Geekzone: technology news, blogs, forums
Guest
Welcome Guest.
You haven't logged in yet. If you don't have an account you can register now.




243 posts

Master Geek
+1 received by user: 4


Topic # 57584 18-Feb-2010 07:34
Send private message

Just got my Broadband via a Telecom Speedtouch ST536.  I also have a Buffallo WHR-HP-G54. flashed with DD-WRT (although I don't really understand it's full capability, but can follow instructions!)

Can somebody cofirm that I can't use them together as the ST is PPoA?

I had been warned this might be the case before, one solution was a modem in half bridge mode.  WIll I notice any impact on speed? What other impications are there for this solution?

Thanks

p.s. In relation to my previos post about choosing an ISP have been very impressed with Telecom's customer service, v quick phone pick ups....so far!





My EPL football websites: Get the results but hide the score of your team at HidetheScore.net. Compare league positions with wage bills at RealPremierLeague.net.


Create new topic
1348 posts

Uber Geek
+1 received by user: 159

Trusted

  Reply # 300631 21-Feb-2010 01:53
Send private message

FYI, I currently have an ST536 & a Linksys WRT54GL with DD-WRT on it.

There are various ways you can get these 2 working together:

1) Half-Bridging / DHCP Spoofing
2) PPTP to PPPOA Bridging
3) Double NAT
4) 1:1 NAT / N:N NAT


That's the theory, now here's the practical issues with each:
1) Half-Bridging (or DHCP Spoofing as it is referred to in the Thomson world) has some pretty serious issues with Internet IP renewals.  I have created scripts to address this in the past, but to be honest, the whole thing is a very ugly mash of CR@P!!

2) PPTP to PPPOA Bridging has MAJOR issues with CPU usage on my 200MHz DD-WRT router!  Basically once setup the CPU usage went through the ceiling and stayed there and subsequently the router was dropping HUNDREDS of packets per second under network load!!  Your router might be powerful enough to handle this, but it will be working pretty hard to do so and this will impact on other services on the box.

3) Double NAT can have issues with having to forward ports twice, thus having to maintain double firewall rulesets or if you try to forward all 65536 ports it hangs the ST536!

4) 1:1 NAT (or N:N NAT in Thomson speak) is Double NAT but with a static address translation to effectively forward all traffic to one address.  This option is the best one of the lot and will only give you issues if you are trying to host a SIP / VideoPhone gateway (SIP VOIP phones will still work fine).


People will tell you that Double-NAT is a big no-no, but really, after spending probably well over 100 HOURS working on all 4 of these options over the years, Double-NAT with 1:1 NAT is the easiest to implement, best performing, least troublesome, and most robust option of them all!!


If you want to setup 1:1 NAT the do the following:
- Telnet to the ST536 & login as 'Administrator'.
- Enter the commands:
:firewall config state=disabled

:nat tmpladd type=nat outside_addr=0.0.0.1 inside_addr=192.168.1.1

saveall

NOTE: 192.168.1.1 will need to be substituted with the outside (Internet facing) IP address of your DD-WRT box.

All done! Smile  Let me know if you have any issues.

Now if NZ ISPs used PPPoE, this would all be a moot point!!  I don't know why they all use PPPoA!?

8020 posts

Uber Geek
+1 received by user: 386

Trusted
Subscriber

  Reply # 300734 21-Feb-2010 15:52
Send private message

Usually the problem with double NAT is related to that fact that many programs and services use UPNP, IGP or NAT-PMP to dynamically open/forward ports in the router.

The front router (Thomson) has no idea what has been dynamically opened/fowarded in the back router (WRT) so I expect you will still face the same problems with hosting games, msn file transfers and so on.

Many games and services have moved to using a central server as a reflector between players/users/networks so you don't see the problem as much anymore as you used to.



 
 
 
 


1348 posts

Uber Geek
+1 received by user: 159

Trusted

  Reply # 300743 21-Feb-2010 16:29
Send private message

Sure, but real men configure their firewalls manually rather than relying on some application / OS to do it for them :P :P :P

8020 posts

Uber Geek
+1 received by user: 386

Trusted
Subscriber

  Reply # 300808 21-Feb-2010 20:15
Send private message

That would get annoying fast with multiple computers behind the same router playing the same game where the game dynamically uses a different port for each player and where it may not use the same port number next time you play.

You'd have to forward the port twice once for each router for every computer every time you played, sounds lame!

1348 posts

Uber Geek
+1 received by user: 159

Trusted

  Reply # 300813 21-Feb-2010 20:22
Send private message

BAH! Real men don't complain about such trivial things!! :D Shutup and open another port man!! LOL.

492 posts

Ultimate Geek
+1 received by user: 23


  Reply # 301473 23-Feb-2010 13:40
Send private message

Is 1:1 NAT the same as DMZ in other routers?

1348 posts

Uber Geek
+1 received by user: 159

Trusted

  Reply # 301638 23-Feb-2010 20:03
Send private message

A DMZ is more of a concept than a method, so depending on the router it may use one of a number of methods to achieve this.

839 posts

Ultimate Geek
+1 received by user: 46

Subscriber

  Reply # 303110 28-Feb-2010 20:59
Send private message

Most Alcatel speedtouch units have a firmware that allows you to setup a PPTP to PPPOA bridge (in that your router establishes a pptp vpn connection to the speedtouch, and from there gets assigned the public ip). I did similar with a Speedtouch 530 till I replaced it with a Draytek PPPOE to PPPOA modem.

1348 posts

Uber Geek
+1 received by user: 159

Trusted

  Reply # 303132 28-Feb-2010 22:03
Send private message

rphenix: Most Alcatel speedtouch units have a firmware that allows you to setup a PPTP to PPPOA bridge (in that your router establishes a pptp vpn connection to the speedtouch, and from there gets assigned the public ip). I did similar with a Speedtouch 530 till I replaced it with a Draytek PPPOE to PPPOA modem.

Be aware that this can cause issues with some routers not having sufficient CPU power to deal with this configuration however.

Create new topic



Twitter »

Follow us to receive Twitter updates when new discussions are posted in our forums:



Follow us to receive Twitter updates when news items and blogs are posted in our frontpage:



Follow us to receive Twitter updates when tech item prices are listed in our price comparison site:





News »

New Zealand hits peak broadband data
Posted 18-Jan-2018 12:21


Amazon Echo devices coming to New Zealand early February 2018
Posted 18-Jan-2018 10:53


$3.74 million for new electric vehicles in New Zealand
Posted 17-Jan-2018 11:27


Nova 2i: Value, not excitement from Huawei
Posted 17-Jan-2018 09:02


Less news in Facebook News Feed revamp
Posted 15-Jan-2018 13:15


Australian Government contract awarded to Datacom Connect
Posted 11-Jan-2018 08:37


Why New Zealand needs a chief technology officer
Posted 6-Jan-2018 13:59


Amazon release Silk Browser and Firefox for Fire TV
Posted 21-Dec-2017 13:42


New Chief Technology Officer role created
Posted 19-Dec-2017 22:18


All I want for Christmas is a new EV
Posted 19-Dec-2017 19:54


How clever is this: AI will create 2.3 million jobs by 2020
Posted 19-Dec-2017 19:52


NOW to deploy SD-WAN to regional councils
Posted 19-Dec-2017 19:46


Mobile market competition issues ComCom should watch
Posted 18-Dec-2017 10:52


New Zealand government to create digital advisory group
Posted 16-Dec-2017 08:47


Australia datum changes means whole country moving 1.8 metres north-east
Posted 16-Dec-2017 08:39



Geekzone Live »

Try automatic live updates from Geekzone directly in your browser, without refreshing the page, with Geekzone Live now.



Are you subscribed to our RSS feed? You can download the latest headlines and summaries from our stories directly to your computer or smartphone by using a feed reader.

Alternatively, you can receive a daily email with Geekzone updates.