tarzan2000
Regular Contributor
ok, doneI would need debug logs to diagnose this further, I'd recommend opening up an issue in GitHub.
ok, doneI would need debug logs to diagnose this further, I'd recommend opening up an issue in GitHub.
iptables -I OUTPUT 1 -s 192.168.50.0/24 -o eth5 -j DROP
iptables -I FORWARD 1 -s 192.168.50.0/24 -o eth5 -j DROP
You would create ip rules to block the traffic, not ip table rules.I have an ax86u on latest merlin firmware running Dual WAN failover. My 1G port fails over to my 2.5G port no problem. No other addons. So thank you.
I am interested in restricting access to the internet during failover to a subset of IPs and I'm not sure how to accomplish this. One kink perhaps is that I'm leveraging the vlans created by the router and the ip range I'd like to allow access is on the 501 vlan (192.168.101.0/24) while the 'main' network and most devices are on vlan 1 (192.168.50.0/24).
I tried doing something like this in my ssh session on router (read: not in startup script):
The idea was to only allow traffic from the 192.168.101.0/24 network through the 2.5G port, but that did not seem have any effect.
Any thoughts on how to approach this?
why ?You would create ip rules to block the traffic, not ip table rules.
I’d recommend opening up an issue on GitHub for this.Thanks for your work, after i installed in ssh amtm it said status: failover disabled, my main connection is fiber 100/1000 whit PPPOE the second wan is Cisco 881 4g whit sim card behind CGNAT of the cellular provider, why in the dual wan main menu says status: failover disabled after I enabled via asus webui?
Minor update released to fix a bug in beta1, released as v2.1.2-beta2, no new patch notes for this release.***v2.1.2-beta1 Released***
Release Notes:
Enhancements:
- General optimization
- Added 388.7 to supported firmware list
- Cron Job will now dynamically be created / removed to prevent continous attempts at running WAN Failover while it is active. When WAN Failover is killed and SCHEDULECRONJOB is set to Enabled it will be recreated on exit.
Fixes:
- General bug fixes
what exactly does it do? what's the purpose of it?
I have eth0 for primary and ppp1 for secondary, I was testing 14 switchwan and it seems not to work, each traffic goes thru primary
Yes it monitors both WAN connections simultaneously.Hello! Thanks for this great script! I've been the script for around 2 weeks I think and I solved most of the problems I had at the beginning. At first I had fake positives with network failing over from wan0 to wan1 although wan0 connection was still ok, so I increased ping count and ping timeout and I believe I managed to get rid of it. Then I ran into the "status: unresponsive" problem and found out on this forum that I had to enable NVRAM checks, which I did and it seems to have solved this problem. Now I'm getting frequent WAN Failover Notifications by email. they go by pairs : first email saying that wan0 is connected and wan1 is disconnected, the second email saying both wans are connected. (therefore it leads me to think that no failover happened)
Therefore I have this question : is the script constantly monitoring wan1 and sending emails when wan1 loses connection although wan0 is still ok?
NB: I realised reading the logs that these events are accompanied by "NVRAM Check Failure Detected"
Welcome To SNBForums
SNBForums is a community for anyone who wants to learn about or discuss the latest in wireless routers, network storage and the ins and outs of building and maintaining a small network.
If you'd like to post a question, simply register and have at it!
While you're at it, please check out SmallNetBuilder for product reviews and our famous Router Charts, Ranker and plenty more!