Quantcast
Channel: EdgeRouter topics
Viewing all 20028 articles
Browse latest View live

Edgerouter and Cisco SPA112

$
0
0

Anyone using this combination? I have 4 of these and want to exchange the router for a Edgerouter.

 

I tried searching the forums and all I find is people having problems with it and can't see that anyone solved it.


Found another case where dashboard stops works

$
0
0

I am not sure if this is the forum for this post, if there is a better one and admin need, please feel free to move it.

 

I know there are some reported problems with the dashboard, about stops working properly in some cases. Some people workaround clearing all browser data, and some people using another browser: Chrome its reportes works ok.

 

In our case, only can work with firefox. When the problem was appeared, we just start to clearing all browser and re-signin to dashboard then it works ok again. But we have encountered a new problem, which may be of interest to those who are working on this issue solution.

 

Here the case:

0. erpoe5 are links on eth3 and etc5 in switch0, no cable attached to eth0 no inet link.

1. from admin pc connected to switch0 lan, we can signin on dashboar and all works proplery.

2. logout / clear all browser data

3. connect cable to eth0 and we've inet link and for example web browsing working ok (seem router works ok)

4. from admin pc connected to switch0 lan, we can signin on dashboar and now do NOT works properly.

5. logout/ clear all browser data

6. deatach eth0 cable, no inet link.

7. from admin pc connected to switch0 lan, we can signin on dashboar and AGAIN works proplery.

 

I repeted several times with the same result: always we have eth0 connected, dasboards no works; but when eth0 cable is deatached, dasboard starts working again.

 

I don't know why happens, It is not a browser problem ... I'll try to restore factory and reload current config, because I think is somes problem on management sessions on router ligthttpd service or something similar ...

 

Thanks

2 Wans 2 Lans Isolated

$
0
0

Hi guys thanks in advance for your help.

 

I'm trying to do the following:

eth0

 eth0.3 Wan A (DHCP ISP)

 eth0.23 Wan B (DHCP ISP)

eth1 Lan A 192.168.1.x

eth2 Lan B 192.168.2.x

 

I need each Lan working with its own Wan, I do not need them to work together never.

 

I've managed to have Wan A and Lan B working, but as soon as I enable Wan B everything goes to hell, I'm not sure what to do anymore, I woul really appreciate if you could give me a hand on this one.

ER-X two switches

$
0
0

Hi, I is there way how to set up ER-X-SFP with two switches?

I need eth0-4 as switch0 and eth4 and eth5 as switch1. Preferably CLI wayMan Wink.

Runnig version 1.7

Edgerouter Lite DHCP Not Assigning IPs

$
0
0

I'm relatively new to EdgeMAX and Ubiquity products in general.  I picked up an EdgeRouter Lite a few months ago and got it set up and had not problems until yesterday.  Suddenly the dhcp service is not assigning IP addresses (static or dynamic) on one of the ports and on the other port, it's not showing any leases although IP addresses are assigned.  I've attached my config.boot from the setting backup I downloaded from the router.  I masked some of the values with XXXXXX to protect some semi confidential info, but otherwise it's exactly as it is set up.

 

I'll explain the network setup a little for background.  

 

eth0 is connected to a wifi AP and that's it.  That's the one that is working, though when I look at the DHCP settings screen it shows no leases.

 

eth1 is connected to a TPLink TL-SG108E switch which has several devices attached to it including a second wifi AP and an unmanaged switch.  All devices that have their own static IP assigned (meaning the device setup has the static IP set) are working fine.  If I connect a new device to either the switch or the wifi AP, it never gets an IP address assigned.  If I connect a device that is set up in the static-mapping with it's MAC and IP, but the device itself doesn't have a static IP address set, the device also never gets an IP assigned.

 

eth2 is the WAN port connected to a cable modem which dynamically assigns the IP address assigned by the ISP to the router.

 

It was all working as expected until yesterday.  I made no changes to the setup.  I attached a new Steam Link device that I bought over black friday and it never got assigned an IP.  I had to manually set the IP on the device eventhough I tried setting up a static mapping on the router.  I also recently got a new Android phone.  It connected just fine on Monday and Tuesday, but yesterday I wiped the device and when I tried to connect it to the AP on the eth1, it just keeps saying Obtaining IP and then gives up, disconnects and tries to reconnect.  Also, tried connecting my work laptop via both the wifi AP and a port on the switch and it could not connect.  It definitely worked via wifi the previous evening because I work from home every evening.  If I connect it to the AP on the eth0 it works fine, but again, no lease shows up as I would expect.

 

The list is blank when I run: 

 

show dhcp leases

 

The only errors/warnings I see in the logs are related to martians which I assume is due to devices trying to connect but not getting appropriate IP addresses.

 

Any help would be greatly appreciated!  Thanks in advance.

Where to copy openvpn files?

$
0
0

Hi,

 

I'm currently running a VPN sever on my Synology NAS and it works relatively well. I use it to connect home from outside with various clients (laptops, Android phones, etc.) - no site-to-site connection.

 

However, I'd prefer that my router handle the VPN instead of my NAS behind the router. I have already generated the server and each client fil, with some specific settings that should (according to the blogs I read years ago) increase security. Here is the list of my server files (I added "custom" to the names to avoid them being overwritten with the default ones when my Synlogy NAS updates the VPN Server package - but it doesn't work since they wipe the folder):

- caCustom.crt

- dh4096.pem

- serverCustom.crt

- serverCustom.key

- taCustom.key

 

For each client, I have:

- caCustom.crt

- Laptop1.crt

- Laptop1.csr

- Laptop1.key

- taCustom.key

- Laptop1.ovpn

 

I'm assuming I can simply copy the server files (as is) in a directory on the router, and then "create the tunnel" (??). Reading the tutorial here, I am not sure entirely certain of the way to proceed since I already have the files.

 

Can someone indicate where I would need to copy the files and what I need to do to get the server going/listening?

 

Thanks

 

 

 

 

Ege Router Lite Dropping Connection to DSL Modem in Bridge Mode

$
0
0

Hi all!

The unit runs 100% on eth0 for about 12-20 hrs then it drops dead.

I am in basic configuration mode with dhcp enabled connected to a DSL in Bridged Mode.

Once it drops from internet the dhcp also is dead.

OS IS 1.90 I HAVE ALSO TRIED 1.91A & 1.91B.

Same results. Nada.

Help!!!

IS there a keep alive command or is this a hardware issue and if so who do I contact. I LOVE! this router!

Firewall PBX issue

$
0
0

Hi Everyone, thanks in advance for any help you can provide. I just installed a new edgerouter x and edgeswitch 24 at a clients site. I have gotten everything working with the exception of one thing. The phone system when it get a voicemail sends and email with an attached wave file to their email. It uses a gmail account to accomplish this currently the voice mail comes in but it is never sent as an email. The IP of the PBX that sends the email is 192.168.10.253. Anybody have any idea what firewall rules I need to make to get this to work?

 


3 Dead EdgeRouter Lite

$
0
0

Let me start by saying I love UBNT products. I have about 30 EdgeRouter X's at different small businesses and have never had any issues with them. 

 

On the other hand I have purchased about 5 Edge Router Lites and I have since replaced them all with Edge Router X's. 3 of the 5 lites died within a year and a half of being installed.  

 

Support will not RMA because they are past the 1 year mark, I am pretty dissapointed since there is obveously an issue with these. I have searched the formums and I see a lot of people having similar problems. 

 

any recommendations of what to do now? Use them as paper weights? Your support team very quickly brushed me off and it would seem like you guys could at least replace them for the X model. I don't think that is too much to ask. 

 

Sean

 

 

Load Balancing Issue

$
0
0

I currently have a load balancing setup where I have 2 VLANs and 2 WANs. 

 

VLAN 20 connects on WAN 2 (eth2) by default, fails over to WAN 1. WAN 2 is a cellular internet used for VOIP because the DSL is so bad.

 

LAN (eth1) connects on WAN 1 (eth0) and never under any circumstances connects on WAN 2. 

 

The load-balancing group for VLAN 20 works great and all traffic from it is using WAN 2 by default. The problem Im having is with the primary LAN connection. The only way I could seem to get it to work was to build a second load balancing group and only assign eth0 to it. Then all traffic is sent out over it. This doesn't seem right, but I'm having another issue too. I can't VPN into the router when WAN2 is plugged in. It hangs and then fails saying unable to connect. As soon as I disconnect it, it works. 

 

Most of my configuration is standard. Usually firewall rules, NAT, WAN_IN, WAN_Local, modify firewall rules for the load balancing group, lan-lan exlusion etc. I've deployed this identical configuration on at least 5 other routers, 90% of this configuration on at least 50 routers. The 2 unique aspects of this router are WAN 1 Primary for LAN only/no WAN2, and WAN 2 primary, WAN1 Failover. And never on such a DSL with such a bad upload (150kbps)

eth0 down?

$
0
0

About every day now my WAN port, eth0, decides to stop recieving and transmiting and then disconnects on my edgeMax pro router. After about 5 minutes it comes back online. Attached is a screen shot. Is the hardware starting to fail? BTW this set up has been working for about a 6 months now with no changes to configuration and hardware but just in the past 2 weeks it has been acting up. 

EdgeRouter Lite Boot Problem.

$
0
0

Hello Ubiquiti Support,

 

I am having an issue with my newly bought EdgeRouter Lite.

 

Got it to a point where it was working and then rebooted and it didn't come back up.

 

I loaded up the console and got this:

 

EdgeMax Router.png 

 

And that is where it stays...

 

Any suggestions?

ISP WAN Block IPs and LAN IPs Setup in EdgeRouter

$
0
0

Not sure how to set this up to make it work in my new edgerouter.  Maybe someone could help guilde me and help explain this a bit more.

 

LAN IP BLOCK:

xxx.xxx.xxx.16/28

Subnet Mask:

255.255.255.240

Gateway:

xxx.xxx.xxx.17

 

 

WAN BLOCK:

xxx.xx.xxx.12/30

XO PE:

xxx.xx.xx.xx

CE:

xxx.xx.xx.xx

Subnet Mask:

255.255.255.252

 

My ISP said I may have to setup a route to make this work and didnt give me much help.  I will want to use thier LAN as my public IP moving forward.

DHCP Relay Not working

$
0
0

Can anyone point out if I'm doing something wrong here?

 

I have an edgerouter 5 port connected to an edgerouter pro on port eth1 and connecting clients to the switch0 interface.

 

Edgeroute Port 5:

 interfaces {
     ethernet eth0 {
         duplex auto
         poe {
             output off
         }
         speed auto
     }
     ethernet eth1 {
         address 192.168.123.2/24
         duplex auto
         poe {
             output off
         }
         speed auto
     }
     ethernet eth2 {
         duplex auto
         poe {
             output off
         }
         speed auto
     }
     ethernet eth3 {
         duplex auto
         poe {
             output off
         }
         speed auto
     }
     ethernet eth4 {
         duplex auto
         poe {
             output off
         }
         speed auto
     }
     loopback lo {
     }
     switch switch0 {
         address 10.92.101.1/24
         mtu 1500
         switch-port {
             interface eth2 {
             }
             interface eth3 {
             }
             interface eth4 {
             }
             vlan-aware disable
         }
     }
 }
 protocols {
     static {
         route 10.92.100.0/24 {
             next-hop 192.168.123.1 {
             }
         }
     }
 }
 service {
     dhcp-relay {
         interface switch0
         interface eth1
         server 192.168.123.1
     }
     gui {
         http-port 80
         https-port 443
         older-ciphers enable
     }
     ssh {
         port 22
         protocol-version v2
     }
 }
 system {
     host-name NET-INV
     login {
         user ubnt {
             authentication {
                 encrypted-password $6$wZ1.KDe5qXKu1Z3Z$ozYZXlDwlGVXaKE1yTvkKHAFiZ5z4y4LirIsjUfVlJLgDbqTOakZO4fpxZfY/JWq553/yFV8VmU6xKpKBn.Au/
             }
             level admin
         }
     }
     ntp {
         server 0.ubnt.pool.ntp.org {
         }
         server 1.ubnt.pool.ntp.org {
         }
         server 2.ubnt.pool.ntp.org {
         }
         server 3.ubnt.pool.ntp.org {
         }
     }
     offload {
         hwnat disable
         ipv4 {
             forwarding enable
             pppoe enable
         }
     }
     syslog {
         global {
             facility all {
                 level notice
             }
             facility protocols {
                 level debug
             }
         }
     }
     time-zone UTC
 }

Edgerouter Pro:

 interfaces {
     bridge br0 {
         address 10.92.100.1/24
     }
     ethernet eth0 {
         duplex auto
         speed auto
     }
     ethernet eth1 {
         address 192.168.123.1/24
         duplex auto
         speed auto
     }
     ethernet eth2 {
         bridge-group {
             bridge br0
         }
         duplex auto
         speed auto
     }
     ethernet eth3 {
         bridge-group {
             bridge br0
         }
         duplex auto
         speed auto
     }
     ethernet eth4 {
         bridge-group {
             bridge br0
         }
         duplex auto
         speed auto
     }
     ethernet eth5 {
         bridge-group {
             bridge br0
         }
         duplex auto
         speed auto
     }
     ethernet eth6 {
         bridge-group {
             bridge br0
         }
         duplex auto
         speed auto
     }
     ethernet eth7 {
         bridge-group {
             bridge br0
         }
         duplex auto
         speed auto
     }
     loopback lo {
     }
 }
 protocols {
     static {
         route 10.92.101.0/24 {
             next-hop 192.168.123.2 {
             }
         }
     }
 }
 service {
     dhcp-server {
         shared-network-name INV {
             subnet 10.92.101.0/24 {
                 default-router 10.92.101.1
                 dns-server 10.92.101.1
                 start 10.92.101.100 {
                     stop 10.92.101.199
                 }
             }
         }
         shared-network-name TCT {
             subnet 10.92.100.0/24 {
                 default-router 10.92.100.1
                 dns-server 10.92.100.1
                 start 10.92.100.100 {
                     stop 10.92.100.199
                 }
             }
         }
     }
     gui {
         http-port 80
         https-port 443
         older-ciphers enable
     }
     ssh {
         port 22
         protocol-version v2
     }
 }
 system {
     host-name TCT-CORE
     login {
         user ubnt {
             authentication {
                 encrypted-password $6$xXKd9oginZQT3hy$uz5gzY2sIDGfd7hkfAGlvCdyDDRn4KSpRvLfuACbu0TZD50cGyFdaAPF91hBWAVGEphhGJKwW8rqRQlFAxovs.
             }
             level admin
         }
     }
     ntp {
         server 0.ubnt.pool.ntp.org {
         }
         server 1.ubnt.pool.ntp.org {
         }
         server 2.ubnt.pool.ntp.org {
         }
         server 3.ubnt.pool.ntp.org {
         }
     }
     offload {
         hwnat disable
         ipv4 {
             forwarding enable
             pppoe enable
         }
     }
     syslog {
         global {
             facility all {
                 level notice
             }
             facility protocols {
                 level debug
             }
         }
     }
     time-zone UTC
 }

Can I USE EthetIP over IPSec?

$
0
0

Hi,

 

I'm using ERX(ver1.9.1a2) and I would like to know ERX support etherip

protocols.

 

"etherip protocols" is not listed Ubiquiti Networks Products support list.

So, It may not support --i guess. But I can configure etherip setting with in

IPSec section.

 

-----------------------------------------------------------------------------

ma@vp01-01# show vpn
ipsec {

...........

 

site-to-site {
peer ::/0 {
authentication {
pre-shared-secret XXXXXXXX
}
default-esp-group ESP
ike-group IKE
local-address fd00:1234:xx:xx:xx:xx:xx:xx
tunnel 0 {
protocol etherip
}
}
}
}

-------------------------------------------------------------

 

As you know, There is etherip linux kernel driver and some manufacture

support it. So, I wonder if it protocol support EdgeMAX or...

 

Q1. Is there possible to adopt etherip protocol in near future?

 

Q2.  If i need to set up encrypted L2VPN over IPv6,  Is L2TPv6 over IPSec

       single solution?

 

Any advice is appriciate!

 

 


Edgerouter X as switch, but how to access it?

$
0
0

Hello guys
I've configured my new edge router X as a switch via build-in wizard. but I would like to enable PoE out on port eth4 so that I can connect another PoE device there. however once I finish the wizard and rebooted, I can no longer access the ERX manage interface. so what should I do now? anyone have any idea?

 

thanks.

PPTP with zonebased firewall.

$
0
0

I have made a setup with ERLite, Unifi Switch 24 and UAP LR for a multi-tenant situation. VLANs 50 and 100 for the two tennants. Because I will build a quit large multi-tenant network in the near future, I'm trying zonebased firewalling. It works fine, both tenants are separated from eachother while still accessing the shared Internet connection.

For remote access, I wanted to use PPTP. I didn't find any example of PPTP in combination with zone-policies so I tried to build it from my own understanding. see attached config

 

The PPTP VPN does work, but I can't reach my router for management.

Does anybody see the (small) pittfall I fel into?

Can an ERL run dual VPNs, i.e. privacy and remote access?

$
0
0

I've been trying to wrap my head around this and can't, so I thought I'd ask here.

 

A friend (really!) is interested in running a VPN for privacy from his router to protect all the devices in his home- I'm assuming he will want to run all traffic through this tunnel. He also wants to be able to have a remote access VPN.

 

Is this possible? If the ERL is set to update DDNS, would the A record point to the VPN service endpoint? Any thoughts would be appreciated.

 

Thanks,

Allen

Need some tips on setting up the ERP with UAP-AC-PRO, along with other network devices.

$
0
0

I've been using Asus routers, and I've gone through several over the years.  I used the RT-AC68U, and that was great for range and throughput.  I upgraded (or so I thought) to the RT-AC3100, but my throughput only got marginally better, and the range got worse.  In any case, I decided I'd finally setup my home network properly, using some prosumer equipment, like the stuff Ubiquiti offer.

In the past couple of days, I received the EdgeRouter PoE and UAP-AC-PRO, and now I'm now I'm trying to figure out the best way to setup everything.

Here are the devices I have in play:

- ERP (firmware updated to 1.9.0)

- UAP-AC-PRO (firmware updated to 3.7.21)

- NAS (w/2 GigE ports)

- Sonos Wireless Bridge (for Sonos speaker setup)

 

Should I used WAN+2LAN2 or WAN+2LAN on the EdgeRouter PoE?

 

If I use WAN+2LAN, should I do the following? (Option 1)

- WAN on eth0

- Bridge eth1 to switch0 using the basic wizard (I noticed there's an option for it)

- Enable PoE (48V) on eth1 and connect the AP to that.

- Connect the NAS to eth2/eth3 and Sonos bridge to eth4

 

If I use WAN+2LAN2, should I do the following? (Option 2)

- WAN on eth0

- Sonos bridge on eth1 (192.168.2.1)

- Enable PoE (48V) on eth4 and connect the AP to that (192.168.1.1)

- Connect the NAS to eth2/eth3 (192.168.1.1)

- If I setup like this, will my Sonos bridge be able to connect to my NAS?

 

If I use WAN+2LAN2, should I do the following? (Option 3)

- WAN on eth0

- Enable PoE (48V) on eth1 and connect the AP to that (192.168.1.1)

- Sonos bridge on eth4 (192.168.2.1)

- Connect the NAS to eth2/eth3 (192.168.2.1)

- If I setup like this, will devices connected to the AP be able to access the NAS?

 

 

Do you have any better suggestions/tips?

 

mDNS forwarding so that iPhone can communicate with iTunes on a PC

$
0
0

Hello,

I know this has been discussed before, but I'm not sure I've seen a confirmed solution anywhere.

I'll make this simple: I'm trying to get my iPhones/iTunes sync working when the iPhone is remotely connected to the network via a VPN (preferably OpenVPN).

 

I know the big hurdle is that apple services use bonjour which uses multicast which only traverses a local lan. These packets traditionally do not cross VPNs.

 

  • I've tried using an L2TP tunnel on the iPhone to drop it logically on the same network as the PC with iTunes, but it appears multicast is blocked there too.
  • I've tried bridging the openvpn interface and local lan interface from the ERLite but unfortunately iOS does not support 'tap', so that option does not work.


Does anybody have any other ideas on how I can make this work with the ERLite that I have? I know there exists mdns-repeater and reflector in the ERLite configuration, but I am not very familiar with them - I am hoping the experts here can show me what I am missing.

 

  • Subnet information:
    LAN = 192.168.9.0/24
    VPN = 192.168.99.0/30

Thanks in advance
-Bob

Viewing all 20028 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>