#networking

1 messages · Page 11 of 1

peak cloak
#

well then you should be able to get some moca adapters

#

just make sure to put a moca filter on

#

between ISP and your house network

thick minnow
#

k thx

waxen saddle
#

Also with Powerline, they don't like extension cords, power strips, or breakers. (Basically they don't like additional "connection points". So it's best to plug them directly in to wall outlets and if possible, have them on the same breaker as well.

noble solar
#

I feel like this should be illegal.
student accommodation wifi, so you’re using unencrypted wifi for 1-3 years

waxen scroll
#

literally doesnt matter with https

ebon wasp
waxen scroll
#

@rocky badge is your uni unsecured?

rocky badge
#

no

#

Only the guest wifi is open

#

students and everyone else has to use a WPA2/3 enterprise network

waxen scroll
#

BRAVE, using 3 already

noble solar
#

My accommodation’s private btw, the uni network is encrypted

#

But, surely someone on the wifi could look at the packets tho

peak cloak
#

yeah, but the packets are encrypted because of https

#

most traffic is encrypted now

waxen scroll
peak cloak
#

Ikr

noble solar
#

Fair enough

waxen scroll
#

non-https is so rare now

noble solar
#

I think it’s public and I think I have auto upgrade for https so I should be good

#

Would they have any reason to have it unencrypted tho?

peak cloak
#

easier to have people join

#

also

noble solar
#

You still have to sign in, and you have to manually add your devices MAC addresses

peak cloak
#

oh

#

then idk

noble solar
#

You have to make an account, it’s really annoying

peak cloak
#

all we have to do for uni network is sign in with your uni account credtials

#

radius auth

rocky badge
#

guest wifi here just a captive portal terms of service

#

but everything else is ad creds

noble solar
#

Uni you sign In with your uni account but the accommodation wifi is a private company for sign in

rocky badge
#

Residence halls are through apogee which is Azure SSO

#

but you gets a PPSK

peak cloak
#

residence halls have the same wifi as everywhere else

noble solar
#

We’re also only allowed 5 devices unless we want to pay £10 a month

peak cloak
#

@rocky badge also

rocky badge
peak cloak
#

library pcs I think also have global IPs

rocky badge
#

lol nice

#

yeah every wired device here has public’s

peak cloak
#

yeah that's how it seems for the most part

#

idk about the engineering CAD labs, haven't checked

noble solar
#

I think we have internal ips??

waxen scroll
#

look at blob with a $1000 phone

noble solar
#

Could try

rocky badge
cobalt iris
#

blob do be fancy

sudden kayak
#

college housing is such a racket

#

my second year i moved from a 4 person suite on campus in a shitty neighborhood to a bigger and totally private studio apartment in a really nice neighborhood and paid less

#

(it was still tiny though lol)

pseudo blade
#

tbh 5 devices as quite a few for a single student

#

Phone, tablet, a PC, games console...

#

If you want more than that just set up a router with NAT as one of the five devices

vale storm
#

Hey guys, this is my plan for setting up my own network in my dorm. I’ve gotten as far as connecting a device to the internet through my laptop acting as a wifi-to-ethernet bridge. However, when I connect my router to the laptop instead of my test device and then connect my test device to the wifi network created by my own router, I don’t have internet access. I suspect it’s either a DNS issue or some kind of firewall problem. Or maybe the router doesn’t have the correct gateways and stuff configured. But I don’t know how to validate all my settings. Any ideas how I can troubleshoot this?

pseudo blade
#

Have you considered sidestepping the problem entirely by just setting up a virtual AP on your router, setting it to station/client mode and connecting to the upstream router with NAT?

vale storm
pseudo blade
#

Not according to your diagram you're not

vale storm
#

In my text I'm specifying that my laptop acts as a wifi-to-ethernet bridge.

pseudo blade
#

Your diagram talks about a wifi-to-ethernet bridge, with the laptop acting as a station

vale storm
#

Maybe I worded it the wrong way.

pseudo blade
#

If the laptop is a station, the above link applies

vale storm
#

Maybe I meant ethernet-to-wifi bridge?

pseudo blade
#

Yes

vale storm
#

I don't know which way around those things are specified.

pseudo blade
#

See the above link

#

It's because you can't bridge a network to WiFi from a device acting as a client without some meddling

vale storm
#

The laptop is connected to the network via wifi and supplies my own router via ethernet.

pseudo blade
#

I have acknowledged my understanding of this multiple times

#

That's why you're having problems

vale storm
#

I'm sorry, I'm not a native speaker, maybe I'm misunderstanding.

pseudo blade
#

You are using a pure bridge on the laptop between the interfaces

#

Doesn't work

vale storm
#

Yeah, so it works when connecting another computer to the bridge but not with a router?

pseudo blade
#

No.

#

Devices which are not the laptop connected to the bridge will not receive traffic back

#

Because of differing MAC addresses

#

There are ways to work around it, but you likely don't have access to them bar setting up NAT on the laptop

#

But doing it on the router is more sensible

vale storm
#

But I connected a PC to the Ethernet side of the bridge and did receive packets.

#

I have no access to the host router of the dorm network.

pseudo blade
#

Yes

#

You received packets from the laptop, correct?

vale storm
#

So the packets did get routed

from Google
[...]
to the gateway of the dorm network
to my laptop (via wifi)
to my PC (via ethernet).

vale storm
waxen scroll
#

your design is too complicated

rocky badge
#

@waxen scroll @clear igloo I'm gonna reverse engineer this control API...

clear igloo
#

Nice, what for?

waxen scroll
#

🤔

rocky badge
#

its not that hard but its all through WebSockets

#

Crestron

waxen scroll
#

why not ask them for the manual

rocky badge
#

There is none

willow wigeon
#

Is there a noticeable difference between wifi 6 and 6e

clear igloo
#

in terms of what?

#

speed and latency within about 15-20 feet of the AP or router?
Yah
Beyond that? not really

sudden kayak
#

6E is crazy in like an ideal situation

#

like actually getting gigabit over wifi

#

but you have to be super close

green coral
graceful orchid
#

guys i have a serious problem , i broke my tp link archer c20 trying to flash openwrt , now am trying to flash original fremwere using tftp , it accepts the firmwere but reboot in same state 🥴🥴🥴

pseudo blade
#

Do you have access to the UART serial console?

meager ginkgo
bold drum
#

So it begins...

vast shard
#

All of my network cable are attached to fake 8E

vestal barn
#

trying to setup a server rn and for some reason i can connect to port 8080 but not port 443 even though both are being listened on and both are enabled in firewall. when using tshark to examine the packets i noticed that on port 443 after getting the syn it sends a rst/ack instead of a syn/ack like on 8080. no idea why and looking for help

paper valve
#

Is https enabled on your server?

peak cloak
#

Someone scanned your IP probably

#

Pretty normal

waxen scroll
vestal barn
jaunty fable
#

Needs more work. Waiting for more things. Another patch panel, Ethernet cable to do custom length cables, and a power distribution box.

What do you guys think from that stupid panel that was there before

#

It's still messy, but hopefully in the next month or two I'll have more time to re-do the wiring

willow wigeon
#

Is wifi 6e worth it over wifi 6? (Ping on reply thx)

cobalt iris
willow wigeon
#

Worth like 20 extra bucks?

cobalt iris
#

I'm still using 2.4 and 5 because I don't really benefit from the higher ones. The only things that use the wifi is my TV, phone and my cameras

#

Plus your devices connected to it would have to support it to actually benefit

carmine moss
#

If you not gonna swap it in 3 years I would say get 6e over 6 but depends a lot over your location

willow wigeon
small glade
#

Probably a very stupid question but can't find a straightforward answer. How do you forget a wifi network in command line only Linux? I'm repurposing an old laptop as a server and for ease of setup I had set up wifi during Ubuntu server install but now I want to use it on ethernet only and not have it communicate over wifi that might take away bandwidth from other devices

small glade
reef dagger
#

or you use iwd , iwd is perfectly easy to use

main tartan
#

Any advice on ubiquity gear for a three story concrete house?

meager ginkgo
#

U6-IW

#

in every other room if you can afford it.

#

Concrete is horrible for WiFi

main tartan
#

Oof alrighty, so a mesh system probably won’t suffice?

meager ginkgo
#

Probably not.

#

What country are you in?

main tartan
#

The Netherlands

meager ginkgo
#

if you have coaxial cable in the walls you can use MoCA

#

and get a 2.5 gigabit Ethernet link

main tartan
#

No clue if we have that, we just moved in here. We have a coaxial plug in the living room. But none upstairs

meager ginkgo
#

Ah. You can try a mesh system but I would think the concrete walls would seriously decrease the signal

#

your best option is probably running CAT6

main tartan
#

Would love that, but my mother is like: Nope, not gonna drill into any walls. And I don’t want any visible cables going up the stairs.

meager ginkgo
#

See if you can get a WiFi 6e mesh system

#

The increased bandwidth should help a bit

#

buy it from somewhere you can return it to if it doesn’t work out

main tartan
#

Alrighty, I’ll give that a try. Thank you!

meager ginkgo
#

no problem!

peak cloak
#

To hide them

ivory birch
#

yo

#

anyone knows how to fix my shitty wifi? i live on a school home, and there is only wifi, so i had to buy a usb wifi adapter

#

but my internet is slow af and when i play rocket league, im lagging like crazy

#

is it better to buy a pcie network card instead of a usb adapter?

#

or is there a fix

cobalt iris
#

Could use a wireless router and use it as a repeater then wire straight into it. This would basically allow you to place it somewhere where the signal is better without moving pc

#

Usb wifi dongles usually suck

#

Or use a repeater with an ethernet out port

urban narwhal
#

hey umm does anyone know how to get rid off ip conflict warning?

urban narwhal
#

never mind i fixed it

tall zodiac
main tartan
tall zodiac
#

Ok

#

KPN is roling out fiber in the netherlands slowly so ask them what you have

main tartan
#

We have copper temporarily, they will be connecting fiber here at the end of November.

#

They have disabled copper in this area altogether.

#

But the house we bought used to be rented.

#

The last person that lived there was over 70 y/o, so they refurbished the entire house. But I think she didn’t use internet at all.

tall zodiac
#

Yea since your getting fiber in november ask kpn about their line of accespoints

main tartan
#

They do provide mesh network points. Problem is, you have to rent em.

#

And they aren’t that great

tall zodiac
#

Yea they changed it

#

They used to have wired ap's

main tartan
#

Sadge

#

In our old house we had wooden floors and brick walls, so one wired AP connected to our router & modem was enough to provide a stable connection throughout the entire house. Even on my room in the attic we still had 200Mbps.

#

Not perfect, but certainly good enough.

tall zodiac
main tartan
#

Sure, but I’m off to work. So it will be a while before I respond

#

(Internship)

waxen scroll
glacial linden
#

can ufw be used to deny connections to/from a specific user?

#

@peak cloak Here... In rules.v4 I can specify a rule like this to drop connections from a specific user

#

but this is iptables v4 and I dont know how to make these rules for v6 too... Was thinking if ufw can be used for this instead

peak cloak
#

Don't think so

#

I've never had the need to block things based on user

glacial linden
#

In this case, the minecraft server itself runs through tunnels (which are setup on all my friends' end devices). Minecraft server doesn't really need to connect to internet to function (have to keep it in offline mode since it's behaving as LAN-Only mode, logically)

#

I've always kept things as restricted as possible when it comes to networking because if hypothetically, log4j exploit was tried on this server over internet a few years ago, wouldn't work... Also I'm using a lot of mods with fabric and don't want any potential security problems

tall pagoda
#

Does someone know where i can buy 5G NR usb dongle for pc, antenna input is also an good option

peak cloak
#

And that'll do it

#

Yeah you can can restrict every single little thing, but for me it's impractical

glacial linden
#

This current vps is for personal use only, atmost letting a few friends access it in my area (similar subnets) so it's easy... Next setup I'll try won't be shielded by vps cloud firewall like this so

Has anyone used fail2ban?

waxen scroll
#

yes, a long time ago. I couldnt tell you how to configure it right now

#

you should probably migrate to certs rather than passwords anyway

sudden kayak
#

it's a good thing to have set up (if nothing else to reduce noise in your logs)

#

but you should have either cert auth or at least pubkey auth and disable password login completely

#

if you disable password login, you really don't strictly need fail2ban

#

can't really brute force 4096 bit rsa

#

well, if you can you have more exciting things to do

thick minnow
#

i need some help with speeding up steam download speeds

#

does anyone know any tips

sudden kayak
#

connect by ethernet

#

get a faster internet plan

flint matrix
#

Download more ram

soft kraken
hardy python
# thick minnow i need some help with speeding up steam download speeds

Downloads depend on certain things like: Internet speeds, storage speeds, and CPU handling. Not sure what your specifications are but use this as an example

If your download speed from your ISP is 1Gbps, you are going to get that throughput from your ISP. I know in my state, probably within the United States, ISP's can claim 80% of 1Gb is 1Gb. However, if your storage media within your computer does not read or write data at 1Gbps, you will not get the performance and speeds from your network. You will be hardware limited due to the slow HDD or shitty SSD. Make sure that your ethernet controller can support the speeds you are wanting. At home I have two different ethernet controllers on my computer, one of them is the motherboard ethernet controller that can handle 2.5Gbps and the other is USB3.0-to-ethernet, which can handle 1Gbps.

clear igloo
#

rip

unborn sluice
#

is that even legal

clear igloo
#

If sanctions are forcing their hand then maybe?

#

But I know for Umbrella and other services they had announcements for months as to when they would cut things off

unborn sluice
#

As much as I hate wars and sht,
This is why we no longer own things.
we may have the hw but they can mess with the software

meager ginkgo
waxen scroll
#

thats fine if I have to buy a perpetual license for a switch but nothing that expires and nothing cloud managed

#

they tried pitching to me that I should make my datacenter cloud managed

#

asked them if they're nuts

#

@clear igloo they put ACI in before I got here. I would have said no to that too

#

looking at retro I think we are all agreeing that it was a mistake

#

😄

#

really the whole nexus 9k line is just a mess

#

bug after bug after bug

pseudo blade
#

Sweeeeeet

#

Just spent an hour breaking my project router's config so I could test my Python script for reconfiguring Quectel modems for use on RouterOS from blank config

#

So now all I need to do is put a brand new modem into a brand new device, let it boot, run the Python script and it's neatly and fully configured

pseudo blade
clear igloo
waxen scroll
#

we dont. it fails at basic BGP, layer 2, and other things

clear igloo
#

You're doing it wrong! /s

waxen scroll
#

ive never had to worry about a cef table until I started dealing with n9k and NCS

#

oof

#

or COPP

pseudo blade
#

Got sent a job posting today for a hospital and they want VXLAN

#

I'm at a loss as to why any business that isn't an ISP or a public cloud datacenter would need VXLAN

waxen scroll
#

SD-LAN probably

#

either they did it by hand or just threw it in there because

#

if by hand its not software and they did spine/leaf at the access

clear igloo
pseudo blade
#

Reading about it now

waxen scroll
#

my pal @jaunty talon went over kill and did the same at his job

#

reddit says run away from hospitals tho, so I would pass

pseudo blade
#

NGL my previous job with a US cybersecurity company laid me and a ton of other people off in August and I've been getting silence back from most stuff I've applied to since, so while I'm not broke I just want something at this point before we get there, can always keep applying after and find something else

#

Been applying for whatever I can find, spinning up a side project in the networking+IoT space I might be able to commercialize as a plan B, diversifying my skillset a bit to help with that and/or look better on a resume

#

Every news story about a lack of skilled IT people in aus makes my blood boil a little

jaunty talon
#

VXLAN+EVPN is awesome, no more spanning-tree

pseudo blade
#

Because it all terminates at the access level?

jaunty talon
#

yeep

rocky badge
#

@clear igloo 👀 I love networks

#

Controlling all of this AV stuff over the network

jaunty talon
#

Our whole network (dcs + office) is evpn+vxlan (not same but separated with routing)

rocky badge
#

We're probably gonna have to figure out video over fiber soon

pseudo blade
#

I guess it's cool but it does sound a tad overkill for a few hundred seats

rocky badge
#

but that should be easy since we're an all IP workflow

jaunty talon
#

at dreamhack we did a lot of video over fiber and ethernet :)

#

and they still do!

waxen scroll
pseudo blade
#

I know the real money's in the US for those kinds of things

waxen scroll
#

also they pay

pseudo blade
#

Unfortunate, but expected.

sudden kayak
pseudo blade
#

It's an interesting debate, that one

#

NBN Co. in Australia used to not overprovision but have since consumer protection authorities decided that users should be able to get the throughput advertised in speedtests and real-world workloads and not just raw throughput of the promised speed.

#

It's somewhat intuitive to me that advertised speeds offered are the connections raw throughput but it isn't to a typical consumer.

#

They pay for gigabit and only see 940mbps

sudden kayak
#

i mean, it depends on the ISP and the quality of CPE they're willing to provide 🤔

#

XB7/8 have 2.5Gbps and can definitely handle routing that, even on the 1.2 Gbps plan that's really provisioned around 1.5Gbps

#

And have some headroom for future stuff but I'm not sure if i can talk about that lol

nocturne kraken
#

Could someone briefly explain DOCSIS to me? I'm rather networking illiterate; is it just another name for a HFC system where fibre is sent to the cabinet and it's regular old coax to the home, or is there fibre and coax going on in the same place or what???

sudden kayak
#

DOCSIS is specifically the protocol for internet as an additional service on top of coax cable tv systems

#

currently HFC is usually the way it's deployed but afaik that isn't inherently part of the standard

#

but... I'm also not aware of any other common ways that HFC is deployed so i guess you could say it's another name for it

#

generally HFC networks are fiber to the node

#

but that's not mandatory

nocturne kraken
#

thanks!

nocturne kraken
#

here's my deal:

i'm in the uk. up until now, all isps serving our property have been using this openreach connection; fibre to the cabinet, shitty coax to the home. despite the fact that the green box is right outside my semi-detached neighbour's, this means it'll never exceed 25mbps down and about 6 up. it usually stays around 20-22 or 23 down, can't recall ever seeing it break 27.

but virgin media just charged in and is offering us their Gig1 plans which would give us gigabit. they told us it was 'fttp' but i was like... is docsis really fibre? or are you doing something else, or is this just the shitty marketing tricks we've come to expect from isps... 😅

i'll be able to talk to this rep again soon, maybe tomorrow or a bit later...

#

regardless, i imagine it will perform better than or equivalent to my current connection in regards to ping and packet loss...

peak cloak
#

But dociss is a coax protocol, so it's not fiber

thick minnow
#

what vpn do you guys recommend? im looking for one where I can also get a residential IP. I see so many videos but ik those people are just spammin them so people use their code or wtv

sudden kayak
#

i can't imagine they'd get away with actually lying about the nature of the service to that extent

nocturne kraken
#

true which is why im confused. i'll confront em about it.

nocturne kraken
pseudo blade
#

It basically means there is fiber to a node serving a few hundred to a few thousand premises, but after the node it's Coax

#

It's no more equivalent to fiber to the premises than VDSL is

#

Calling it a fiber connection is misleading.

nocturne kraken
#

idk how they're doing it then, they actively said it was fibre to the home as opposed to our current fttc lol

pseudo blade
#

It can nonetheless still be faster than cellular or VDSL offerings

#

Much faster.

nocturne kraken
#

if im not mistaken we're currently using adsl but i can't recall and my overall knowledge is really hazy

pseudo blade
#

FTTC would be VDSL

nocturne kraken
#

probably that then lol sorry

#

i mean if virgin are saying their stuff can supply gigabit thats obviously a huge step forward regardless

#

as i mentioned we're stuck at like 20 down 5 up

pseudo blade
#

It can under certain circumstances

#

Easily over 100mbps down

nocturne kraken
#

lol nice

pseudo blade
#

DOCSIS 3.1 offers up to theoretical 10 gigabit speeds down 1 up but it's shared over all subscribers on your node

nocturne kraken
#

hm right

#

tbh i really doubt many people in our neighborhood are tech savvy enough to care about their internet and switch over

#

theyd probably go for their ~100 megabit plan if so

#

im presuming then if i get a gigabit plan that just means prioritization

pseudo blade
#

Not necessarily

#

Just a higher max throughput

#

It wouldn't do for high bandwidth subscribers to ruin everyone else's experience

#

If anything I'd deprioritise them, better for a gigabit service to degrade to 800mbps during peak load than 100 megabit services not loading webpages

nocturne kraken
#

so, all things considered, would this be better than my current situation?

pseudo blade
#

Probably, in terms of throughput

nocturne kraken
#

would packet loss be a problem?

pseudo blade
#

Do you need perfectly consistent throughput and reliable connectivity?

#

If so home internet is not for you

#

It's generally adequate though

nocturne kraken
#

fairs

#

thanks for all the help!

pseudo blade
#

No problem

sudden kayak
#

like i said, idk UK laws for sure but if they're explicitly stating fttp and they're actually using the existing HFC network, that would be a slam dunk false advertising or breach of contract etc case

#

or whatever the term would be in the UK you get my point

#

either way if they're advertising fttp gigabit it's gonna be a massive improvement over your current connection

#

the other catch could be that it's not actually available at your location, unfortunately the automated address service checkers can be wrong

tulip basin
#

Hello, recently I bought a Xiaomi AX3000 to have it as my main WiFi in the house.

I connected an ethernet cable from my Switch to the Wan port of the Xiaomi.
To the switch is also connected my Modem/Router (ZTE ZXHN H108N) which provides internet (wifi disabled).
And lastly my PC is also connected to the Switch.

The Xiaomi can be used as an Access point OR a router. I use it as a router because it has a very nice application for managing everyone who is connected.

My problem is, because the Xiaomi has its own DHCP, my PC has no access to the devices connected to the Xiaomi eg printer and vice versa.

Disabling DHCP and changing to a normal rj45 port on the Xiaomi works but I lose access to the managing app.

Disabling the DHCP on the Modem/Router doesn't seem to change anything at all.

Can anyone help me or direct me to a solution, thank you.

thick minnow
peak cloak
#

It's not longer a single LAN

#

Hence your PC can't see the printers since they are behind the nat of the Xiaomi

tulip basin
peak cloak
#

You can also put EVERYTHING behind the Xiaomi

#

But you should only NAT at one point

#

With everything behind Xiaomi you still have double nat but you can resolve that by setting ISP modem/router into bridge mode

tulip basin
peak cloak
tulip basin
#

Now that I think of it again I can't bring my modem/router to the Xiaomi, the service outlet is too far. FML

thick minnow
grim flicker
#

With a dsl service is the router associated with the account or the physical address?

cobalt iris
#

Typically both. They know what modem you're supposed to be using even if it's your own and if it's plugged in at a completely different address it won't work

rocky badge
#

@peak cloak @waxen scroll Damn, these boxes are pushing 686Mbps over the network for a 4K60 signal 👀

pseudo blade
raven falcon
pseudo blade
#

Oh nvm that's probably their source port

#

What router is it so I know what I'm looking at better?

raven falcon
#

Sorry for delay! it's a NETGEAR Nighthawk

cobalt iris
#

Is your internet running slow or dropping

raven falcon
#

i have been being blocked from google lately

#

and sometimes they make me put a captcha in, just to google something

#

i've changed my WAN IP and i'm still getting these:

celest bridge
#

hello i need help pls linusPain

#

i cant figure out if -70dbm is bad or not

#

i duno wifi stats but i need help is this good or bad?

celest bridge
#

nvm

unborn sluice
#

Ok

main tartan
#

Hi there, I’m planning to purchase mesh wifi nodes. But I can’t decide between these two options:

  • 2x UniFi6 Mesh (€450)
  • 3x TP-Link Deco XE75 Mesh Wifi 6E (€460)

What would be the best option for a three story concrete house?

||Yes, I know a wired connection would be better. But my mother doesn’t want any holes drilled into the walls. And we moved to a house with concrete floors and walls.||

pseudo blade
#

Failing that you can just leave it broken until everyone's annoyed enough to reconsider on getting the place properly wired up :P

clear igloo
#

I'd almost lean to the 3x node pack for better coverage with the concrete and whatnot

pseudo blade
#

If you have an existing router it's probably worth seeing where coverage is OK from that so you can decide where a second/third node might go

main tartan
#

Good idea

pseudo blade
#

I highly recommend doing your testing on 5ghz only if you can because that's what you usually use for backhaul on a mesh router

main tartan
#

Thank you :)

pseudo blade
#

No problem.

#

Oh there's a potential gotcha for the TP-Link Deco you listed - the backhaul is WiFi 6E rather than WiFi 6, so the mesh APs have to be closer together (6ghz vs 5ghz, higher frequencies don't penetrate walls as well)

#

Depending on how your testing goes if you do need 3 of them, you might actually be better off picking a slightly lower-end mesh AP instead using Wifi 6 for backhaul

main tartan
main tartan
#

I just measured the WiFi connection in all rooms. I’ll put it in a nice graph in a minute and share it.

main tartan
#

@pseudo blade

pseudo blade
#

lol yeah this is not a good time to use a stacked graph

#

Yeah no idea where these rooms are relative to your AP, but most bar "bedroom 4" don't look too bad

#

What's your target speed?

main tartan
main tartan
#

Cuz we’re getting fiber optic in 1-2 months.

pseudo blade
#

Yeah mesh APs should actually work pretty well in that case

main tartan
#

Alrighty thank you for all your help!

main tartan
#

Ohhh wait

main tartan
pseudo blade
#

It wouldn't solve the attenuation problem, so not really

#

It's also not great for performance if you have a client at the edge of coverage trying to use as much bandwidth as possible

main tartan
#

Ah okay

#

Ty for all your help

cobalt iris
#

Anyone Network+ certified?

hardy python
#

Studying for it.

cobalt iris
hardy python
#

No, I am studying using the CompTIA guide

#

Then after studying I take some lab questions or multiple choice questions

cobalt iris
#

Oh. I'm using YouTube lol. Then gonna do a practice test

#

I'm a visual or hands-on learner. Reading something doesn't work

main tartan
south mist
versed seal
#

Could someone help me out with an internet issue im having?

cobalt iris
zealous ledge
#

hey guys anyone here have any experience with google nest wifi

bitter thistle
#

high download, slow upload.

im not sure why this is, my wifi provider has it unlocked, but im being capped at what seems 27mbps. on upload. whilst my download 1g

bitter thistle
#

yes i do use ethernet

cobalt iris
#

I mean your isp

bitter thistle
#

ohh

#

no its not, cable is a different provider

cobalt iris
#

Who your isp

bitter thistle
#

im in the us, we have windstream rn, and dish cable

cobalt iris
#

So you have fiber?

bitter thistle
#

yes

cobalt iris
#

Did they promise fast upload

bitter thistle
#

yeah they do

#

With fiber-optic internet, download and upload speeds are identical, which is referred to as symmetrical bandwidth. This ensures that whether you're uploading or downloading data, you'll enjoy the same fast internet speed you've been promised with your internet plan.

#

"identical"

cobalt iris
#

Did you try unplugging it

#

There should be 2 fiber lines then. 1 up 1 down. I'd check the ends

#

Unless it's bidirectional

#

If it stays slow I'd contact your isp

cinder plume
#

Idk if anyone is in Australia but,
Telstra internet WTF

cosmic steeple
#

What’s The best premium cad 6 10GB weatherproof cable on the market.

cobalt iris
#

trueCable seems pretty good tho. I have 1000 feet of it

#

Plus depends on if you want to terminate it yourself

austere acorn
#

is it worth running a lan cable?

pseudo blade
#

Is wireless insufficient for your needs?

#

Is running a cable of the required length better or worse than dealing with a wireless setup instead?

cobalt iris
#

You need a router

#

Unless the modem has a built in router you don't connect the modem to the switch. It should go modem - router - switch

#

Have you already tried using it?

#

Depends on what kind you have

#

Usually RJ45 ethernet cable

#

You connect from the router straight to the switch

#

If your router and switch have SFP/+ you can use that too but the most common for homes is RJ45

#

And unless your modem is an all in one modem/router then the modem isn't the router

#

Could be your port. 800-900 is usually all you'll see on a 1gig port. You won't get the full 1gig

#

Basically yeah. Unless your modem or router is also limited to 1gig ports

#

idk what you mean by do your own fiber

main tartan
#

Can you use Ubiquiti’s Unifi 6 Pro with PoE adapters for power while connecting them wirelessly to your router? (Like a mesh network)

I kind of want to get those instead of the Unifi 6 Mesh because they are cheaper and run less hot.

main tartan
#

Just pulled the trigger, went with the safe option of the U6 Mesh.

zealous ledge
#

egg router

#

we ordered 3 more of these

#

wifi 6e apparently

neat whale
#

Why is my RAX 43 Netgear Nighthawk not letting phones connect, but letting anything else connect?

#

Also most of my smart devices can't connect either. Although the router claims they're connected. Yes, we've tried rebooting it dozens of times.

cobalt iris
zealous ledge
#

wintergreen mint flavored wifi router

cobalt iris
#

They look smaller in the pics

#

I was thinking like a tuna can size lol

neat whale
waxen saddle
main tartan
small shell
#

Does anyone body have a recommendation on ethernet cards for a desktop. Preferably under 30 dollars US.

peak cloak
#

Anything Intel is fine

#

You can buy nics used too for cheap

small shell
#

Ok, thanks

cobalt iris
#

Also depends on what speeds you want. If you want a 10g one but go with anything older than the intel X550-T2 wont support 2.5g or 5g

#

If u want 2.5g then realtek 8125 or intel i225-v are fine

small shell
#

Mine internet is only a few mb/s. I think there may be something wrong with the ethernet port on my motherboard (not driver related) and I was looking for a card to see if it fixes it

small shell
peak cloak
#

Have you isolated the issue to be the adapter?

#

Not the cable?

small shell
#

I have not guaranteed that it's not the cable, but it's been used with other devices in the past and didn't have this problem

small shell
#

Just tried another cable, same speed

lean pebble
#

Someone know how to configure ipv6 on opnsense?
I have opnsense VM on hetzner dedicated server under xcp-ng virtualization (fork of xenserver) ipv4 working perfect and ipv6 can ping other VMS that have ipv6 IP but can't ping to the wan and the internet.

How can I fix it?
I have /64 subnet from hetzner.

pseudo blade
lean pebble
pseudo blade
#

Ok, so you're using DHCP on the VM and it gets its IP from upstream?

lean pebble
#

Yes

pseudo blade
#

And you have some addresses assigned to you from a pool of Hetzner's public IPv4's and your pfsense router is bridged to your server's internet-facing ethernet port

#

And you have a /64 allocated to your server on ipv6

lean pebble
#

Yes, opnsense ipv4 Public IP address is good.
Yes I have/64 subnet of ipv6

pseudo blade
#

And that /64 is assigned to the MAC of your server's internet-facing port?

lean pebble
#

Yes it's assign to the same Mac address of the ipv4 Public IP

pseudo blade
#

Is the ipv6 address of your pfsense router in that /64 and dynamically assigned?

pseudo blade
#

One for pfsense, one for the hypervisor? Which one is the ipv6 block assigned to?

lean pebble
#

Except the other ipv4 I have that allocated to different VMS

#

Detailed info:
Hetzner ipv4: 1.2.4.5 have his own virtual Mac address that allocated to the VM network card and configured under wan as spoofing Mac address.
Hetzner ipv6: /64 subnet that not yet configured on my opnsense.
Having troubles with configuring it on opnsense.

#

Hetzner support static / slaac configuration for ipv6

pseudo blade
#

Are you trying to use SLAAC on pfsense?

lean pebble
#

Yes

#

I have tried both, slaac and static but without success

lean pebble
jaunty fable
#

I still have some cables to make. But I’m proud of this…

peak cloak
#

@sudden kayak how's the er605 router. I'm considering getting it to replace the er-x

#

I need good v6 support, vlans, and static routes mainly

#

thinking about a fortigate as well...

#

@rocky badge you have one right?

rocky badge
sinful ice
#

For bulk cat7, do I have to use gg45 ends? And if I do where do I find them, because they seem to be a mythical being only heard about in legend.

meager ginkgo
#

Also I wouldn’t buy CAT7 in the future

#

CAT6a is the best Ethernet spec I’d go up to

sinful ice
#

It was cheap. I think I know why now. Pain in the ass

meager ginkgo
#

^^

#

Shielding is just not worth it 99% of the time when fiber exists

lean pebble
# peak cloak thinking about a fortigate as well...

Don't buy fg 60d/c heating like an oven I have 2 here that I ditched and moved to mtik hex-s at home.
Fg is good only in newer versions, I have worked with it for 2 years with 600e I think it was pretty good and stable.

cobalt iris
#

Wat

#

You said you have fiber

#

A coax cable modem isn't fiber

#

You won't get full speed with a 1 gig port

#

And you said they are using coax

#

You need a faster network card or router

peak cloak
#

You can't

#

There's protocol overhead as well

cobalt iris
#

If you're saying you want to run your own fiber line to the nearest node outside you can't

peak cloak
#

No

cobalt iris
#

What router do you already have

peak cloak
#

Not at router level

#

ISP rate limiting is done not at your house

cobalt iris
#

He's wanting new hardware to get the extra 100mbps lol

#

Can you take a pic of it and the connectors

#

I wanna see the ports

#

The ports are limited to 1gig

#

So 900 is normal

#

I don't see it happening lol

#

Crazy they giving 1000 up over coax

#

That's about what you'll see

#

You won't always get your max speed even with faster hardware

peak cloak
#

that's normal

sudden kayak
nimble sable
#

question: what happens if i plug in a 3Amp plug into my 3.5Amp requiring AP?

sudden kayak
#

gigabit/1000Mbps is the link rate, there is overhead in the protocols (at every layer) so 920-940Mbps is the fastest you can get in real life with actual IP traffic

#

you can try to find a router with 2.5GbE (the next step up) which will be massively more expensive to get you 80Mbps more throughput

nimble sable
sudden kayak
sudden kayak
sudden kayak
nimble sable
#

oh yea im 1 dude, no way i'm going to overload this monstrosity

sudden kayak
#

if you're lucky and you have a direct point to point connection and do an artificial test with something very low overhead, yeah you might hit 1000 but that's not gonna happen in most scenarios

nimble sable
#

$60 for a bloody power adapter wtaf

sudden kayak
#

or PoE for more convenient & easily hidden wiring

#

but that's a bigger investment

nimble sable
sudden kayak
#

i think they can do up to 60W yeah

#

oh wait maybe not

#
hollow marlin
sudden kayak
#

I'm sure there's something that does 2.5 and poe++ but maybe only in a big ass switch

sudden kayak
sudden kayak
hollow marlin
nimble sable
sudden kayak
nimble sable
#

sigh i'm torn...shd i hook this up? alternative is, i think i have an old AP in storage i can dig out for a week

sudden kayak
#

i mean it's not gonna blow up if you try it for 5 minutes

nimble sable
#

whatr is...what kind of nonsense adapter has an analog knob for selecting voltage

cobalt iris
#

I have 1200 plan from Comcast and spent $500 on a 2.5g x8, 10g x2 switch and a quad 2.5g card for my router because I was tired of only getting 900ish lol. Now I get 1200-1400

#

But it actually wasn't a waste since the plan is going to be 2000/200 eventually

unreal valley
#

I have 1gb/1gb and can upgrade to 5gb/5gb max. I was looking at different router options to manage my home lab in my rack. I've looked into Ubiquity but I didn't know if that was the best option for me because some of their products are designed for cameras which I wouldn't necessarily utilize. I also didn't know if it was worth it to try and install PfSense on a system and use that instead with a dual 10gb nic.

#

I have a downside in which my provider installs boxes that are modem/router aio in which I would have to passthrough whatever router I choose

#

Does anyone have any suggestions?

nimble sable
#

can someone convince me thatt MU-MIMO is real?
because i have yet to see evidence of this

peak cloak
#

It is

#

How well it works in your environment is another question

cobalt iris
nimble sable
# peak cloak It is

it does what exactly? allow me to simultaneously use multiple streams? because...that's not a thing that is happening

#

i've loked around i am yet to see ANYONE post a screenshot of 2 2x2 devices connected to a 4x4 AP and BOTH getting 1Gbps AT THE SAME TIME

unreal valley
cobalt iris
#

Upgrading it soon tho lol

#

The switch basically just adds more ports. But I have a managed switch which allows more functions like vlan, link aggregation and more

nimble sable
#

can someoen please help me get MUMIMO to work ? this is like the 3rd AP i've tried

unreal valley
#

Do you have software installed on the Dell poweredge?

cobalt iris
cobalt iris
unreal valley
#

The link aggregation was for inter-network communication like a file server everything would refer to and possible test PXE boot

cobalt iris
#

Then yea it would be useful because you'd increase your overall available local bandwidth

#

Thats mine. But it's all in a server rack other than the pc and ap

unreal valley
#

What AP do you have?

cobalt iris
unreal valley
#

Ok. Cool. Any problems with it?

cobalt iris
#

I haven't used it yet lol

#

Won't be home til Nov 21st

#

I plan on upgrading my router to a Dell Poweredge R330 with 4 x 3.5inch bays and slap 4 16TB hard drives in it and use it as my new router and NAS

unreal valley
#

Lol. With PfSense, do you know of any issues that would cause that? I was attempting to run it behind the existing network to test it

cobalt iris
#

Current cpu is from 2011 new one will be from 2017

#

What did you have the other port plugged into

#

With a pfsense router you need at least 2 ports. 1 is WAN which your modem goes into and the other is LAN which your switch goes into or another router but preferably a switch

unreal valley
#

My current plan was to use a dual Xeon x5550 with 48gb ram. I didn't know if that was overkill. 2 1gb integrated nics, 2 port 10gb nic, & 4 port 1gb nics

cobalt iris
#

You don't need the ports on the server really. All you need is 2 and go to the switch unless you want link aggregation going on

#

I have 2 1g and 4 2.5g but only 3 2.5g are being used

unreal valley
#

Do I need to tell it which port it should should be excepting wan and which ports are lan?

#

Or does it auto-negotiate?

cobalt iris
#

I've always had ti manually do it

#

During thr setup it will ask you which is wan and lan

#

There's an auto detect but I never got it to work so I just manually type one of the options it gives and hope it's right. If it's not right I change which one is plugged in until I figure it out lol

#

It names them like in0 in1 or re0 re1

#

For like intel, realtek, and Broadcom is something like br0

#

Butttt it doesn't know where it's actually located. So if you have a 4 port it can literally name them 3,0,1,2

unreal valley
#

Ok. I'll try manually do it manually. One nic is an Intel; the other is a HP

cobalt iris
#

And common ones to use are intel and Broadcom

#

I actually use realtek even tho it doesn't play well with pfsense. As long as you install the proper drivers it's fine tho

unreal valley
#

Does pfesnse have a gui I would be able to log into?

cobalt iris
#

A web gui yes. You'll have to complete the setup tho first

#

There's lots of videos on how. Level1techs might have one

#

Wendell is one smart man but says things that are way over my head lol

unreal valley
#

Ok. Will look into it

#

Thx

#

Do you think the hardware is alright to use pfsense or too overkill?

cobalt iris
#

Kinda old cpu

#

While desktop/server cpus are good at being used as a router it's not what they are designed for. So typically the newer/faster the cpu you have the better it can handle traffic. Wendell did a video where they used an i5-12400 and he was impressed because it's performance cores are good

unreal valley
#

That's what I have to fit a 1U. Was trying to have it be its own system. No hypervisor. The rest of my systems are dual socket is 2697 V2s & V3s. Other than that I have gaming CPUs but I didn't know how to fit that into a rack if they are already in PC/gaming cases

cobalt iris
#

I'd use thr 2697s

#

Run proxmox or whatever hypervisor and virtualize pfsense.

unreal valley
#

I didn't know if that would cause issues. Thought I heard from somewhere that it would so I've been focused on the older hardware I have

cobalt iris
#

I havent personally done it yet but I don't see any issues lol

unreal valley
#

What is a good mix then of cores vs ram for 10gb speeds

cobalt iris
#

I'll be running Unraid with pfsense

#

You can just give it all cores and 8-16GB RAM is plenty. Storage doesn't really need much

unreal valley
#

I tend to use Proxmox because it has pretty seamless integration of CephFS for storage pools

cobalt iris
#

May want to disable hyper threading tho. It can cause issues sometimes

unreal valley
#

Duly noted

pseudo blade
alpine shore
#

Hello, i personally use a virtualized pfSense as my home router. I've run into some bottlenecks which i've mostly resolve doing pci passtrough. You can also in some case suffer from degraded performance because of spectre and meltdown mitigation. You can run over that simply by putting hw.mds_disable=0 into your System Tunables wich are located in System > Advanced > System Tunables

Sorry if my message is inconsistent, my english is broken 😅

pseudo blade
alpine shore
#

If mitigated on the host there shouldn't be a problem i guess

thick minnow
#

how much would cost 200m of Optical Wire trough citypath

nimble sable
#

so here's something...my tablet (Lenovo Duet 5 Chromebook) is ONLY able to get 700Mbps whereas my phone using the same wifi network, same speedtest etc can get over 1Gbps

#

any idea why? that's an odd thing to happen (they're both on 5Ghz)

#

ok guys i have smthg weird happening which i CAN explain but that's not how i was taught wifi works

meager ginkgo
#

different antennas get different speeds

#

Same reason I can pull 940mbps over WiFi on a surface laptop go but only 550 Mbps on my MacBook Air

nimble sable
# meager ginkgo WiFi antenna

here's what i'm seeing. it gets weirder
1 device can connect to 2x2 160Mhz channel at full width on 5ghz. If an attempt is made to connect TWO devices for some reason they seem to BOTH pull down to 80Mhz channels and they both SHARE a single 2x2 80Mhz bandwidth

meager ginkgo
#

what access point are you using

nimble sable
#

so...what exactly am i getting for the extra 2x2 on my AP?

nimble sable
meager ginkgo
#

I’m not sure with that access point tbh. It may have something weird going on with the software

nimble sable
#

what precisely do i gain between a 5Ghz 2x2 AP vs a 5Ghz 4x4 AP?

meager ginkgo
#

if you have 4x4 clients you can get higher speeds

nimble sable
#

assuming i don't own anything that can do more than 2x2

meager ginkgo
#

you don’t really gain much in that case

#

afaik

nimble sable
#

ok so the thing abouut how "mu mimo means one can use 2x2 whiel the other uses the other 2x2" is NOT how it works? cuz thats what the netgear dude tells me and im hearing otherwise from the internets

meager ginkgo
nimble sable
#

same band btw, not 5G hi vs 5G lo

#

this makes sens because triband non 6Ghz APs have 5Ghz lo and 5ghz hi...the only reason they'd do that is to get a full 1200 on two devices at once

meager ginkgo
#

I just know that usually higher bandwidth (2x2 vs 4x4) lead to higher speeds on supported devices

nimble sable
thick minnow
#

for some reason, something is going on with our internet where webpages are slow to load on every device

#

DNS is Cloudflare (1.1.1.1), switching between it and Google Public DNS makes no difference

thick minnow
#

something...seems not correct about this dns time

#

found the problem: our isp's IPv6 is messed up, forced ipv4 and problem went away instantly

#

..or not, this is via PingPlotter. does that packet loss matter? that's the router btw

peak cloak
#

I have the er-x and I have this issue with ipv6 and hardware nat acceleration turned on

#

With it off it's not an issue

#

I did some packet captures and I concluded it to be some issue with the way its handling tcp syn and ack packets. Don't remember the exact reason

edgy ingot
#

I have come into a lot of Cisco networking equipment, there are:
3x2911 routers
1x PoE 24 catalyst 3750G
1x PoE 48 catalyst 3750G
3x2811
1x2P11
2x2921
1x 2960 Catalyst 48
2xCyberPower CSW8RU

Are these of any sort of use? Can they be used for any sort of secondary/home function?

mortal stratus
#

all of it is out of warranty, so no more updated software, they also tend to be more power hungry being older, but depending on your current level of networking understanding, they can make a fun lab to play around with

#

eventually the more power friendly and cheaper optin to leran is to use something like EVE-ng/GNS3/CML to build labs and learn things, but there really is nothing like the feel of real hardware in your hands when starting out

edgy ingot
#

I was in CCNA in HS but never tested into it and didn’t really retain the info well, since it’s been ten years, but was thinking they could be fun, we’re a steal for free in my mind

pseudo blade
#

If you want to relearn networking you will benefit from modern kit anyways, if you want Cisco specifically look at the simulation tools above, particularly Cisco Modeling Labs

vale salmon
#

is there any way for me to connect to my cisco router? i dont have a serial port on my pc (due to the fact that most pc's dont nowadays) and i dont have a cord from rj45 to serial... idk whether i should order a usb to rj45 to use the router?

pseudo blade
#

Is it new enough to have a MicroUSB serial port?

vale salmon
pseudo blade
#

Router

vale salmon
#

no i dont think so

pseudo blade
#

You don't think so? What is the router specifically?

vale salmon
#

i believe its a 860 series

#

its an old one from my uncle he gave it to me so i could learn networking, he didnt use it anymore

pseudo blade
#

I guess you can learn basic networking on one but the 860s kinda suck (2 vlans, yay) and are also very old

#

You can buy Cisco rollover cables that go from USB, or buy a serial rollover and usb to serial adapter

vale salmon
#

the only problem was that i didnt know how to connect to it to access the console, becasue he didnt give me a manual or anything, just the router and power cord.

vale salmon
pseudo blade
#

Go look, idk where you are

vale salmon
pseudo blade
#

I'm sure it's not too hard to search Amazon yourself

#

Your link crashes my client

#

Should work?

vale salmon
#

i just put "cisco rollover cable" in amazon au and found "USB Console Cable USB to RJ45 Cable Essential Accesory of Cisco, NETGEAR, Ubiquity, LINKSYS, TP-Link Routers/Switches for Laptops in Windows, Mac, Linux (Blue)" its the first time ive done something like this before so i dont want to buy the cord to find out it dont work

pseudo blade
#

There's not much to go wrong there

vale salmon
#

ill try it then

#

thanks

main tartan
#

My U6 Mesh access points arrived yesterday. One is sufficient for 2.4GHz coverage of the entire house xD. But imma install the next one when I’m back from work.

hollow marlin
#

That's about expected. Back to your original comment, you will not pull 1000/1000 over the internet on a gig link because as stated, there is overhead involved.

clear igloo
tulip basin
#

Hello, I bought a Xiaomi AX3000. I have it as a router + wifi to connect every device I have to it.

On the Xiaomi's WAN port I connected my modem/router (ZTE ZXHN H108N) also I have disabled wifi on my modem/router since I don't need it.

Do I need to do any configuration since they are 2 routers connected to each other or will it work with no issues at all?

sudden kayak
pseudo blade
meager ginkgo
pseudo blade
#

I really want to like the LtAP mini, I really do https://mikrotik.com/product/ltap_mini

#

But every time I go to use it in a project it falls ever so slightly short

#

It's a totally fine portable router with a PCIe slot and an ethernet interface, and if that's all you want it's a great option

#

I'm trying to offer some basic information about cellular signal to users but RouterOS's permissions are insufficiently granular to offer just modem stats without providing your entire config, and if you want to edit a few basic things you have to expose the ability to edit almost everything

waxen scroll
pseudo blade
#

It's a 4G modem, if users want stats it probably can't reach the backend because it's probably not in coverage range/no sim/troubleshooting

#

But Mikrotik doesn't offer container functionality on MIPS so I can't host it on device

waxen scroll
#

if its open source why not make a page that can be viewed with no login and package your own firmware

pseudo blade
#

Replace RouterOS with OpenWRT or similar?

waxen scroll
#

isnt router OS open source?

pseudo blade
#

No

#

It is built on Linux but the parts that make it RouterOS are closed-source and not distributed separately

#

There's multiple ways to get something together but it's either the hardware's not quite good enough (metarouter on 64mb boards isn't feasible) or it's RouterOS not quite doing what I want to make a product around it (insufficiently granular permissions, container not available on MIPS/MMIPS boards but they only have ARM in long-range radios+nonportable form factors)

#

And yeah providing a second board to run a backend along with this is kinda stupid when the idea is a small portable router with some smarts

#

It has USB but it's power in only and unlike all other products Mikrotik makes with that CPU doesn't offer data lines on its MicroUSB port because the mini pcie slot uses the one usb2 PHY offered by the SoC, and is power in only

neat sage
#

So i know i should know the answer to this but im running a 300 feet run of cat 6 cable from my house to my dads barn outback all inside then running it through conduit to get it out there but my question is do I need a booster on the line before it goes into the conduit or will i be fine with just a switch on the other side

pseudo blade
#

Should be fine

neat sage
#

So dont need a booster correct

pseudo blade
#

No

#

The only possible gotcha is the risk of a ground loop

neat sage
#

Which is what and how do I prevent because all were using it for out there is a router and streaming tv

pseudo blade
neat sage
#

No its the total length

#

Roughly

pseudo blade
#

As long as it's within 10%, spec is 328ft, it's not going to die at 329 feet but it won't be compliant and the further out of spec you take it the more likely something goes wrong

neat sage
#

Ok

peak cloak
neat sage
#

Plastic

peak cloak
#

Because I would be weary of running copper outside because of lightning risk

pseudo blade
#

If you're running cable anyways fiber's actually not much more expensive btw

peak cloak
#

Hmm, I would get shielded wire and ground it

#

Or fiber

pseudo blade
# neat sage Which is what and how do I prevent because all were using it for out there is a ...

Basically when running ethernet cables between buildings you have to be careful about ensuring the cable is isolated so the cable shielding isn't connected to ground on both sides. The actual data pins are usually well shielded against this but the metal housing around the ports if connected to ground may cause current to pass through it if there is ground potential between the two buildings

neat sage
#

Ok and plastic is designed for direct barry metal is not and i know fiber isnt much more but i have no way of hooking up or running fiber i live in the country were still using coaxial cable to a modem to a router

pseudo blade
#

You misunderstand

#

You can get adapters that convert between ethernet and fiber optic

peak cloak
#

Yeah the whole point is for it to be electrically isolated

pseudo blade
#

So you end up with home router/switch > media converter > fiber > media converter > switch in barn

#

Because the whole lot running between buildings is fiber optic you can skip all the messy electrical problems

neat sage
#

Ok that makes sense

peak cloak
#

They look like this btw

pseudo blade
#

Yep, looks like that

neat sage
#

Ok

pseudo blade
#

And they're cheap as dirt

neat sage
#

Perfect now to get pricing

pseudo blade
#

You can use multimode optics and OM3/4 fiber at that distance easy

#

Have you already got a trench/conduit, by the way?

#

If not and you'd be paying to make that happen, consider using point-to-point wireless instead because it's cheaper and can be quite fast

neat sage
#

Yeah trench is dug and conduit in because we are running gas electric and wifi out there

pseudo blade
#

Neato

#

MC220L is very cheap, one for each side, then get a pair of gigabit 550M multimode optics for them, then your 100M OM3 cable

cobalt iris
pseudo blade
#

Don't buy singlemode/OS fiber with multimode optics or vice-versa, don't buy longrange singlemode optics

lean pebble
#

What setup you guys suggest for home opensource router like opnsense with 10gig network card that I already own I need a case that can fit full size network card with 2 RJ-45 and 1x SFTP connection

sudden kayak
sudden kayak
pseudo blade
#

But I will then have to test stability of the result, OpenWRT has published warnings for platforms with 64MB RAM, and I must do a few things that are otherwise done for me.

#

Seems openWRT support for this device isn't complete either, and specifically around the pcie slot I'm using - fixable I'm sure, but it's something to consider

#

Aiming to reinvent as few wheels as possible

#

Still quite likely worthwhile, the alternatives suck

urban vault
#

2.5g NIC PCIE recommendations ?

cobalt iris
#

Intel i225v

#

Or realtek 8125

cobalt iris
urban vault
#

okay thanks

zealous ledge
#

egg carton

cobalt iris
#

So many giant smooth teeth

peak cloak
#

Wut? Those 2 aren't correlated

#

Everyone is telling you, you can't get 1000/1000 on a gig link because of overhead

nimble sable
#

Rack setup etc can be done either way but as someone who recently tried to go that route it ended up being way more expensive than it was worth...ymmv ofc and it is cool but too much at least for me

nimble sable
peak cloak
#

it like estimates

#

kinda

nimble sable
#

Ooh... Damn it has the best servers

hollow marlin
#

Yeah Netflix is compensating for overhead in their results. That said it's still reliable enough and the fact you can enable a run for a set amount of time is a nice touch

rocky badge
#

@peak cloak Apogee is a fucking joke

cobalt iris
#

I remember a long time ago if you refreshed speedtest and stopped it just in time it would sometimes bug out and say you have like 5gig+ lol

#

I was like "yup that's exactly what my DSL is capable of"

ocean pivot
#

I mean that's not far off my actual speed

cobalt iris
#

I'm thinking of signing up for Comcast 6gig but idk

hardy python
crude scroll
#

Hi, has anyone here used OpenWRT? I'm trying to setup my old router as a relay, but I can't get it to work

crude scroll
faint bronze
#

Did you find the directions? Here they are.
https://openwrt.org/toh/netgear/r8000

#

You download a file to your machine and then go to the nighthawk firmware upgrade and select the file.

crude scroll
#

The network I had connected the router to flashes between disabled and enabled every few seconds

#

So I got it to flash fine it seems, but when i try to create a relay bridge following the instructions on the openWRT wiki, it doesn't work

#

I tried pressing the reset button on the router and now I can't access the router settings at all. It tells me that the requested URL /webpages/login.html was not found on the server

crude scroll
#

So I tried doing a 30/30/30 reset with no luck

#

The lights are no longer flashing but I cannot access the router

tulip basin
#

Hello, I have a ZTE ZXHN H108N modem/router and a Xiaomi AX3000 router connected to each other. This has the issue of Double NAT (Confirmed with tracert as well).

I tried putting the ZTE in bridge mode but it doesn't have that option thought it has the option to disable NAT but it's greyed out (as can be seen in the 1st pic) so not really an option.

Checking the xiaomi, it doesn't have any options regarding NAT but it has a DMZ option. (as you can see in the 2nd pic)

The ZTE also has a DMZ option (as you can see in the 3rd pic)

I read on an article that DMZ can fix double NAT but I m not sure how to do it. I would be very thankful if you can help me fix my double nat issue.


#

PS I have made a reserved IP address in the ZTE for the Xiaomi if that helps.
PS2 I want the xiaomi as the main router as every device will be connected and managed there, for the ZTE I care only as a modem.

peak cloak
#

you can't do anything on xiami regarding it, if you want it to be main router

pseudo blade
#

DMZ doesn't fix double nat

#

Just allows you to handle port-forwarding on the Xiaomi without having to do it twice

#

You might be best suited buying an ADSL2+ modem for your use case and connecting that to your new router

#

Or if you're feeling adventurous...

#

Your (ZTE)router apparently exposes telnet with creds: username:1234 password:1234

#

It's Linux underneath

crude scroll
#

OK so I managed to get into my router again after another 30/30/30 reset, I've set most of the settings to create a relay according to the openWRT wiki page, but when I try to ping openwrt.org it says bad address

pseudo blade
#

You might need to configure your router first

crude scroll
#

Just set it up normally first?

tulip basin
tulip basin
peak cloak
agile thicket
#

Hey LMG staff, I'm looking for a point to point wireless transmitter that does at least 10gbps. Directional is okay but if I could get omni that would be perfect. Are there any recommendations you have?

#

I only ask because I know Linus recently did this with your building infrastructure

ebon sierra
#

Can a USB-C port on the back of a TUF X570 motherboard provide wifi?

agile thicket
#

Only if it's connected to a wireless adapter

#

It can't act as an antenna if that's what you're thinking

peak cloak
#

I personally never use p2p, but for 10gig that starts to stretch the limit

agile thicket
#

It's for 800 units spread over long distances with multiple connection points

peak cloak
#

WISP?

agile thicket
#

I was curious about what product they use

#

Nope, it's basically to connect different server rooms together

#

Instead of trenching a bunch of conduit

#

It's a full fibre network

peak cloak
#

Ltt didn't have a good experience with wireless

#

Your use case warrants direct fiber connections

agile thicket
#

Yup I know

#

I was requested by my higher ups to explore different options

#

My issue right now is the 10gbps units I've found have 1gbps or 2.5 gbps ethernet ports

#

Which makes no sense XD

agile thicket
#

I'm not sure, I'm looking around

#

This is potentially a good option I think

glacial linden
#

Well. OCI is being quite annoying now... Restarted the server after 46 days, perfection. Everything working perfectly even after the restart - no problems. After a certain time of day, my networking stops working, everything just stops working. I have no clue why. Finally upon troubleshooting a lot of stuff, found out that vnic has no internal ipv4 and I changed absolutely nothing... No amount of configs or even manually re-assigning the same exact ipv4 is working... Internal ipv4 is assigned, services can bind to it but can't be reached externally whatsoever. I create an alt vnic and try it - that one works??? This was an ephermal IPv4 = it'll change if I reassign it = I'll have to update the IPv4 on all my domain names and re-enable SSL on it with certbot all over again.

WHY?

#

Even in the logs of my services I can see - regular sync working, relay servers accepting clients, etc... at 1:37pm - bam - errors. Everywhere. Relay server throws errors and dies, nginx throws errors and dies, I notice it heavily because private DNS on android + SimpleDNScrypt on windows on all my devices everywhere simply stops loading anything at all.

100% sure something was messed up on oracle's side, my config was perfect.

agile thicket
#

First question

#

Is your IP config set with the correct subnet?

Did you also add valid DNS options and a valid gateway?

#

The DNS and Gateway sometimes doesn't apply correctly so the traffic is like "Wtf, what is this?"

glacial linden
agile thicket
#

Try changing your DNS to 8.8.8.8

#

and see if that works

glacial linden
agile thicket
#

Then you have a DNS issue

#

Your network is likely fine

glacial linden
#

-.- my self hosted pihole + unbound DNS server on my VPS stopped working because the VNIC's internal IPv4 disappeared for no reason

#

I manually set it up for all my devices myself and to have a full log of all accessed domains

glacial linden
agile thicket
#

Their admin team could have made a configuration change on their virtual switch settings hosting your virtual environment

#

That's why cloud hosted stuff can be a PITA. Because at times, when hardware changes happen or a glitch happens that impacts that. It can cause all virtual appliances hosted on that machine to wipe their information

#

Essentially the machine sees it as a new card instead of seeing it as the same card

#

I recommend contacting Oracle about it

glacial linden
#

That'll take days of back and forth on email

agile thicket
#

It's not a common issue but it does happen

#

Yea, welcome to my life lol

glacial linden
#

I need things to work right now... Had to delete and create another vnic so I can configure it myself

#

Not expected from cloud services...

agile thicket
#

It's not a common occurrence

glacial linden
#

Glad that the primary vnic is still working so atleast I can ssh into it

#

New created vnic works fine. No idea why it couldn't connect even when I manually reconfigured the ips and ran their script too.

#

Time to update everything to the new IP...

agile thicket
#

Have fun

glacial linden
# agile thicket Have fun

wasted 4 hours of this day 😂 learned a lot though...
Didn't take much long to fix this either. Im already done fixing

#

Back up and running

agile thicket
#

Awesome!

edgy ingot
#

I know I’m a filthy casual but does this have any merit? Is it actually quick? Using a mesh Wi-Fi system

latent glen
#

decent enough, not like youll be using more than that

#

for resolution i mean

unreal valley
#

Does anyone have any suggestions for studying guides/practice for the Comptia Netowork+?

cobalt iris
unreal valley
cobalt iris
magic forge
#

does anyone know a good x86 box (with ECC) (like these pfsense router) with multiple ethernet or pice extensions for for adding multiple Ethernets?
I found something like Supermicro Mini-Tower

cobalt iris
#

Why do you need multiple ports

unborn sluice
#

Moar ports

pseudo blade
#

Because you've basically asked for "any computer" at this point bar the ECC ask

magic forge
pseudo blade
#

What throughput do you need?

#

It can be a bit hard to size an IDS/IPS because obviously your ruleset has a massive impact

#

But if you're talking like 200mbps it's super easy

magic forge
#

it is for really small office with few computers.

wintry pike
#

Is wireguard e2e encrypted?

cobalt iris
#

Making pfsense use different ports with multiple lans and all the devices plugged into it is more complicated than just using a switch

pseudo blade
# wintry pike Is wireguard e2e encrypted?

Wireguard requires encryption for connections, wireguard connections are therefore inherently "end to end encrypted". But what you do with that's on you. If your client or target on either end is outside the encrypted tunnel, say a network or the internet, your connection to that resource is not end-to-end encrypted, because the encrypted tunnel stops before the "end".

wintry pike
#

I would like to avoid DPI on the isp side, any anything in between

pseudo blade
wintry pike
pseudo blade
#

If all resources you're accessing are on the Wireguard server and nowhere else, and that server is secure? Sure.

waxen scroll
faint bronze
#

Another example of not end to end is a single wire guard host at let's say Google cloud or AWS and clients that connect to that. By default of one of those clients connects to another it is not end to end encrypted, but instead end to host then host to end encrypted.

pseudo blade
#

Because it's decrypted in the middle on the wireguard server yes

#

Whether or not that is an unacceptable security risk depends on your needs and ability to secure said wireguard server

faint bronze
#

Hypothetically you could set up another second layer of wire guard to get end to end encrypted.

sudden kayak
#

"end to end" is misused a lot in marketing for consumer apps like chat or document sharing. the thing you should be worrying about in the context of networking infrastructure/wireguard tunnels is whether the traffic is visible to untrusted parties

#

you have to understand your actual threat model. if your traffic is encrypted everywhere except in memory by the wireguard server you operate, you probably shouldn't be worried

#

truly end to end encrypted traffic is important if your traffic is passing through someone else's infrastructure and you don't necessarily trust them

peak cloak
#

Because just raw https can be considered safe

wintry pike
#

So I just want my dns requests and all traffic to be not visible, save for the target

peak cloak
#

Just use DNS over https

#

If that's your goal

wintry pike
#

Not just dns over https, all the other protocols too

wintry pike
sudden kayak
#

i don't think that's what's happening. what i mean is that your traffic is not technically end to end encrypted, but the only place it's not encrypted is your own infrastructure

#

if you're trying to use your home network as a vpn relay and then the traffic is going back out through your normal connection over HTTPS to the target website, it's meaningless anyway

thick minnow
#

are you trying to use your home unbound container?

hollow marlin
thick minnow
#

also depending on where you live there are pretty strict data laws on isps

wintry pike
#

I see

wintry pike
#

I live in the country of asia

cobalt iris
#

That's not a country

glacial linden
#

ProtonVPN custom DNS doesn't work 😐

magic forge
wintry pike
#

Well, both

#

If I travel to a country whose government dastardly bans vpns, I need a way to obfuscate the information

steep tartan
#

yo Im trying to study for comptia network + exam N10-008, does any one know any good resources?
[4:11 PM]
or where I can get free exam study guide?

nimble sable
#

Anyone use Netgears "insight"

rocky badge
#

@clear igloo @peak cloak I almost accidentially shutdown both DNS servers at home lol

feral cipher
#

Couldn't figure out why my new phone stopped connecting to my home WIFI after a few weeks of use, turns out it is set to randomize MACs on each connection and used up all of my DHCP address space. Guess I'll have to drop the lease time, but clearing the old leases is a pain.

rocky badge
#

What phone

#

@feral cipher

feral cipher
# rocky badge What phone

Pixel 6. But I'm testing GrapheneOS on it so that may not be a default function. I think stock android randomizes the MAC but keeps it the same each time it connects to a certain network. Graphene defauts to random Mac every time but you can change it per network.

rocky badge
#

yeah I know stock Android and iOS just do random MAC per SSID

feral cipher
pseudo blade
#

Thermal soak testing modem

thick minnow
steep root
agile jay
#

sheesh

inland zenith
agile jay
#

sheesh

inland zenith
#

SaskTell is supposed to come put in direct fiber next month for symmetrical 2GB

#

But its the third time they have promised to come out so im not hopfull

agile jay
#

lol, i live in the uk my isp is a virgin. so i got the 1gb fibre package

inland zenith
#

Thats your "1gb" plan?

pseudo blade
#

I wish I could get affordable symmetrical fiber

#

Because it's that or $109 for 100mbps down/40mbps up, everything between is priced in a similarly useless way

#

I'd say maybe in 2040

wintry fiber
#

You can get 1000/1000 on other provider.

waxen scroll
#

thats affordable. its a business product, afterall

pseudo blade
#

Yeah but there is no consumer product

inland zenith
#

The 2G is $135

#

But its costing me $1200 for the line

pseudo blade
#

Even 100/40 is now classified as a business service, pricing is pushing consumers to 100/20

inland zenith
#

Its crazy how variable internet cost is from place to place

waxen scroll
#

because the bulk of the cost is the physical link

pseudo blade
#

crazy how variable costs are Not really, it was highly political in Australia so they rolled out VDSL+HFC on DOCSIS 3 instead of fiber, crippling our digital infrastructure

waxen scroll
pseudo blade
#

The US has far greater percentages of people on affordable high speed plans

waxen scroll
#

ATT has been running fiber for years and claiming "in your area soon"

pseudo blade
#

It's not even close

waxen scroll
#

@hollow marlin comcast is doing 200mbit up and my friend is all excited asking if im getting it. No. 10mbit up is fine why would I pay more and be required to use a comcast modem?

vast shard
# agile jay

Mine is over a 1 GB and it all depend on the type of modem and router you are using. Configuration is the "KEY"

vast shard
#

Depending on locations of Provider

agile jay
sudden kayak
#

it may still require the xfi complete addon but the intention isn't to gate it behind actually using the rental gateway

#

also even now, you should still be able to get xfi complete and an xb8 and use it in bridge mode and surprisingly it's not even that bad a deal for a modem w/ 2.5GbE

cobalt iris
#

XB7 has 2.5g and I have it in bridge mode

#

Biggest difference between 7 and 8 is wifi 6e

#

DOCSIS 4.0 modems supposed to start rolling out next year and should have 5-10g ports

tall pagoda
#

Anyone else here recieved this email?

rocky badge
#

@waxen scroll @clear igloo

#

bruh

waxen scroll
#

thats nothing. the old minecraft used 1-5mbit/s per user

#

I used to sweat buckets because my colo only allowed 1mbit/s 95 percentile

rocky badge
waxen scroll
#

wheres lurick and my invite to the minecraft

glacial linden
rocky badge
#

my router

glacial linden
#

Monitoring port 25565? (how it determines minecraft traffic)

rocky badge
#

by the firewall rule

sudden kayak
raven falcon
#

dumb question but:

do I need fast internet speeds to stream from my PC to my VR headset in another room? or do I just need a fast router?

glacial linden
#

1 Gbps routers are quite common now and not that expensive