Please try V28 release (there was a subsequent update to CTF in V29 due to continuing problems being reported on the Merlin code).
Looking at the code, I did run across some hardware rev differences. Apparently, there are at least two hw revs of the MIPS AC66U, A2 and B0 (I also think there is a B1, not to be confused with the AC66U_B1 that contains the ARM processor). At least one difference is that the A2 rev cannot support DFS channels on 5GHz.Just in case there would be some differences between AC66U versions, this is an old one 6 years old when it was Asus' top of the line model.
Yes. Where it says "Enable DNSSEC support", enable it.Does latest L build support 1.1.1.1 and DNSSEC? Or how to setup this DNS for best practice?
I think he meant DNS over TLS or HTTPS like described at https://1.1.1.1/Yes. Where it says "Enable DNSSEC support", enable it.
I think he meant DNS over TLS or HTTPS like described at https://1.1.1.1/
Sorry, but this doesn't make sense. And I can't recreate it on my AC68.I've been hunting for days for this weird wifi connectivity bug on AC66, now on 27E5 but this happens across releases, and think finally figured out what's going on:
When there are guest networks with Set AP Isolated Enabled, and Enable JFFS custom scripts and configs is set to No, everything works just fine. But when jffs customs scripts is turned on, no new guest wifi clients can connect anymore, and not just guest clients but any wifi clients. But the existing wifi connections are kept on, which made this so hard to find.
I reduced my custom scripts to a minimum, in the end only router default firewall rules were there, yet it happens. Turn Jffs scripts off again, and wifi works fine with AP isolation on. Or turn AP isolation off, and custom script boot works fine.
Ah, ok. In that case you can use the DNSCrypt option (DNS over HTTPS) which, afaik, provides the same function and complements DNSSEC. There's also an entware package "stubby" if you want DNS over TLS. So I don't think Merlin's DNS implementation supports it just yet though it's been a while since I've been on the forums, haven't kept up.
Now that I've looked, it'd be great if John would add Cloudflare's DNSCrypt servers to the option list.
Sorry for asking this again, but could someone give a definitive answer for this so I know for sure once and for all?So with my N66U, if I want to keep my higher than normal transmit power output, I should use the "L" builds?
I don't think anyone can give you a definitive answer. Apart from the fact that you haven't identified what country you're in (there is a world outside of the US of A), there's the issue of what is/was legally allowed and what is actually implemented in a particular driver. Additionally, the power varies depending on what channel is currently being used. So while one channel may have increased in power another may have been reduced. The only way to know for sure is to try one firmware build and then the other. If you can't tell the difference then it doesn't matter which you use.Sorry for asking this again, but could someone give a definitive answer for this so I know for sure once and for all?
On the support page choose Driver & Tools, then your OS. Under Utilities click on See All Downloads. There is a link to this: http://dlcdnet.asus.com/pub/ASUS/wireless/RT-AC3200/Rescue_2000.zip1. I understood that the Asus FW Restoration Tool is required to perform the transition. Unfortunately I never found it on RT-N66U page on the Asus site. Where to download it from? I am using Windows 10 Pro on my client PCs.
The CFE should be untouched. But personally I found the Restoration Tool to be unreliable for the N66U. I prefer to just use the built-in CFE miniWeb Server after putting the router into recovery mode. Be warned though that it can take up to 45 minutes to flash the new firmware in recovery mode.2. I never used Asus FW Restoration Tool yet, so I am not familiar what exactly will be done. What will happen with CFE? Will it survive or will be restored to original 1.0.1.2 version?
There isn't an NG version for MIPS based routers. The built-in entware-setup.sh script will install the correct version.3. Which version of Entware is supported in 374.43 LTS - the old one or NG?
You will need to reformat jffs after the move due to the size difference of the firmware. After that, set up your servers thru the gui (which will save the certs in nvram), and then log into the router and run4. I am running two OpenVPN servers. Their certificates and keys are stored in jffs. What should be done with them after transition? Shall I move them back to NVRAM or I may continue to use jffs?
I'd personally try the 'E' version first. It contains a later regulation db, so for 5GHz band you may actually see better performance. If you have older clients or see a degradation, then fall back to the 'L' version.My last question is: Which version is recommended for my configuration - L or E?
Read the Installation Notes in post #1.So, what should I do? Thx.
.....
UPD.
I've managed to install it. Thx a lot!
Welcome To SNBForums
SNBForums is a community for anyone who wants to learn about or discuss the latest in wireless routers, network storage and the ins and outs of building and maintaining a small network.
If you'd like to post a question, simply register and have at it!
While you're at it, please check out SmallNetBuilder for product reviews and our famous Router Charts, Ranker and plenty more!