Geekzone: technology news, blogs, forums
Guest
Welcome Guest.
You haven't logged in yet. If you don't have an account you can register now.


View this topic in a long page with up to 500 replies per page Create new topic
1 | ... | 38 | 39 | 40 | 41 | 42 | 43 | 44 | 45 | 46 | 47 | 48 
29 posts

Geek


  #2445075 23-Mar-2020 23:39
Send private message quote this post

Hoping the forum can help. A question on cutting over an Edgerouter Lite to directly connect to the ONT. ISP = Spark UFB. 

 

Current config is ONT > HG659b > ERL and I want the HG659b out of the mix connecting the ONT directly to eth0 on the ERL. 

 

I don't want to run through the WAN+2LAN2 wizard for setup as I don't want to loose the existing config of the ERL. Can I simply add a new  PPPoE interface to eth0 VLAN ID 10 (eth0.10) and then directly connect the ONT? I am doing this all remotely and just want to get the person at the other end to re-patch once the change is committed.

 

interfaces {
    bridge br0 {
        aging 300
        bridged-conntrack disable
        hello-time 2
        max-age 20
        priority 32768
        promiscuous disable
        stp false
    }
    ethernet eth0 {
        address dhcp
        description Internet
        duplex auto
        firewall {
            in {
                name WAN_IN
            }
            local {
                name WAN_LOCAL
            }
        }
        speed auto
    }
    ethernet eth1 {
        address 192.168.10.1/24
        description Local
        duplex auto
        speed auto
    }
    ethernet eth2 {
        address 192.168.20.1/24
        description WiFi
        duplex auto
        speed auto
    }
    loopback lo {
    }
}


1860 posts

Uber Geek

Trusted

  #2445103 24-Mar-2020 05:58
One person supports this post
Send private message quote this post

If they have working internet, leave it be. Not a time to be breaking their connection given you're not going to be able to remotely fix if/when the connection breaks. unless you talk them through it all.




CPU: Intel 3770k| RAM: F3-2400C10D-16GTX G.Skill Trident X |MB:  Gigabyte Z77X-UD5H-WB | GFX: GV-N660OC-2GD gv-n660oc-2gd GeForce GTX 660 | Monitor: Qnix 27" 2560x1440

 

 


 
 
 
 


29 posts

Geek


  #2445151 24-Mar-2020 08:22
Send private message quote this post

I would normally leave it be. But this is to setup a L2TP IPSEC VPN to allow remote access for working from home due to the current situation... I have configured L2TP VPN on an ERL before and it works fine but the HG659b won't do NAT / port forwarding on the ports required for L2TP to work hence why I need it removed. Unless someone knows how to get L2TP working on a ERL that sits behind a HG659b.


1860 posts

Uber Geek

Trusted

  #2445156 24-Mar-2020 08:29
One person supports this post
Send private message quote this post

Can't you configure the VPN on the work device instead of putting their Internet connection via the VPN (unless you have specific rules on what goes to tunnel etc) 





CPU: Intel 3770k| RAM: F3-2400C10D-16GTX G.Skill Trident X |MB:  Gigabyte Z77X-UD5H-WB | GFX: GV-N660OC-2GD gv-n660oc-2gd GeForce GTX 660 | Monitor: Qnix 27" 2560x1440

 

 


29 posts

Geek


  #2445346 24-Mar-2020 11:15
Send private message quote this post

Yes will have to rethink the VPN structure. Thanks 


129 posts

Master Geek


  #2453314 2-Apr-2020 20:41
Send private message quote this post

Hi, I have just moved from 2Degree's to My Republic, on a Edge Router X (1.10.10) and suddenly I cant connect to my work network via openVPN.

 

I keep getting an occurrence in the log of this?

 

Thu Apr 02 20:33:02 2020 WARNING: No server certificate verification method has been enabled.  See http://openvpn.net/howto.html#mitm for more info.
Thu Apr 02 20:33:02 2020 MANAGEMENT: >STATE:1585812782,RESOLVE,,,,,,
Thu Apr 02 20:33:02 2020 TCP/UDP: Preserving recently used remote address: [AF_INET]103.15.152.11:22114
Thu Apr 02 20:33:02 2020 Socket Buffers: R=[65536->65536] S=[65536->65536]
Thu Apr 02 20:33:02 2020 UDP link local: (not bound)
Thu Apr 02 20:33:02 2020 UDP link remote: [AF_INET]103.XX.XXX.11:22114
Thu Apr 02 20:33:02 2020 MANAGEMENT: >STATE:1585812782,WAIT,,,,,,

 

 

 

I did have to re run the wizard when I set it up and I have not enabled ipsec hardware offloading enabled (cause when I did it advised me there was issues...).  

 

 

 

Any ideas/help appreciated.

 

 

 

 


1860 posts

Uber Geek

Trusted

  #2453316 2-Apr-2020 20:42
One person supports this post
Send private message quote this post

You no longer have a public IP address, you'll need to pay for a static IP address.

 

 

GGNAT is the issue.




CPU: Intel 3770k| RAM: F3-2400C10D-16GTX G.Skill Trident X |MB:  Gigabyte Z77X-UD5H-WB | GFX: GV-N660OC-2GD gv-n660oc-2gd GeForce GTX 660 | Monitor: Qnix 27" 2560x1440

 

 


 
 
 
 


129 posts

Master Geek


  #2453321 2-Apr-2020 20:52
Send private message quote this post

thanks for the prompt reply, I'm pretty sure I didn't have a static IP with 2degrees (or at least I know I wasn't paying for one)


1860 posts

Uber Geek

Trusted

  #2453339 2-Apr-2020 21:06
Send private message quote this post

2Degrees have been rolling out CGNAT over the past few months slowly, maybe you didnt't try to use it until recently.




CPU: Intel 3770k| RAM: F3-2400C10D-16GTX G.Skill Trident X |MB:  Gigabyte Z77X-UD5H-WB | GFX: GV-N660OC-2GD gv-n660oc-2gd GeForce GTX 660 | Monitor: Qnix 27" 2560x1440

 

 


129 posts

Master Geek


  #2453344 2-Apr-2020 21:11
Send private message quote this post

my cutover to My Republic occurred at 7pm tonight, prior to that with 2Degrees VPN had been working fine since last Wed when I started working from home...

 

Is CGNAT an issue only with OpenVPN, or any VPN solution?  Can't see how this cant be a massive problem for lots of users?


835 posts

Ultimate Geek


  #2453345 2-Apr-2020 21:16
One person supports this post
Send private message quote this post

People that need VPN don't go with CGNAT




/dev/null
9153 posts

Uber Geek

Moderator
Trusted
Lifetime subscriber

  #2453408 2-Apr-2020 23:10
One person supports this post
Send private message quote this post

@nicmair No idea why anyone would switch from a competent ISP to one is less than stellar. If you did a quick search on Geekzone and many other sites you'll find that MyRepublic have terrible support, really dodgy marketing practices (stating they're the quickest ISP when they're actually not etc) and also use CG-NAT by default. You need to buy into their "Gamer" plans to get away from this which in itself is no different from their regular plan - just has a static IP.

 

As you've just changed, I would cancel ASAP and go with a competent provider like Voyager (https://voyager.nz) as they're simply excellent, and include a static IP as a once-off cost. This will also solve your issue with VPN etc.

 

Given their shady background, I am very surprised MyRepublic is still around.





1 | ... | 38 | 39 | 40 | 41 | 42 | 43 | 44 | 45 | 46 | 47 | 48 
View this topic in a long page with up to 500 replies per page Create new topic



Twitter and LinkedIn »



Follow us to receive Twitter updates when new discussions are posted in our forums:



Follow us to receive Twitter updates when news items and blogs are posted in our frontpage:



Follow us to receive Twitter updates when tech item prices are listed in our price comparison site:





News »

Intel introduces 10th Gen Intel Core H-series for mobile devices
Posted 2-Apr-2020 21:09


COVID-19: new charitable initiative to fund remote monitoring for at-risk patients
Posted 2-Apr-2020 11:07


Huawei introduces the P40 Series of Android-based smartphones
Posted 31-Mar-2020 17:03


Samsung Galaxy Z Flip now available for pre-order in New Zealand
Posted 31-Mar-2020 16:39


New online learning platform for kids stuck at home during COVID-19 lockdown
Posted 26-Mar-2020 21:35


New 5G Nokia smartphone unveiled as portfolio expands
Posted 26-Mar-2020 17:11


D-Link ANZ launches wireless AC1200 4G LTE router
Posted 26-Mar-2020 16:32


Ring introduces two new video doorbells and new pre-roll technology
Posted 17-Mar-2020 16:59


OPPO uncovers flagship Find X2 Pro smartphone
Posted 17-Mar-2020 16:54


D-Link COVR-2202 mesh Wi-Fi system now protected by McAfee
Posted 17-Mar-2020 16:00


Spark Sport opens its platform up to all New Zealanders at no charge
Posted 17-Mar-2020 10:04


Spark launches 5G Starter Fund
Posted 8-Mar-2020 19:19


TRENDnet launches high-performance WiFi Mesh Router System
Posted 5-Mar-2020 08:48


Sony boosts full-frame lens line-up with introduction of FE 20mm F1.8 G large-aperture ultra-wide-angle prime Lens
Posted 5-Mar-2020 08:44


Vector and Spark teamed up on smart metering initiative
Posted 5-Mar-2020 08:42



Geekzone Live »

Try automatic live updates from Geekzone directly in your browser, without refreshing the page, with Geekzone Live now.


Support Geekzone »

Our community of supporters help make Geekzone possible. Click the button below to join them.

Support Geezone on PressPatron



Are you subscribed to our RSS feed? You can download the latest headlines and summaries from our stories directly to your computer or smartphone by using a feed reader.

Alternatively, you can receive a daily email with Geekzone updates.