Re: Routing issues
Maybe this will help$ ipcalc 172.28.0.0/30 Address: 172.28.0.0 10101100.00011100.00000000.000000 00 Netmask: 255.255.255.252 = 30 11111111.11111111.11111111.111111 00 Wildcard: 0.0.0.3...
View ArticleRe: We have 3 days to get Dual Stack IPV6 running on an ER8Pro on the...
Do your know how they're provisioning IPv6 (dhcpv6-pd, 6rd, ds-lite, etc.)?
View ArticleRe: WAN dropped, DHCP renew fixes it
I have the same problem on 1.9.0 on Frontier. Terrible problem. Have an open support request referencing this thread. I put in your cron script we shall see.
View ArticleRe: ER-PoE constant high CPU since 1.8.0
sorvani wrote:The only thing repeating in /var/log/messages is two OpenVPN tunnels attempting to reconnect once a minute.Try adding persist-tun option to each openvpn interface:set interfaces openvpn...
View ArticleRe: 1WAN used instead of combination of other WAN (Load Balancing)
Im do it form scatch, and i realised originally switch0 have ip instead of eth4... so, now i change my vlan to switch0 instead eht4. do i need do cli command for load balance again. switch0 is kinda...
View ArticleUsing an ER-8 and need 'Transparent DMZ' or 'Transparent Mode'
Hello everyone! I need some assistance/advise from the UBNT Rock Stars around here. I have a client whose Security/DVR setup appears to have been designed in the stone age. The vendor for the DVR...
View ArticleRe: Destination NAT rules
suppose your wan ip=111.111.111.111A new packet with destination address 111.111.111.111 dest-port 1234 enters WAN interface.Option1Without matching dNAT rule, no dNAT takes place. This makes the ER...
View ArticleRe: WAN Failover / LTE Modem
Post your config? Are you getting a private IP address from the gateway? Do you have a way to switch it from router to bridge mode?
View ArticleRe: isolation wifi AP
still nobody for my subsidiary quesiton? First my subsidiary question: I have reset my configuration to have a clean upgrade to 1.9 . I have noted that I can't communicate with my plex server from my...
View ArticleRe: Using an ER-8 and need 'Transparent DMZ' or 'Transparent Mode'
What do you want the EdgeRouter to do in this case? Firewalling? Or? If there's nothing fancy being done on the Fortinet, you could replace it with a dumb switch... Assuming you do want to do something...
View ArticleProblem accessing website and servers from inside
New on UBNT I have problems to access our websites located on DMZ from LAN, from the outside it works fine but from the inside we always come to the router interface. We have 5 public iP on the WAN...
View ArticleRe: dnsmasq and CNAME
all possibilities are listed in my previous post. pls read carefully the Dnsmasq's manpage excerpt I included there. The next thing I would try is putting the same content in /etc/hosts. But as I...
View ArticleRe: Problem accessing website and servers from inside
Since you're doing your own port forwarding by DNAT rules, the hairpin NAT and other settings in Port Forward gui tab/CLI will not have effect. Read this LINK on how to manually create port forward and...
View ArticleRe: NAT bypassing Firewall rules
Blocking illegal source IPs on WAN is fairly common. My list was incomplete though (was posting from my mobile) posted a more complete list in another thread:UBNT-stig wrote: irewall { group {...
View ArticleFirewall group - Security Updates outdated
I was planning on using EdgeOS firewall group "Security Updates" to throttle the speed of windows updates on our network,but it seems that Windows 10 updates are not tagged as security updates, but...
View ArticleRe: Problem accessing website and servers from inside
Thank you for the quick answer! But that did not work for me...I duplicated the DNAT rule and changed the interface to eth2 and created a SNAT Masqurade with both SRC and DST address to...
View ArticleMultiple DHCP IPs on WAN
Greetings, is it somehow possible to pull two DHCP IPs to the same physical interface? Something like this, but the router won't allow it. Thanks ....
View ArticleRe: NAT bypassing Firewall rules
But that means I'd have to check every packet to NOT be a bogon which is overhead and I hate overhead ;(I'd like to know the attack vector tho, since I don't quite understand it yet.
View Article