Search results

  • SNBForums Code of Conduct

    SNBForums is a community for everyone, no matter what their level of experience.

    Please be tolerant and patient of others, especially newcomers. We are all here to share and learn!

    The rules are simple: Be patient, be nice, be helpful or be gone!

  1. S

    :: ipBLOCKer :: Category blocking using iptables and ipsets

    admin@RT-AC3200-7180:/tmp/mnt/sda1/ipBLOCKer# ipBLOCKer.sh status -sh: ipBLOCKer.sh: not found admin@RT-AC3200-7180:/tmp/mnt/sda1/ipBLOCKer# You initially installed on /jffs then later on /tmp/home/root then currently it appears you have CORRECTLY moved to a USB installation...
  2. S

    The optimum way to use iptables and ipsets

    Not to inflame anyone just partially quoted the current discussion, so that we can have a productive use of this thread. The initial quotes for historical purposes are available on this thread
  3. S

    :: ipBLOCKer :: Category blocking using iptables and ipsets

    @Adamm Started a general discussion thread, https://www.snbforums.com/threads/the-optimum-way-to-use-iptables-and-ipsets.39149/
  4. S

    The optimum way to use iptables and ipsets

    Started a general discussion thread so that everyone can pitch in with their opinions about the ways which using iptables and ipsets can benefit the end user.
  5. S

    :: ipBLOCKer :: Category blocking using iptables and ipsets

    Good it is working out for you. Why did you restart the router ? just asking out of curiosity DO NOT PANIC. type the below 1. iptables -L FORWARD | grep BLOCK do you see firewall rules ? 2. ipset -L | grep BLOCK do you see any output ? If you have output from the 2nd command but not from...
  6. S

    :: ipBLOCKer :: Category blocking using iptables and ipsets

    @Adamm do discuss through private messaging with @kvic
  7. S

    :: ipBLOCKer :: Category blocking using iptables and ipsets

    Nice I would suggest you run any one of the below block refresh custom or ipBLOCKer refresh custom If you have no errors and if your internet speeds are good then go ahead and run block refresh all (this will take you about 30 mins FIRST time) if not and you are patient run the below...
  8. S

    :: ipBLOCKer :: Category blocking using iptables and ipsets

    Yes. It seems you do not have bash. Do read the installation steps. If you have entware installed run the below command opkg install bash diffutils grep coreutils-sort coreutils-split findutils Between, I see that you have ipBLOCKer in /jffs If you have a USB attached to the router, try to...
  9. S

    :: ipBLOCKer :: Category blocking using iptables and ipsets

    Could not spare time before. The current effort took about 4 months few hours a day and a month+ of testing to see how effective and useful it could be. Quite a bit of activity on this topic currently, its good as security awareness is always helpful. iptables "filter" ... wonder how many...
  10. S

    :: ipBLOCKer :: Category blocking using iptables and ipsets

    Looks like your firewall restarted. You should see a lot more chatter in the syslog. Run the below command which will show you the categories you have selected, blocking data loaded for them and hit count block status
  11. S

    :: ipBLOCKer :: Category blocking using iptables and ipsets

    A thought came by if ab-solution is not blocking speedtest.net do the below go to https://www.digwebinterface.com/? enter speedtest.net and Nameservers ALL. Copy all the ip's from the results, come back to ipBLOCKer run block check and paste all the ip's. If any of them are blocked run block...
  12. S

    :: ipBLOCKer :: Category blocking using iptables and ipsets

    The opposite of delete. # Adding China to country blocking cd ipBLOCKer nano filters/country.urls # Go to the end of the file # Copy paste the below http://www.ipdeny.com/ipblocks/data/countries/cn.zone # Save the file by ctrl+x and y # in the command prompt block refresh country # if the...
  13. S

    :: ipBLOCKer :: Category blocking using iptables and ipsets

    Nope it hardly takes a minute to add a single url to white-list I just did it. block add white-list Option: add white-list Enter white-list Website, IP or CIDR values below. Press ENTER when Done. Example: www.somesite.com or 123.123.123.123 or 123.123.123.123/24 www.speedtest.net Entered...
  14. S

    :: ipBLOCKer :: Category blocking using iptables and ipsets

    block refresh all will take time the FIRST time. Subsequent refreshes will be faster as the system knows what blocking data you already have and will update with the FRESHLY tagged blocks. Country blocking can be quite effective, though politically incorrect. When we have guests over or...
  15. S

    :: ipBLOCKer :: Category blocking using iptables and ipsets

    Thanks. The contributions from the likes of you in this forum is an inspiration. AB-Solution is the goto choice for adblocking. This is more of a AIO
  16. S

    :: ipBLOCKer :: Category blocking using iptables and ipsets

    [ RESERVERD ] Could upload only 5 snapsshots in above post. ipBLOCKer Version 1.1 ChangeLog Upgrade instructins: If you are upgrading ipBLOCKer from Version 1.0 to 1.1. Run the below commands on Asuswrt-Merlin. block backup or ipBLOCKer.sh backup cp /jffs/scripts/firewall-start...
  17. S

    :: ipBLOCKer :: Category blocking using iptables and ipsets

    Blocks IPs & CIDR's tagged as Adware Country Custom ETF Malware Shalla(exp) Spam Tor-Exits Current Version: 1.1 See ChangeLog1_1.txt on github or on post2 if upgrading from Version 1.0 :: Features :: - Command Line Driven with Menu Assist - Category based Blocking - Select Categories to Block...
  18. S

    DNScrypt dnscrypt installer for asuswrt

    If you have configured to pass everything through the VPN...then even DNS resolutions would be handled by your VPN provider. below threads discuss the usage of dnscrypt, vpn https://www.snbforums.com/threads/important-tip-for-vpn-services-on-openvpn.38494/ 2...
  19. S

    DNScrypt dnscrypt installer for asuswrt

    You can try with --test option to see if certificates are getting generated properly for the provider you have selected, if not switch to a different dnscrypt-proxy provider. Try the below replacing the values with your installation details and provider of your choice dnscrypt-proxy...
  20. S

    Malware Filter / bad host IPSET

    Another alternative #WAN Down Values... noLnk="0.0.0.0"; #Get values from NVRAM ipAddr="$(nvram get wan0_ipaddr)"; lnkWan="$(nvram get link_internet)"; if ( ([ $ipAddr == $noLnk ]) || ([ $lnkWan == 0 ]) ); then echo "Network Down" fi
Top