What's new

Kamoj Kamoj Add-on 5.1 Beta testing poll

  • SNBForums Code of Conduct

    SNBForums is a community for everyone, no matter what their level of experience.

    Please be tolerant and patient of others, especially newcomers. We are all here to share and learn!

    The rules are simple: Be patient, be nice, be helpful or be gone!

Do you want to beta test Kamoj add-on v5.1b1?

  • No, I don't trust 3rd party software

    Votes: 0 0.0%
  • No, I don't use the Voxel firmware

    Votes: 0 0.0%
  • No, I don't like your add-on

    Votes: 0 0.0%

  • Total voters
    207
Think Ive cracked it ;)changed the dns servers, tried a dozen countries on express ovpn ..... and they all work.:)...including Ireland
 
Wow, you are so good at this! :cool:
Thank you so much for sharing all your discoveries!
Think Ive cracked it ;)changed the dns servers, tried a dozen countries on express ovpn ..... and they all work.:)...including Ireland
 
Is this still in Beta , or is there stable build version now?!? I had tried the v.5 thread one, but am curious if there is a newer stable version?!?
 
This beta testing is not for everyone.

I read all reports from the testers and try to fix all found issues soonest possible.
But everyone have different configurations, settings, connection type, other software like Entware and Aegis, Voxel firmware version, and I can't test myself for R9000.

Suggest you read the end of this thread to see what issues are reported for certain versions. The release note is very transparent and gives you a history of new functions and bugs.

As for now both 5.3b30 and 5.4b4 seems to be stable.
Whatever now that means. Number of beta testers is too small to give any valid statistics.
PS
Without @Voxel firmware these fantastic routers would not be great.
 
Great work Voxel and Kamoj! Big thank you! The only reason I bought a R7800 was because I found Voxel's posts and firmware.
I would like to test both 5.3b30 and 5.4b4 if that's ok. I will configure for the first time on a router, a VPN and an ad blocker. With your add-on, seems pretty straightforward.

Cheers,

Luc
 
Hi, I have a question about ADGUARD. Is it possible to configure the https server, possibly how to do it, e.g. with the domain xxxx.mynetgear.com or with 192.168.1.1? (encryption menu). Without https, unfortunately, ad blockers do not work e.g. on youtube;)

Second question: is it possible to generate certificates for the router GUI? Unfortunately, it is tiring to constantly correct the address from https: // - every browser crashes a certificate error and does not allow you to enter the GUI. Sometimes I have to manually enter http: // in router :(
As for the current version, Kamoj ad-don is actually super. With the wireguard turned on, I only had a strange behavior - CPU at 100% and the temperature at 72C. In the newer version of Voxel 80SF there is a bug in readyshare with no ftp logging. Here the solution was given by R. Gerrits (thanks).

greetings
 
For YouTube adblockers, you can download YouTube Vanced
www.vanced.app

I use it as an alternative to YouTube, and it works perfect.
You simply install, and go into your App Setting and disable YouTube.
It will then run YouTube Vanced for all your content instead.
It's exactly the same, but blocks the adverts for full uninterrupted viewing.
You can also change theme colours too.
 
Hi, I have a question about ADGUARD. Is it possible to configure the https server, possibly how to do it, e.g. with the domain xxxx.mynetgear.com or with 192.168.1.1? (encryption menu). Without https, unfortunately, ad blockers do not work e.g. on youtube;)
First, https is already on the R7800. Just browse to https://routerlogin.net (or https://routerlogin.com or https://www.routerlogin.net
or https://www.routerlogin.com)
The issue is that this certificate is revoked and thus most browsers refuse to connect.
see for more details here:

I do not fully see the link between enabling https on the router and adblocking in Youtube.
By default, AdGuard Home will respond with NXDOMAIN for most entries on the blocklist (see section Settings -> DNS server -> DNS server configuration)
So an ad in Youtube should never resolve to your router IP and thus it doesn't matter how https is configured on the router.

Perhaps you are trying to "replicate" the behavior of some other adblocking solutions that use pixelserv-tls?
I.e. resolve all blocked domains to the router-ip, and then have the router serve some blank content over https?

Or you are using an old block-list that is in "hosts-style" and then a https request could throw a security error.
In that case, perhaps setting the Blocking mode to NXDOMAIN or Null IP might improve things.

But, even if the router would have a valid certificate, then probably the issue would still occur, but not because of a revoked certificate, but because non-matching hostname in the certificate.
(pixelserv-tls works around this by on the fly generating certificates for each blocked dns-name)



Second question: is it possible to generate certificates for the router GUI? Unfortunately, it is tiring to constantly correct the address from https: // - every browser crashes a certificate error and does not allow you to enter the GUI. Sometimes I have to manually enter http: // in router :(
I don't recall having these issues. I have bookmarked http://routerlogin.net and always connect via that bookmark.
It has never redirected my to the https version of the GUI.

If you have a custom domain, where you can create your own DNS-records, then it is possible to get your own certificate on there via LetsEncrypt.
(I don't think LetsEncrypt supports DynDNS domains. I myself use my own domain, where I have created a CNAME entry in DNS that points to my dyndns dnsrecord. (but I have https point to my NAS and not my router))

Question is only -> do you manually need to renew the certificate every 3 months. Or can we use something like certbot or acme.sh
Main requirement is that it requires that content in http://public.domainname.of.your.router/.well-known/acme-challenge/ is accessible from the internet without authentication
So that would probably require running a second webserver besides the standard uhttpd (that is used by the GUI).

As for the current version, Kamoj ad-don is actually super. With the wireguard turned on, I only had a strange behavior - CPU at 100% and the temperature at 72C.
Wireguard is more demanding for the CPU than OpenVPN. And it is slower than OpenVPN.
But during the few times I tested WireGuard, I cannot recall that it was consuming 100%.
(in any case, it should only utilize one of the two cores. So if CPU was really at 100%, then also something else was putting load on the router.)
 
Thank you @R. Gerrits for that extensive reply. :cool:
Your knowledge and helpfulness never stops to astonish me.:)

Regarding Wireguard client:
I made it use both CPUs and highest priority, and it can use many threads and that way "consume" the router. Use the Wireguard Status button to show all threads and which cpu they run in!
I never got it more than 70 Mbps on the R7800, that is about half of what the OpenVPN Client can do. So as you indicate, Wg is not so usable on the R7800 for high speed internet connections.
 
I have a question about using OpenVPN and transmission-web-control on the Router interface.

With OpenVPN client on Kamoj beta, you can select / deselect which devices you want the OpenVPN to run on.
With OpenVPN turned on, does how does this work with the transmission-web-control (Torrent) for example?

If I have OpenVPN turned on, but deselect all devices, will this still run on the router itself using the transmission-web-control?
Or do I need to turn OpenVPN for the NAS that is the device where the files are ultimately saved?

I have a transmission-web-control built into my NAS, but I'm looking at using the one on the router instead to give it a try, but wanted to check how OpenVPN is setup with apps installed on the router itself - as the router is a device in itself, but isn't a selectable device in OpenVPN - so wondered if it's permanently turned on or off with OpenVPN.

I hope the question makes sense.
 
I'm guessing you are referring to VPN Bypassing.
With Kamoj's addon, if OpenVPN (or Wireguard) is active, then all traffic generated by the router will go via the VPN tunnel.
It currently does not allow the router-device itself to be added to the bypass list.

So if you run Transmission on the router, that traffic will go via VPN tunnel (if tunnel is active).
 
I'm guessing you are referring to VPN Bypassing.
With Kamoj's addon, if OpenVPN (or Wireguard) is active, then all traffic generated by the router will go via the VPN tunnel.
It currently does not allow the router-device itself to be added to the bypass list.

So if you run Transmission on the router, that traffic will go via VPN tunnel (if tunnel is active).
Yes that's what I was referring to.

Thanks for responding
 
"As for the current version, Kamoj ad-don is actually super. With the wireguard turned on, I only had a strange behavior - CPU at 100% and the temperature at 72C. "

i still have the same issue like rick131 and no other application are running. top log showing 95% in adguard. for the rest everything is working flawless. i'm using same extact DNS server list like DNScrypt v2 and no CPU picks or connection interruptions
 
"As for the current version, Kamoj ad-don is actually super. With the wireguard turned on, I only had a strange behavior - CPU at 100% and the temperature at 72C. "

i still have the same issue like rick131 and no other application are running. top log showing 95% in adguard. for the rest everything is working flawless. i'm using same extact DNS server list like DNScrypt v2 and no CPU picks or connection interruptions

I think I also encountered this a few times in the past, iirc only happened shortly after booting the router.
My workaround then: Kamoj Menu -> DNS Privacy/Ad-Blocking -> set DNS filter/Encryption to None and then a few seconds later set it back to Adguard Home (i.e. restart Adguard home) and then it would work fine.
(Adguard Home log file would show entries like "SafeBrowsing: failed: couldn't initialize HTTP client or transport, cause: timeout exceeded: 12324 ms")
 
I think I also encountered this a few times in the past, iirc only happened shortly after booting the router.
My workaround then: Kamoj Menu -> DNS Privacy/Ad-Blocking -> set DNS filter/Encryption to None and then a few seconds later set it back to Adguard Home (i.e. restart Adguard home) and then it would work fine.
(Adguard Home log file would show entries like "SafeBrowsing: failed: couldn't initialize HTTP client or transport, cause: timeout exceeded: 12324 ms")

correct R. i had also exceeded time for similar time. it is happening during idle internet-idle status and as soon you are going to do something, internet is not working for about 5 minutes before going back to normal. of course if you put none it will restore the connections but it is going to happen again anyway after sometime. for now i'm using DNScrypt v2
 
Thank you very much for these reports!
There is a Adguard beta available with many changes.
Anyone tried it?.
And for everyone's best, state your type of router!
I never seen any R7800 process at more than 50% CPU in top with both CPUs choked to 100%, , so how you can get 100% is mystery for me.
Where you get 100% from? Kamoj Router Information or how?
Please make a top and a ps log and all other logs, and send to.
You had any restart supervision on?
I'll look into it again once back to home and router.
 
  • Like
Reactions: KW.
Thank you very much for these reports!
There is a Adguard beta available with many changes.
Anyone tried it?.
And for everyone's best, state your type of router!
I never seen any R7800 process at more than 50% CPU in top with both CPUs choked to 100%, , so how you can get 100% is mystery for me.
Where you get 100% from? Kamoj Router Information or how?
Please make a top and a ps log and all other logs, and send to.
You had any restart supervision on?
I'll look into it again once back to home and router.


AdGuard latest is v0.104.0-beta2, released earlier today;

Not had time to install yet, but I'm not seeing any issues on current 0.103.3, and I've managed to get it setup alright with keeping track of my live feed to add any unwanted blocks to the whitelist.



I am having a slight issue with OpenVPN though on Kamoj beta 5.4b4.

I'm currently working from home and I use an internet based phone system called Xellion.
With OpenVPN turned on, but that specific device turned off via VPN bypassing, the phone system doesn't work.
As soon as I turn the VPN back on for that device (bypassing off) the phone works fine again.

If I turn OpenVPN off completely, the phone system works fine.

So it only occurs when OpenVPN is on, but bypassing for that device.

If you let me know what logs you want, I'll get these uploaded.
 
There is a Adguard beta available with many changes.
Anyone tried it?
Just installed it after seeing you mention it. (v0.104.0-beta2-SNAPSHOT-3a96fdd0)

Not seeing much difference yet.
Only noticed that the default blocking method changed.
Default: Respond with zero IP address (0.0.0.0 for A; :: for AAAA) when blocked by Adblock-style rule; respond with the IP address specified in the rule when blocked by hosts-style rule
 

Support SNBForums w/ Amazon

If you'd like to support SNBForums, just use this link and buy anything on Amazon. Thanks!

Sign Up For SNBForums Daily Digest

Get an update of what's new every day delivered to your mailbox. Sign up here!
Top