Jack Yaz
Part of the Furniture
tryNow I get a 404 error. I used scMerlin to restart httpd, and used a uf update on YazFi again. But still 404. Should I reboot?
Code:
YazFi startup
tryNow I get a 404 error. I used scMerlin to restart httpd, and used a uf update on YazFi again. But still 404. Should I reboot?
YazFi startup
Eureka! Thank you. That worked.try
Code:YazFi startup
Apr 11 12:32:58 kernel: D4:F0:57:20:79:20 not mesh client, can't update it's ipHello all,
I've using YazFi from months and today it begin to fail.
When I try to attach new client, I see in log:
Apr 11 12:32:58 kernel: D4:F0:57:20:79:20 not mesh client, can't update it's ip
The guest network is configured in 5GHz position 2 as WPA2/WPA3-Personal
The Yazfi config configured this position 2 and disabled all but force dns option enabled
It's very strange, since update to 4.2.0 YazFi was run ok.
I've to uninstall YazFi to recover guest Wifi usage
FW ver 386.2
YazFi 4.2.0
Sorry, I attach an example with client 14:0A:C5:6C:26:BFApr 11 12:32:58 kernel: D4:F0:57:20:79:20 not mesh client, can't update it's ip
is an AiMesh log message and doesn't mean anything is wrong. are you actually seeing problems with the clients, or are you worrying about a log entry?
those log messages appear for me and other users even without AiMesh. asus have made logs very noisy lately.Sorry, I attach an example with client 14:0A:C5:6C:26:BF
I don't have any mesh devices.
When device connects to router, "no internet" error show up.
Fixed, dns pool was the problem, force dns address had an unreachable ip for this (.6.x) subnet.those log messages appear for me and other users even without AiMesh. asus have made logs very noisy lately.
re. internet not working, can you try a "ping" on the device to both an IP on the internet and a domain, e.g. ping 8.8.8.8 and ping google.com ?
dnsmasq should have been listening on the interface (e.g. wl0.2), and relevant firewall rules added. are you using dnsmasq or are you using Unbound with dnsmasq disabled?Fixed, dns pool was the problem, force dns address had an unreachable ip for this (.6.x) subnet.
Thank you
The problem is the main router needs to be aware of the network(s) provided by the ap. If everything on the AP is considered "guest", then the implementation is simpler. If you have multiple ssids and wired devices on the ap and you want them treated separately, you start getting into vlans and support for those on the hnd routers is a bit spotty at the momentI can see this has been asked a few times before, but is there any hope of YazFi working in Access Point mode? Aimesh now supports the first guest network being available on all nodes, so Asus must have enabled the right services to allow this to happen.
Can YazFi not enable services is needs like the firewall if the router is in access point mode, and it just makes sure the configuration of the firewall only applies to the guest wifi interface?
It's the "use a vlan" part that's fiddlyI have an Asus in router mode, and two more in access point mode that essentially extend the WiFi out. Aimesh was buggy, and this way I can use multiple channels.
What I can't do is extend the guest network out, unless I allow it to have intranet access.
Could there be an option in YazFi to specify a vlan when creating the guest network. You'd then need to make sure that each access point uses the same vlan as the router. Suspect I'm massively simplifying things
vlan support is no bueno in Asus firmware.I have an Asus in router mode, and two more in access point mode that essentially extend the WiFi out. Aimesh was buggy, and this way I can use multiple channels.
What I can't do is extend the guest network out, unless I allow it to have intranet access.
Could there be an option in YazFi to specify a vlan when creating the guest network. You'd then need to make sure that each access point uses the same vlan as the router. Suspect I'm massively simplifying things
vlans. but if you search the forums for "problems with guest network 1 on aimesh", you'll have your answer why I haven't attempted vlans yetSo how does Aimesh manage to extend the guest network out and still keep it isolated? Do we know how that works technically?
You may want to check, if you haven't done so already, with those specific applications (Diversion, Pixelserv and Skyne) to see if they can be configured to exclude specific clients. For example with Diversion: https://diversion.ch/faq-reader/how-to-exclude-a-client-from-ad-blocking.html1- With Forced DNS in Yazfi I'm bypassing encrypted DNS but Diversion with pixelserv and skynet are still filtering traffic?
2 - Is there anyway to baypass diversion with pixelserv?
3 - Do I need to make some changes in GUI of Yazfi ( choose Forced DNS and client isolation) and/or maybe in LAN DNS setting (there I have Enable DNS-based filtering set as Router - this means if I'm correct that all traffic reaching router are forced through router DNS and not mobile phones or laptop DNS?
4 - Not related to Yazfi but very easy question just to be sure that I understand things correctly - I can use Diversion for traffic filtering but without pixelserv it will filter only http and not https traffic?
5 - If I don't install pixelserv ca.cert on some mobile phones, laptops etc they will get only http filtered traffic but not https from Diversion, but encrypted DNS will still be forced on those devices?
Thanks
You may want to check, if you haven't done so already, with those specific applications (Diversion, Pixelserv and Skyne) to see if they can be configured to exclude specific clients. For example with Diversion: https://diversion.ch/faq-reader/how-to-exclude-a-client-from-ad-blocking.html
On Question 2, 4 and 5 since those really do have anything to do with YazFi, you should see the various Diversion and Pixelserv topics for those answers.
Welcome To SNBForums
SNBForums is a community for anyone who wants to learn about or discuss the latest in wireless routers, network storage and the ins and outs of building and maintaining a small network.
If you'd like to post a question, simply register and have at it!
While you're at it, please check out SmallNetBuilder for product reviews and our famous Router Charts, Ranker and plenty more!