Geekzone: technology news, blogs, forums
Guest
Welcome Guest.
You haven't logged in yet. If you don't have an account you can register now.




19 posts

Geek
+1 received by user: 1


Topic # 185674 1-Dec-2015 13:31
Send private message

Hey

I'm receiving an EdgeRouter Lite in the mail very soon (so excited haha). Currently I have Spark VDSL and a Technicolor TG589vn v2 router/modem combo unit. DHCP on our network is handled by a Raspberry Pi, with IP addresses being handed out on the 10.0.0.0/8 subnet. This Pi also hosts a FreeRadius server for WPA2-Enterprise encryption on our WiFi (We use 3x UniFi APs connected to a digital ocean droplet cloud controller) 

I'm wondering a couple of things, firstly how to configure the technicolor so that it is functioning just as a VDSL bridge for the EdgeRouter so that I don't have a Double NAT. I've read that you can set it up in bridge mode but am unsure about this option. Secondly what would the correct configuration be on the EdgeRouter to work on Spark VDSL? I hear these units can be a pain to setup from older forum posts.

Once the EdgeRouter is all installed and stable i'm going to turn off the DHCP on the Pi and instead use the EdgeRouter for this. My thinking was wired devices will be plugged into a switch in Eth1 and receive a 10.1.x.x IP address, while WiFI APs will connect to a switch in Eth2 and receive a 10.2.x.x address. Any thoughts on this and how it would be setup? 

Some extra info:

Technicolor IP: 10.0.100.1
Pi IP: 10.0.100.100

(all devices that require a static IP are assigned a 10.0.100.x address)

Thanks for your help, please suggest better ways to setup my network if you can!

Create new topic
6929 posts

Uber Geek
+1 received by user: 2203

Subscriber

  Reply # 1438717 1-Dec-2015 16:24
Send private message

pretty sure if you go through the setup wizard it gives you that option to use it as a bridge

6708 posts

Uber Geek
+1 received by user: 3085

Moderator
Trusted
Subscriber

  Reply # 1438725 1-Dec-2015 16:36
One person supports this post
Send private message

On the Technicolour it is a simple matter of enabling the bridge mode (assuming you're talking about the older Technicolour TG589vn).

On the Edgerouter it is again, quite simple. Given the fact you've set up a Freeradius server etc I am sure it is one of these things you can figure out however as a start do the following:

1) Update the Edgerouter to the latest firmware from the Ubiquiti website.
2) Set the Technicolour into bridge mode - there is literally an option for this in the web interface.
3) In EdgeOS go to Wizards, run the WAN+2LAN wizard with PPPoE
- Set the username to user@xtrabb.co.nz, password can be anything as long as it is not blank.
4) Go to Firewall / NAT - set the outbound interface to pppoe0 for your firewall. I don't know if the Wizard does this by default. Check all the firewall rules to ensure they've got interfaces assigned to them.

That should be it, you've now got an Edgerouter setup with VDSL bridged to your Technicolour running a very basic setup. There are plenty of more advanced things you can do here including running Freeradius on the Edgerouter itself.




Michael Murphy | https://murfy.nz
Want to be with an epic ISP? Want $20 to join them too? Well, use this link to sign up to BigPipe!
The Router GuideCommunity UniFi Cloud Controller | Ubiquiti Edgerouter Tutorial


 
 
 
 




19 posts

Geek
+1 received by user: 1


  Reply # 1439557 2-Dec-2015 21:25
Send private message

Thanks heaps for the help! I've got the EdgeRouter configured and all up and running and the Technicolor is in Bridge mode, plus WiFi is all working. Just a few concerns I have...firstly I have my FreeRadius on a different subnet to the WiFi APs, and i've noticed that all requests to the FreeRadius originate from the router NAT address for the second subnet (10.2.0.1), and i'm wondering if I can open up the NAT so that the traffic from the APs goes from the original IP address of the AP, not the NAT address, or more importantly if this really poses any significant risk to security. I have just set a radius client as 10.2.0.1 for now so users can authenticate to WiFi.

Address of FreeRadius Server: 10.1.0.42, subnet mask 255.255.0.0
Address of AP1: 10.2.0.2, subnet mask 255.255.0.0 (each AP is one increment of the final octet)

Final concern, trying to enable my firewall and I'm getting an error: Failed to apply the configuration (Nothing to delete (the specified node does not exist) jq: error: Cannot index string with number "lan-interface" is required when hairpin NAT is enabled) ((EDIT: Solved this one, forgot to assign LAN interfaces, lol))


Create new topic



Twitter »

Follow us to receive Twitter updates when new discussions are posted in our forums:



Follow us to receive Twitter updates when news items and blogs are posted in our frontpage:



Follow us to receive Twitter updates when tech item prices are listed in our price comparison site:





News »

Vocus New Zealand on the block as Aussies bail
Posted 23-Oct-2017 17:06


Vodafone TV — television in the cloud
Posted 17-Oct-2017 19:29


Nokia 8 review: Classy midrange pure Android phone
Posted 16-Oct-2017 07:27


Why carriers might want to embrace Commerce Commission study, MVNOs
Posted 13-Oct-2017 09:42


Fitbit launches Ionic, its health and fitness smartwatch
Posted 12-Oct-2017 15:52


Xero launches machine learning automation to improve coding accuracy for small businesses
Posted 12-Oct-2017 15:45


Bank of New Zealand uses Intel AI to detect financial crime
Posted 12-Oct-2017 15:39


Sony launches Xperia XZ1, a smartphone with real-time 3D capture
Posted 11-Oct-2017 10:26


Notes on Nokia’s phone comeback
Posted 10-Oct-2017 10:06


Air New Zealand begins Inflight Wi-Fi rollout
Posted 9-Oct-2017 20:16


The latest mobile phones in perspective
Posted 9-Oct-2017 18:34


Review: Acronis True Image 2018 — serious backup
Posted 8-Oct-2017 11:22


Lenovo launches ThinkPad Anniversary Edition 25
Posted 7-Oct-2017 23:16


Less fone, more tech as Vodafone gets brand make-over
Posted 6-Oct-2017 08:16


API Talent Achieves AWS MSP Partner Status
Posted 5-Oct-2017 21:20



Geekzone Live »

Try automatic live updates from Geekzone directly in your browser, without refreshing the page, with Geekzone Live now.



Are you subscribed to our RSS feed? You can download the latest headlines and summaries from our stories directly to your computer or smartphone by using a feed reader.

Alternatively, you can receive a daily email with Geekzone updates.