Quantcast
Channel: EdgeRouter topics
Viewing all 20028 articles
Browse latest View live

ER-Lite Console port stopped working

$
0
0

Sometime within the past few months, I lost the ability to use the console port on my ER-Lite. I had been successfully using this cable, but now all I get is gibberish.  I know this type of problem can be caused by not having the correct baud rate, but I am certain it is correct.  

 

Additionally, I borrowed a Cisco console cable and USB serial adapter from work, and it produces the same results.  

 

I also tried both cables with the original computer as well as another laptop.

 

Any ideas?

 

Console gibberishConsole gibberish

Console port settingsConsole port settings


ERPoE-5 kernel panic 1.9.7-hotfix.1

$
0
0

Installed hotfix.1 two days ago, so uptime about 2 days, and then this captured on my console port:

INFO: task init:1 blocked for more than 120 seconds.
"echo 0 > /proc/sys/kernel/hung_task_timeout_secs" disables this message.
Kernel panic - not syncing: hung_task: blocked tasks Rebooting in 60 seconds.. *** NMI Watchdog interrupt on Core 0x00 *** $0 0x0000000000000000 at 0x0000000010108ce0 v0 0x0000720ef591145f v1 0xffffffffc0690000 a0 0x000000000007a120 a1 0x00000000000001f4 a2 0x0000720ef598b57f a3 0x0000000000000001 a4 0x0000720ef595f7e1 a5 0x0000000000000001 a6 0x80000000017849e8 a7 0xffffffffc07c0000 t0 0x00000000a0000000 t1 0xffffffffc07c0000 t2 0x000000000000003c t3 0x000000000000ea60 s0 0x00000000000020d0 s1 0x0000000000000010 s2 0x0000000000002198 s3 0x0000000000000001 s4 0xffffffffc07b0000 s5 0x00000000000003e8 s6 0xffffffffc07b0000 s7 0x00000000003fffff t8 0x0000000000000001 t9 0xffffffffc07c0000 k0 0x0000000000000000 k1 0x0000000000000000 gp 0x800000041c2a4000 sp 0x800000041c2a7cc0 s8 0xffffffffc0590000 ra 0xffffffffc04ee264 err_epc 0xffffffffc00079e0 epc 0xffffffffc00a42b0 status 0x0000000010588ce4 cause 0x0000000040808c08 sum0 0x000400f100000000 en0 0x0100400500008000 *** Chip soft reset soon ***

Followed by the boot sequence.

 

 

This device has been in operation for the last 2 years or so, so unless a sudden hardware problem developed, this is likely a SW issue with 1.9.7.hotfix.1 (I did not experience these panic on pre 1.9.7 versions with uptimes generally several months between reboots).

Excessive logging in 1.9.7+hotfix1 ?

$
0
0

Hi all.

 

I'm seeing a ton of these log messages from my ER8Pro:

 

Aug 11 22:58:45 192.168.137.1 sudo:     root : TTY=unknown ; PWD=/ ; USER=root ; COMMAND=/usr/bin/vtysh.pl -c show ip route summary json
Aug 11 22:58:45 192.168.137.1 sudo: pam_unix(sudo:session): session opened for user root by (uid=0)
Aug 11 22:58:46 192.168.137.1 sudo: pam_unix(sudo:session): session closed for user root
Aug 11 22:59:01 192.168.137.1 CRON[18613]: pam_unix(cron:session): session opened for user root by (uid=0)
Aug 11 22:59:01 192.168.137.1 /USR/SBIN/CRON[18614]: (root) CMD (/usr/sbin/ubnt-check-unms.sh >/dev/null 2>&1)
Aug 11 22:59:01 192.168.137.1 CRON[18613]: pam_unix(cron:session): session closed for user root

While I'd like to know about new user sessions, I'm curious why this is happening at all - this is even when I'm not logged in to the router by any means, and happens about once every 30 seconds. I use remote syslog to capture it.

 

I can post the full config if needed, but there should be really nothing special there (and I'm not using UNMS yet).

 

EdgeMax Light FireWall Problems

$
0
0

Hi, i have internet connection via pppoe  and need to open ssh and http on the router.

ETH0 PPPOE

ETH1 Internal LAN

ETH2 unused

 

It test port forwarding. To other Computer it works, but not to the router itself.

 

I set ssh and http to accepts but the traffic will dropped by the default action.

 

Any idea?

Attached my boot.config.

 

 

/jörg

 

Since installing EdgeRouter-X : VOIP has 10-20sec silence during calls!

$
0
0

Hi, i'm wondering if anyone can help me troubleshoot this;

My VOIP phones have worked fine for many years on my network. My gateway was a FritzBox!

 

I recently Installed a Dreytek Vigor 130 Modem(bridged/pppoe passthru) & Edge Router X as Gateway to make things more compatible/flexible for UCRM and Billing etc. 

 

Since installation, my own VOIP phone has been giving random sections of the call as silence from me (i can hear them) for 10-20seconds, then call preceeds as normal (but sometimes repeats during longer calls) 

 

Original my Gigaset VOIP handset did this every call, so i switched to what all my other users have (Cisco SPA112/SPA122) and although improved, still happens periodically. I've had another user report similar behaviour.

 

ER-X is in fairly std mode, i think, just enough to get it going. Iin other words because i'm new to them, i've not added much in the way of rules or stuff!

 

One thing i have tried is the smart queue (simply stating my bandwidth). But no improvement.

A few days ago I've updated the Firmware from 1.9.1.1 to 1.9.7-hotfix. But had a client report the silent block since. Smart Queue was deleted before the firmware upgrade, so i could try that again.

 

My network is overbuilt, and not struggling that i know of, especially when these call are doing this.

 

Is there anything i can do, like "capturing" to narrow what the issue is? It's over my head and expertise...

[DPI] How to further inspect "Other"?

$
0
0

Apologies if this is a dumb question.  A few days ago I installed my first non "consumer" home network consisting of an EdgeRouter X and an AP AC Lite.  I have quickly realized these two combinations are not ideal if you are interested in a unified dashboard but that is nor here or there.

I am mostly curious if there is any way to get more details through the Traffic Analysis section in the EdgeRouter?  Nearly every client has over 80% of traffic classified as Other - is there any way to break this down further?

Would a USG better perform this task?


other.png

2 or 3 DSL Lines into one EdgeMax => Switch

$
0
0

Hhi,

 

I have a client that has 3 DSL Lines (From the same ISP - 192.168.1.XX) with slow speed (2mbps/Down) because of the distance from the DSLAM.

 

We want to bond them into one line with EdgeMax Router and from there to give it to the switch (allready installed)

 

Can we do it with EdgeMax Router? if we don't can we do it with USG?

 

Please advise us

Edgerouter X -( Open)VPN server and (Open)VPN client at the same time ?

$
0
0

Hi there,

 

After searching for a good VPN client / server and reading benchmarks i found that the EdgeRouter X was performing great on the benches both as client and as server.

I want to know if it would be able to act both as a server and a client at the same time ?

uplink port connected to modem (internet)
port 1 connected to switch (ethernet)

 

the uplink port will be connected to a VPN service provider.

but would it be possible to also setup a VPN server (at the same time) to be able to connect my mobile phones to the local network ?

Usage example:

 

local computers use the VPN client (vpn service provider) to connect to the internet.

My mobile devices will use the VPN server to connect to the local network and (if possible) use the same client as the local network to browse the internet.

 

Would this be possible with the edgeRouter X ?

And if its possible would this kill the performance ?

Thanks in advance!


DNS Forwarding Options

$
0
0

Hi all,

 

Going over an old ERL configuration and in particular looking at some of the DNS Forwarding/Caching settings. a couple of options caught my eye particulary:

 

option all-servers
option no-negcache

I understand how both of these works, but are there any unintended side effects/downsides of either? 

ER PoE: switch gone from dashboard after loading configuration file from ER Lite

$
0
0

Hi,

 

I have just replaced an ER Lite with an ER PoE. So I backed up my configuration before the replacement, and then restored it to the ER PoE. Now the 'switch' entry has disappeared from the list of interfaces in the dashboard. How can I get it back to configure/use it?

 

Thanks for your help!

IPv6 6RD On ERL

$
0
0

Hi,

 

I have been trying to follow some guides to get 6RD up and running, and i think im stuck.

 

Telia - SE

 

  • IPv4 mask length 0
  • 6RD BR anycast address 217.209.228.166 (6rd-br1.telia.com)
  • 6RD Prefix 2001:2002
  • 6RD Prefix Length 32
  • MTU Size 1480

 

Lets assume my ipv4 ip is 5ae7:1916 (90.231.25.22) i just made something up for reference.

 

 

configure

set interfaces tunnel tun0 address '2001:2002:5ae7:1916::1/24'
set interfaces tunnel tun0 description 'Telia IPv6 6rd tunnel'
set interfaces tunnel tun0 encapsulation sit
set interfaces tunnel tun0 local-ip 90.231.25.22
set interfaces tunnel tun0 multicast disable
set interfaces tunnel tun0 ttl 255
set interfaces tunnel tun0 6rd-default-gw ::217.209.228.166
set interfaces tunnel tun0 6rd-prefix '2001::/24'
set interfaces tunnel tun0 mtu 1480

set interfaces ethernet eth1 address '2001:2002:5ae7:1916::1/64'
set interfaces ethernet eth1 ipv6 dup-addr-detect-transmits 1
set interfaces ethernet eth1 ipv6 router-advert cur-hop-limit 64
set interfaces ethernet eth1 ipv6 router-advert link-mtu 1480
set interfaces ethernet eth1 ipv6 router-advert managed-flag false
set interfaces ethernet eth1 ipv6 router-advert max-interval 300
set interfaces ethernet eth1 ipv6 router-advert name-server '2001:2002:5ae7:1916::1'
set interfaces ethernet eth1 ipv6 router-advert other-config-flag false
set interfaces ethernet eth1 ipv6 router-advert prefix '2001:2002:5ae7:1916::/64' autonomous-flag true
set interfaces ethernet eth1 ipv6 router-advert prefix '2001:2002:5ae7:1916::/64' on-link-flag true
set interfaces ethernet eth1 ipv6 router-advert prefix '2001:2002:5ae7:1916::/64' valid-lifetime 2592000
set interfaces ethernet eth1 ipv6 router-advert reachable-time 0
set interfaces ethernet eth1 ipv6 router-advert retrans-timer 0
set interfaces ethernet eth1 ipv6 router-advert send-advert true

edit firewall ipv6-name WAN6_IN
set default-action drop
set rule 10 action accept
set rule 10 description "allow established"
set rule 10 protocol all
set rule 10 state established enable
set rule 10 state related enable
set rule 20 action drop
set rule 20 description "drop invalid packets"
set rule 20 protocol all
set rule 20 state invalid enable
set rule 30 action accept
set rule 30 description "allow ICMPv6"
set rule 30 protocol icmpv6
top

edit firewall ipv6-name WAN6_LOCAL
set default-action drop
set rule 10 action accept
set rule 10 description "allow established"
set rule 10 protocol all
set rule 10 state established enable
set rule 10 state related enable
set rule 20 action drop
set rule 20 description "drop invalid packets"
set rule 20 protocol all
set rule 20 state invalid enable
set rule 30 action accept
set rule 30 description "allow ICMPv6"
set rule 30 protocol icmpv6
top

set interfaces ethernet eth1 firewall in ipv6-name WAN6_LOCAL
set interfaces tunnel tun0 firewall in ipv6-name WAN6_IN

commit

 

 

when i run the above it makes me able to ping ipv6 adresses from my ERL, but my clients does not seem to being able to access anything ipv6.

 

Is there anything im missing or doing wrong Man Happy

 

Thanks for any help or pointers in the right direction... hopefully this might help someone else trying to use 6RD with Telia ISP in sweden aswell.

Limit eth1 and eth2 port to a static upload and download speed

$
0
0

Hi there,

 

I have a EdgeRoute X, totally non network educated. 

I running PPPOE on port eth4 (A total package of 20mb up and 20mb down)

 

I am trying to limit eth1 and eth2 to each only have a capability of 10mb up and down.

 

I have tried the Config Tree with Limiter and Rate policies and applying that to the interface for eth1 and eth2, but on a speed test i still get the full 20mb up and down.

 

I have also tried the QoS option with the Smart Queue, but still no luck.

 

Any advise will be greatly appreciated.

THanks 

Newbie questions

$
0
0

I am trying to set up an NAS. The wizzard keeps telling me that the router certificate is not valid and will not proceede. Do I have to buy a certificate or how do I get this thing (wizzard) to go to the next step?

 

If I go to the manual setup it wants me to tell it what port to forward on. I just have the basic setup for the router and did not do anything more. Am I screwed up or just uninformed>

 

Steve

Checking on LED option for EdgeMax

$
0
0

Hi,

 

From what I've seen, others have asked and the answer was no - but it's been a while, updates have come out and I see there's options on other devices like with UniFi....

 

Is there an option through the software to turn off LEDs?  

 

As with the other folks, this seems reasonable - Cisco does it, Nortel / Netgear does it.  Ubiquit does it apparently for some devices.  

 

Tape doesn't work well as since the box needs ventilation, light will escape, at least that's been my take on it.  

 

Thanks,
Chris

Internal network of ER-X cannot be pinged by external network

$
0
0

Hi everyone,

 

I want to use my ER-X as a simple router for my internal network (10.0.0.0/16), as my ISP only allows changing the subnet number, but not the mask. The modem/router from my ISP is at 192.168.1.0/24 and provides DHCP for that subnet. Connected to it is the ER-X and a few desktops.

 

I've configured my ER-X with the WAN+2LAN2 wizard, ensuring that eth0 gets its IP via DHCP (the ISP router acted quite iffy otherwise). The default firewall was turned OFF. The other ports were configured to be in the 10.0.0.0/16 network. The default gateway is at 10.0.0.1.

 

Everything appears to be able to see each other, and the devices inside my internal network happily chat with each other and can access the internet.

 

Now, the strange thing is that the desktops in the 192.168.1.0/24 network can ping the ER-X eth0 IP (which is at the moment 192.168.1.135), but they cannot ping 10.0.0.1 or any of the devices inside my internal network.

 

Pings from inside the 10.0.0.0/16 network to the default gateway of the ISP router, 192.168.1.1, succeed.

 

It appears as if the ISP router does not have a route to 10.0.0.0/16 in its routing table (I cannot check this), but I did not experience this problem with other routers that were behind the ISP router (although those networks were set at 192.168.0.0/24, that's the only current difference).

 

Any ideas? Here's my config:

 

interfaces {
    ethernet eth0 {
        address dhcp
        description Internet
        duplex auto
        speed auto
    }
    ethernet eth1 {
        description Local
        duplex auto
        speed auto
    }
    ethernet eth2 {
        description Local
        duplex auto
        speed auto
    }
    ethernet eth3 {
        description Local
        duplex auto
        speed auto
    }
    ethernet eth4 {
        description Local
        duplex auto
        speed auto
    }
    loopback lo {
    }
    switch switch0 {
        address 10.0.0.1/16
        description Local
        mtu 1500
        switch-port {
            interface eth1
            interface eth2
            interface eth3
            interface eth4
        }
    }
}
service {
    dhcp-server {
        disabled false
        hostfile-update disable
        shared-network-name LAN {
            authoritative disable
            subnet 10.0.0.0/16 {
                default-router 10.0.0.1
                dns-server 10.0.0.1
                lease 86400
                start 10.0.38.102 {
                    stop 10.0.243.51
                }
            }
        }
    }
    dns {
        forwarding {
            cache-size 150
            listen-on switch0
        }
    }
    gui {
        https-port 443
    }
    nat {
        rule 5010 {
            description "masquerade for WAN"
            log disable
            outbound-interface eth0
            protocol all
            type masquerade
        }
    }
    ssh {
        port 22
        protocol-version v2
    }
}
system {
    host-name ubnt
    login {
        user ubnt {
            authentication {
                encrypted-password <SNIP>
            }
            level admin
        }
    }
    ntp {
        server 0.ubnt.pool.ntp.org {
        }
        server 1.ubnt.pool.ntp.org {
        }
        server 2.ubnt.pool.ntp.org {
        }
        server 3.ubnt.pool.ntp.org {
        }
    }
    syslog {
        global {
            facility all {
                level notice
            }
            facility protocols {
                level debug
            }
        }
    }
    time-zone UTC
}


/* Warning: Do not remove the following line. */
/* === vyatta-config-version: "config-management@1:conntrack@1:cron@1:dhcp-relay@1:dhcp-server@4:firewall@5:ipsec@4:nat@3:qos@1:quagga@2:system@4:ubnt-pptp@1:ubnt-util@1:vrrp@1:webgui@1:webproxy@1:zone-policy@1" === */
/* Release version: v1.7.1.4821926.151103.1114 */

Watts used per POE port? Feature request...

$
0
0

Is there a a way to see the power draw (watts) per POE port on the EdgeMax devices that support POE? Specifically interested in the EdgePoint devices, but also applies to the new ER-6.

 

I can not see anything in either the GUI or the CLI.  (Is the information available via SNMP?)

 

If this information is not currently available, consider this a feature request.

 

 

 

 

 

PPPoE via a FritzBox 7412 on 1und1 in Germany? Anybody made it work?

$
0
0

Hi all,

 

No thanks to 1und1.de support, I found out how to enable PPPoE passthrough on the FritzBox 7412 they sent me. When I ran the "Basic Setup" wizard on my EdgeRouter SRP and selected PPPoE mode and gave it the username and password, it came back up saying the pppoe interface was "connected" but it wasn't routing packets to the internet.

 

What can I do on the EdgeRouter to attempt to diagnose what the problem might be?

 

The only thing I can find ain any documentation which might be relevant is the 7490 manual (which is running Fritz!OS of a similar version) which says "•The FRITZ!Box must establish its own connection to the Internet.The Internet connection provider must allow several PPPoE connections.". I can't imagine why the FritzBox needs its own connection to the Internet (I don't want any of its DNS, DHCP, routing or telephony functions), and if I were a betting man I'd assume 1und1 would not allow several PPPoE connections.

DHCP requests failing for some clients

$
0
0

Good evening everyone, 

 

Hope you're weekend is going better than mine.

 

Had an odd problem with a Unifi-AP-AC-MESH not getting a DHCP lease after upgrading to the latest firmware.  The router is an ER-X running 1.9.1.1.  Dumping dhcpd logs to file, I see the following:

 

 

 

Aug 13 08:01:40 EdgeRouterAMK dhcpd: DHCPDISCOVER from f0:9f:c2:a3:ca:a0 via switch0
Aug 13 08:01:40 EdgeRouterAMK dhcpd: DHCPOFFER on 10.0.5.11 to f0:9f:c2:a3:ca:a0 via switch0
Aug 13 08:01:58 EdgeRouterAMK dhcpd: DHCPDISCOVER from f0:9f:c2:a3:ca:a0 via switch0
Aug 13 08:01:58 EdgeRouterAMK dhcpd: DHCPOFFER on 10.0.5.11 to f0:9f:c2:a3:ca:a0 via switch0
Aug 13 08:02:00 EdgeRouterAMK dhcpd: DHCPDISCOVER from e8:ab:fa:49:95:20 via switch0.200
Aug 13 08:02:00 EdgeRouterAMK dhcpd: DHCPOFFER on 10.1.1.151 to e8:ab:fa:49:95:20 via switch0.200
Aug 13 08:02:01 EdgeRouterAMK dhcpd: DHCPDISCOVER from f0:9f:c2:a3:ca:a0 via switch0
Aug 13 08:02:01 EdgeRouterAMK dhcpd: DHCPOFFER on 10.0.5.11 to f0:9f:c2:a3:ca:a0 via switch0
Aug 13 08:02:03 EdgeRouterAMK dhcpd: DHCPDISCOVER from e8:ab:fa:49:95:20 via switch0.200
Aug 13 08:02:03 EdgeRouterAMK dhcpd: DHCPOFFER on 10.1.1.151 to e8:ab:fa:49:95:20 via switch0.200
Aug 13 08:02:04 EdgeRouterAMK dhcpd: DHCPDISCOVER from f0:9f:c2:a3:ca:a0 via switch0
Aug 13 08:02:04 EdgeRouterAMK dhcpd: DHCPOFFER on 10.0.5.11 to f0:9f:c2:a3:ca:a0 via switch0

 

 f0:9f:c2:a3:ca:a0 is the AP-AC-MESH.  It is not set to do a wireless fallback, so it's hardwired only.

 

e8:ab:fa:49:95:20 is a remote webcam that is connecting via another AP.  I can't determine which one it has connected to since it doesn't show up on the Unfi CK's list of clients until it acquires an IP.  

 

Everything has been working flawlessly for the past 3 months, right up to the point I upgraded the AP.  However, neither the AP or webcam are getting IP addresses anymore, so it may not be upgraded firmware on the AP that's causing problems. 

 

It's not clear why this is happening.  There are 5 other devices that are getting their IPs just fine.

 

Since this is a remote site, I can't get to it easily to do a power cycle on the AP.  

 

Any ideas?  

 

Basic traffic shape/qos?

$
0
0

Hey all...I've been going through the tutorials and have used the smart que already.  The problem is, even though the smart que is functioning, it doesnt seem to limit one user when there are others on the network. 

 

We only have about a 5mb/s connection (and only about 1mb upload) and what I see happening is someone could be downloading something that uses half of the connection, and then shares the other half will all remaning members. 

 

Is there anyway to set up a policy that splits the bandwidth up evenenly?  Then let's say there is only one user, it doesn't limit that user at all and he can have all he wants?

 

A CLI script or detailed example would be appreciated, as I do not have full understanding of all the QOS principles. 

 

thanks!

CPU behavior on idle network

$
0
0

Hello everyone,

 

I'm new to EdgeRouter Lite v1.9.7+hotfix.1 and was wondering what cpu load is normal with an nearly idle network. (just me writing this and traffic analysis disabled)

ERL3 is wired to 1 Netgear switch and 2 AP AC LR.

CPU load regulary:  1% rising to 25%  but less regulary climbing to 40%.

 

 

Thanks for helping out.

 

Wil

Viewing all 20028 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>