Quantcast
Channel: Tomato Firmware
Viewing all 5210 articles
Browse latest View live

Tomato VPN connection is established but cannot ping

$
0
0
Hi Everyone,

I need some help.

I'm brand new to the Tomato firmware. I'm running a test environment (that needs to go production), with 2 Linksys WRT54GL routers that are both running the TomatoVPN 1.25vpn3.4 firmware.

They're both on public IPs for the WAN connection.
Router A has the 192.168.10.0 subnet behind it (with my test server)
Router B has the 192.168.9.0 subnet behind it (with my test laptop)

The only change I made to the default settings was to use TAP instead of...

Tomato VPN connection is established but cannot ping

Simplest site to site bridged VPN; DHCP requests fail

$
0
0
I have two Linksys routers running Shibby (1.28).
Server: Basic = TAP, UDP, 1194, automatic, static key Advanced = defaults
Client: Basic = TAP, UDP, server address / port 1194, automatic, static key, server on same subnet
Advanced = defaults

I can't see that it could be any simpler: just bridge every packet between LANs.

But if I connect wirelessly from my MacBook to the Tomato client, the DHCP request fails.
If instead I assign a fixed IP address to MacBook, I can ping...

Simplest site to site bridged VPN; DHCP requests fail

noobie question on setting up guest WiFi

$
0
0
and I still have to wait a whole day to post a new thread to answer my question which is:
ive followed this tutorial (and not allowed to link)
Setup a Guest Network for Guest WiFi with Tomato VLAN

but my phone on the guest wifi 192.168.2.xxx can still see my 192.168.1.xxx network

How to I prevent network visibility and just keep internet of $%@# devices to internet access only?

thanks

Need to HIDE my router from lan users

$
0
0
On some of my public networks, I need the ability to hide my router ..

Sometimes we get users who like to tinker by scanning out hosts on the LAN .. My router serves certain functions, but is NOT the DHCP router on the network .. Here's my setup:

172.16.0.254 - Cisco 800 Series Router (DHCP/DNS)
172.16.0.101 - 172.16.199 - DHCP HOST RANGE
172.16.0.63 - Linksys WRT54GL (FTP/HTTP) no dhcp running

I need to block ICMP on the LINKSYS .. I want to make it...

Need to HIDE my router from lan users

site to site TUN OpenVPN - how to add the reverse route on the server ?

$
0
0
As with all things OpenVPN/Routing, I'm confused.

Server-Side - OpenVPN Tomato Shibby (TUN) -- Local Lan is 192.168.2.0/24
"10.8.0.1"
"tun22"

Pinging the "client" lan devices does not work (.6.x and .7.x)
However, pinging 10.8.0.6 works.

Client-Side - OpenVPN Tomato Shibby (Tun) -- Local Lan is 192.168.6.0/23
"10.8.0.6"

Pinging the "server" lan devices (2.x) works as expected. Nothing Abnormal.


Suspected problem: The OpenVPN server does not...

site to site TUN OpenVPN - how to add the reverse route on the server ?

Port Forwarding Oddities: Some open, some don't

$
0
0
I am hoping someone here can help me figure out why I can't get port forwarding working correctly. Some ports will open, but most will not. I'm running TomatoUSB on a Netgear WNR3500L v1 on the latest firmware K26USB 1.28.RT MIPSR2 140-miniVPN.

Using the GUI at Port Forwarding>Basic, I have set several ports to be opened.

Code:
On    Protocol    Src Address    Ext Ports    Int Port    Int Address    Description
On    Both        3500    3500    10.0.1.75    Surveillance
On    TCP...
Port Forwarding Oddities: Some open, some don't

How to dashboard/organize/portscan/ set hostnames into a webui for local network devices?

$
0
0
Looking for suggestions on how to organize what is an ever-increasing number of devices on my home network.

Currently I mainly memorize and set static reservations for important devices, but this is growing out of hand, with the number of IoT devices and VMs on my network.

Some goals:

- have a Webui that has a list of Active and Dormant devices on the network, including IP Address, hostname, DHCP lease time, basic port scanning

- Not using complex enterprise monitoring software that has...

How to dashboard/organize/portscan/ set hostnames into a webui for local network devices?

Adblock not so lean running, but pixelsrv isn't

$
0
0
Hi everyone:

I'm running an Asus RT-N66R running v1.28.0511 MIPSR2Toastman-RT-AC K26AC USB VPN.
With your help here, I got Adblock - not so lean installed and running.

However, pixelserv doesn't seem to be running. If I click "Start/update" in the
adblock menu, it does appear to start.

What do I do to figure out why Pixelsrv isn't running automatically after bootup? My Linux is minimal.

pixelserv info:
ERROR: No response from pixelserv...
pixelserv is not runnng on router...

Adblock not so lean running, but pixelsrv isn't

OpenVpn Client Config location?

$
0
0
Hy,
Where is the location of the Openvpn client confiiguration files what are they named? I want to modify them via a script.
Thanks

TAP OpenVPN Bridged to LAN br1 - DHCP not advertising the default Gateway?

$
0
0
For experimentation purposes, I've setup a TAP OpenVPN client in such a way where some (or all) local ports are bridged to the remote LAN completely ... i.e. the provider of DHCP is the remote router and it assigns IPs to every LAN device for both routers.

I've tried to set this up, I bridged an OpenVPN to br1, and br1 is bridged to my local wifi interface.

Everything appears to work, except for some reason the remote router isn't advertising a default gateway via DHCP to my VPN devices....

TAP OpenVPN Bridged to LAN br1 - DHCP not advertising the default Gateway?

Building FreshTomato

$
0
0
At the risk of seeming dense, I'm looking at the git repo
and wondering where the top level makefile is situated.

I'm studying the process to see if this can be built under
an Arch Linux system... just for the challenge.

Is there a more detailed build process doc somewhere?

Stubby - How to get fully working?

$
0
0
Hi,

I'm using FreshTomato 2018.5 and trying to get the integrated Stubby working correctly. I'm at the point where I have a TLS cert, I'm pointing Stubby to that file/location within the .yml file, and I'm trying to keep things simple and just use the 1.1.1.1 resolver in that same file.

Where I'm having the problem is trying to get it to resolve the DNS to/through 127.0.0.1. Just can't figure out how that's accomplished. If I set 127.0.0.1 for the WAN DNS server, it looks like things...

Stubby - How to get fully working?

Looking for OpenVPN Site to Site How To...

$
0
0
Is there a tutorial on how to create a site to site openvpn connection using 2 or more tomato routers? All of the documentation I have found seems to use the scenario of a computer being the client.

Is it possible to create multiple VLANS and have only one of the VLANS tunneled while the other does not? So depending on which SSID I connect to will reflect on what network services are available to the device.

Thanks.

Wifi Country of Origin

$
0
0
Hi..
I flashed the beta version
2018.5.083-beta is ready for on my Asus RT-AC68P and noticed under "Advanced/wireless,
the country of origin was set to default as SINGAPORE. Since I am in the US, would that affect anything?

5ghz speeds...

$
0
0
Hi...
I gave my son a Linksys E2000 that has Shibby Tomato v132 and he was using it with 5ghz wifi in order to achieve the 100 Mbps from his ISP...but he ran into a problem because with this router his PlayStation would not connect to 5ghz and he cannot run dual band.... so, I gave him an E2500 which can do dual band, so I flashed the latest FreshTomato firmware.

I set up the e2500 exactly the same as the e2000 with the same SSID, same channel and everything, like an exact...

5ghz speeds...

Intercept port 53

$
0
0
I use OpenDns to block pornsites on my home network. I’ve been using tomato firmware for many years now and I always tick the option to intercept dns port 53 in order to prevent users from bypassing the dns provider I have set at the router level which is OpenDns.

It has always worked fine and I have tested it and it does work, but I’ve only tested on PC’s.

I have noticed that on cellphones, it does not work at all. If install any dns cloak app on my phone, I can easily bypass the router...

Intercept port 53

Dnsmasq PoC on Tomato Firmware - Need Assistance

$
0
0
Hello! I'm doing some self learning with an R7000 that is running an older version of Tomato Firmware that has a Dnsmasq version < 2.78 which is the version required / vulnerable to the exploit Google found in October 2017 (see here: https://security.googleblog.com/2017/10/behind-masq-yet-more-dns-and-dhcp.html )

I'm looking for some assistance in how to demonstrate the vulnerability locally on a router that I own. I'm able to spin up a variety of virtual machines that can talk...

Dnsmasq PoC on Tomato Firmware - Need Assistance

VLAN2 ISP Gateway MAC address incorrect

$
0
0
Im running advanced tomato and under device list VLAN2 is assigned to my isp gateway IP 68.207.224.1

However the MAC address that is assigned to VLAN2 and my ISP Gateway IP is the MAC address from my original ONT issued to me from the ISP. A Nokia/Alcatel-Lucent.

They have since removed that ONT and gave me a Commscope. Can I change this MAC address myself to represent the correct device that is installed in my home right now (commscope)

Help me with Cron job code for Hosts file update !

$
0
0
Hi, i am looking for a cron job to do a regular update of the hosts file in my Tomato firmware for r7000.
i installed this Adblock: not so lean code, but i didnt get a simple instruction to follow the cron job for updating Hosts file, say for ex. at 2am every day or once in 3 days or so.

Can anyone here help me pls ?

Thanks in advance.

Firewall Scripts....

$
0
0
Hi...
I have 2 routers using Shibby Tomato firmware...router 1 is being used as a switch (wifi disabled).. the 2nd router is connected to router 1 via Ethernet cable on the other side of the house and is being used as the main Wireless router.

I use OpenDNS for web filtering and I am also using Firewall scripts to enforce SafeSearch on my network... everything is working fine as it should...but I have a question....

as of now, I have the same settings on both routers, meaning the same...

Firewall Scripts....
Viewing all 5210 articles
Browse latest View live