is selected) obeys the Redirect Internet traffic through tunnel - redirects DNS Traffic to the...
  6. grogi

    Issue 386.7_2: iptables rules created by VPN Director get lost

    Back in early 2000s, when first TomatoWrt for WRT54-G was released, it was its design principle. What a massive improvement it was from the likes of HyperWrt, which would restart for every tiny thing. AJAX based UI and asynchronous configuration changes - it was a game changer. Asus based the...
  7. grogi

    Issue 386.7_2: iptables rules created by VPN Director get lost

    That is just a way to reproduce the issue, not representative of anything I would recommend. The issue is present after router restart too, btw. The router software is designed to reboot as many services as necessarily. In fact it would reboot completely if you change some settings, exp...
  8. grogi

    Issue 386.7_2: iptables rules created by VPN Director get lost

    There seems to be an issue with the iptables rules to force DNS traffic through the tunnel created by VPN Director. They are being lost when some of the services restart, I lack the internal knowledge to pinpoint which exactly. I originally though it was dnsmasq restart (trigger by exp. changing...
  9. grogi

    Solved How to enable IPv6 on an interface?

    Fantastic, exactly what I needed. Works here too!
  10. grogi

    Solved How to enable IPv6 on an interface?

    Thanks Colin, that's my setup. I have the 6in4 tunnel configred and successfully established. However, on the WAN side I have some other ULA networks I want to route to. Once the interface is ipv6 capable, I can deal with manually setting up the routing table through one of the custom...
  11. grogi

    Any way to get 5ghz channels 149+ on UK bought Asus routers?

    It is illegal to broadcast anything on a frequency you are not explicitly allowed to. By facilitating changing the region and allowing users to use radio frequencies not permitted under certain regulations, any manufacturer opens themselves for a lawsuit, fines and exclusion from the market...
  12. grogi

    Solved How to enable IPv6 on an interface?

    How to enable IPv6 on particular interface? ip a show dev eth0 shows only inet addresses, no inet6, not even link-local fe80 one. Trying to add one returns an error. #> ip -6 address add fe80::1 dev eth0 RTNETLINK answers: Permission denied Other interfaces, such as the bridge br0, or even...
  13. grogi

    Dual Stack home network pros and cons

    I have DSL from 1und1 and I get both: full IPv4 and /56 prefix for IPv6. Pity that addresses are dynamic - changes each time the ISP connection is established.
  14. grogi

    Disable NAT for certain destination addresses

    All right. I've put this into /jffs/scripts/firewall-start. Seems to be working. #!/bin/sh iptables -I FORWARD 1 -s 192.168.178.0/24 -d 192.168.64.0/24 -i vlan2 -j ACCEPT iptables -t nat -I POSTROUTING 1 -d 192.168.178.0/24 -o vlan2 -j RETURN -- edit The above...
  15. grogi

    Disable NAT for certain destination addresses

    On top of the regular, physical clients I have a good bunch of virtual IPs from Docker containers floating around. That ISP router starts to get bananas when it sees ~30 or more IPs on the LAN side. Putting majority of my physical clients behind second NAT running at the Asus RT-AC68u reduces...
  16. grogi

    Disable NAT for certain destination addresses

    Because of ISP that is forcing me to use certain hardware and outlets, rooms etc. location, I ended up with a bit awkward setup: .178.1 .178.4 .64.1 .64.xxx (internet) <------> DSL Modem/Router +---------------> Merlin rt-ac68u +------ Pc1...
  17. grogi

    RT-AX88U Link Aggregation ?

    This is because only vlan0-vlan15 nvram variables would be parsed by firmware. They are not vlan id per se, but numbers of vlans you define. If you want to apply tags for vlan 100, use one of the free vlan variables and use vid suffix, exp: vlan3hwname=et0 vlan3ports=1 2 8 vlan3vid=100
  18. grogi

    Selective Routing with Asuswrt-Merlin

    It was... ;) My VPN ISP is me, but I won't have physical access to the VPN server for a couple of weeks - co I don't want to mess the configuration there. I've explicitly added redirect-gateway def1 to the client config and the routing table looks much better now. Thank you.
  19. grogi

    Selective Routing with Asuswrt-Merlin

    It seems the $route_vpn_gateway variable is not set. I was under the impression that would always be the far tunnel endpoint IP. Should that be explicitly pushed from the server?
  20. grogi

    Selective Routing with Asuswrt-Merlin

    It might seem like a trivial question when ye're dealing with such complex setups, but I cannot have it automated... So, I tried to have selective routing setup - all traffic going from on host should go through vpn. When the tunnel starts (clientIP 10.8.0.2, serverIP 10.8.0.1), up - it doesn't...
Top