Search results

  • SNBForums Code of Conduct

    SNBForums is a community for everyone, no matter what their level of experience.

    Please be tolerant and patient of others, especially newcomers. We are all here to share and learn!

    The rules are simple: Be patient, be nice, be helpful or be gone!

  1. eibgrad

    Isolating IP cams and NVR from the rest of the network with VLAN

    Seems to me it would be a lot simpler and cost effective to place the NVR in the garage along w/ the IP cameras. Then you could grab an old router and place it between the private and IP Camera+NVR networks. After all, by definition, a router creates a new VLAN/LAN behind its WAN. The only...
  2. eibgrad

    ASUS RT-AC68U CPU heats up near 100C

    https://www.snbforums.com/threads/gt-ac2900-running-at-82-c-on-asuswrt-merlin-386-1-too-hot.70301/post-663630
  3. eibgrad

    Need help with WDS Bridge Setup.

    FYI. WDS is NOT a wifi standard, so incompatibilities are quite common unless it's the same hardware/firmware. Even then, I've seen incompatibilities between devices from the same vendor! Once you start mixing devices, it's a roll of the dice. That's why using wifi standard protocols is much...
  4. eibgrad

    Remote connection with CG-NAT

    The smart devices are most likely connecting to servers on the internet from which they receive control information and are able to tunnel back into your network. You would have to do the same thing. Establish a VPS (Virtual Private Server) from the likes of Digital Ocean, Linode, etc., install...
  5. eibgrad

    Guest net / subnet for wired connections?

    Another possibility is using either FT (FreshTomato) or DD-WRT, both of which support VLANs natively. I know the FT firmware comes w/ some limitations (e.g., only 4 of the LAN ports are supported). Not sure if the same is true of DD-WRT...
  6. eibgrad

    Troubles with VPN Client + DDNS Setup on GT-BE98

    You might find the following useful as well (some of these problems are well-known, w/ existing solutions). https://www.snbforums.com/threads/asus-rt-ax88u-vpn-director-not-connected-right-after-reboot.74660/#post-713934
  7. eibgrad

    Troubles with VPN Client + DDNS Setup on GT-BE98

    P.S. In the case of remote access w/ the router participating in the VPN, it would be possible to establish remote access over the WAN provided the public IP of the remote client was KNOWN, so you could add a static route to bind that public IP(s) to the WAN. Of course, that's NOT always...
  8. eibgrad

    Troubles with VPN Client + DDNS Setup on GT-BE98

    The problem here (both for remote access and DDNS) is that the router itself is participating in the VPN! I have no idea what is possible w/ that particular firmware, but at least w/ Merlin and the VPN Director (i.e., policy based routing), these would NOT be problems since that removes the...
  9. eibgrad

    OpenVPN LAN access + one external IP

    FYI. While it works, it only works for the OpenVPN client itself. But let's say the OpenVPN client is part of a site-to-site configuration w/ the same server. Under such circumstances, the OpenVPN client would NOT typically NAT the tunnel w/ its own assigned IP, and therefore the IP network...
  10. eibgrad

    RT66U-Cant set allow only list on ddwrt

    FWIW, I did find the following on the DD-WRT forums concerning issues w/ this feature (TL;DR). https://forum.dd-wrt.com/phpBB2/viewtopic.php?t=329902
  11. eibgrad

    OpenVPN LAN access + one external IP

    Besides the route directive on the client (note, you could alternatively *push* that route to the client, which might make more sense given what follows), you also need to add an iptables rule w/ a firewall-start script on the server side. OVPN_NET="$(nvram get vpn_server1_sn)/$(nvram get...
  12. eibgrad

    Understanding IPTABLES - asus ROG ax6000

    Well you didn't use the command exactly as I suggested. Instead of using ... iptables -vnL INPUT --line-numbers ... you specified ... iptables -L INPUT --line-numbers ... which left out details, in this case, whether the rule is getting any hits (pkts)! That alone will answer if it's...
  13. eibgrad

    Understanding IPTABLES - asus ROG ax6000

    In general, it's a bad idea to try and insert a rule in a specific/absolute location (13 in your case). The firewall can change significantly over time as subsystems come and go and add/remove their own rules. You're usually better off to simply insert them at the top (no number), and ideally...
  14. eibgrad

    RT66U-Cant set allow only list on ddwrt

    Sounds like a problem (limitation?) w/ the driver. All DD-WRT can do is enable and configure the appropriate settings w/ the wl command. Typically, the developers only receive the wireless drivers from the vendor as a binary blob, so they have no ability to change or fix anything. Best you...
  15. eibgrad

    Understanding IPTABLES - asus ROG ax6000

    Understanding iptables output is a LOT more useful and meaningful if seen in its FULL context, particularly the order of execution. iptables -vnL INPUT --line-numbers Now you can see that context and point to specific rules (by number) which you feel need further explanation...
  16. eibgrad

    RT66U-Cant set allow only list on ddwrt

    In order for this to work, the wireless driver must support the following commands, which you can verify via ssh/telnet. wl mac wl macmode The former lists those mac addresses being filtered. The latter whether they are blacklisted or whitelisted. Problem is, not every Broadcom driver...
  17. eibgrad

    Geolocalized Apps on LG Smart TV

    Either the client (TV in this case) must support OpenVPN itself, thus creating a direct connection, OR, your router on the client side needs to support OpenVPN and PBR (policy based routing). Since you made no mention of what you're using on the client side, I don't know if it's possible...
  18. eibgrad

    Internet connection via ISP despite existing VPN connection in the Asus RT-AC 86U

    So you're actually describing two (2) problems here. Why is the VPN stopping, and when it does, why doesn't the kill switch work. I have seen problems in the past w/ the kill switch implementation (it's been changed recently w/ the latest 388 releases for this reason, but afaik, not so w/...
  19. eibgrad

    Internet connection via ISP despite existing VPN connection in the Asus RT-AC 86U

    Since you said you enabled the kill switch, I assume you're using the VPN Director. Did you create any rules for your local devices you want routed over the VPN? If no rules, nothing happens! If you did, let's see them.
  20. eibgrad

    Wireguard VPN Client: killswitch activation -> LAN administration lock-out

    I think at least part of the problem here is the 0.0.0.0/0 rule w/ the VPN Director. With this rule in place, it is effectively the same as NOT using the VPN Director at all, except now the router itself is denied access to the WAN due to the kill switch, which it needs to reestablish the...
Top