#networking

1 messages ยท Page 225 of 1

topaz quarry
#

that's why they maintain a docker image that does all of this for you

#

and the linuxserver people maintain an even easier docker image to deploy

#

keep in mind the people developing nextcloud have the mindset

#

deploy it securely or don't deploy it at all

flint matrix
cursive mist
#

What's the max speed of 2.4 ghz wifi on LAN

peak cloak
#

@cursive mist theoretical max is 600

cursive mist
#

Ok

peak cloak
#

it will never reach that in real world conditions though

unborn sluice
#

Might be better to base the theoretical on the 802.11

#

you might be using b/g

mellow heart
#

deploy it securely or don't deploy it at all
@topaz quarry Do you have a guide on how to do this with FreeNAS?

topaz quarry
#

no, because sane people don't deploy applications on FreeNAS

#

FreeNAS is a storage platform

#

they tried to add hyper-convergence (applications+storage), but honestly

#

they've broken plugins so many times i'm like bro

unborn sluice
#

Jails everywhere bro

topaz quarry
#

jails are not the way

flint matrix
#

2.4ghz sucks though

#

ive never seen those theoretical speeds

topaz quarry
#

i have

#

in an ARRIS testing chamber

#

with no interference from anything

flint matrix
#

lol

unborn sluice
#

your phone should be kissing your AP with the most expensive AP you could find

topaz quarry
#

all cell phones were kept 4 rooms away

mellow heart
#

I can't switch from FreeNAS

flint matrix
#

yeah i mean im standing next to my ap ac pro with my laptop on ac on 5ghz 80width and im still only getting 400-500

mellow heart
#

All of my data is on it

topaz quarry
#

you can use a VM

flint matrix
#

and im on gigabit

topaz quarry
#

people run FreeNAS as the storage platform and then use another box for services

#

that's the intended use

#

when FreeNAS first came out it didn't even have any of this

#

the closest thing you can do to that is a run a LInux VM

#

allow your storage to safeguarded by FreeBSD (good), allow LInux to run services (good)

#

I don't trust LInux with core duties like routing or storage

#

i do trust linux with running applicatios

mellow heart
#

All of this doesn't matter

#

I can't switch from FreeNAS, and I can't install something else on the machine

#

Or I'll lose all my data

topaz quarry
#

you can install VMs . . .

#

we can't help you with FreeBSD Jails

#

all the people who actually understand them are dead

unborn sluice
#

I don't trust LInux with core duties like routing
OpenWRT shivers

topaz quarry
#

openwrt is garbo

#

OpnSense, Pfsense come at me bro

unborn sluice
#

laughs in my crappy AsusWRT router

topaz quarry
#

vyos gets a strong runners up

#

because they never got jails to be user friendly

#

they're literally running linux containers in FreeBSD because that's easier than making jails friendly

#

think of how hard the former is

mellow heart
#

I understand that this isn't the "proper" way of doing it. I don't have the knowledge or skill to do it any other way.

#

If you can help walk me through another solution, awesome! If you can help solve this, that would also be awesome!

#

I'll take anything just to get this working and not lose my data

topaz quarry
#

if you install a VM, FreeNAS won't explode

#

just youtube docker nextcloud

#

okay seriously if this guy in this youtube channel can understand and explain it

#

i think you can too

#

watch all the videos

#

all 86 of them

#

genuinely understand FreeNAS

hollow marlin
#

Decent video but LACP does not load balance based on bandwidth contrary to his belief

mellow heart
#

Got it working WITHOUT spending hours on these videos lol

hollow marlin
#

Well you don't need to watch a month worth of videos to setup a NAS

topaz quarry
#

you'll mess it up again on FreeNAS

#

because the plugins aren't stable

#

but gg for now

#

also setting up a NAS, no

#

setting up a NAS with containerized applications, you should probably have a Disaster Recovery solution in place

#

like what do you do when the application stops working

#

other than spam stack overflow and cry

#

you should still watch them to understand the platform you're using

hollow marlin
#

I grabbed a beer, watched 3 YT videos and setup Zabbix/Grafana in docker and tossed a backup of the container in Gdrive in an hour or two. Fight me

topaz quarry
#

at least you get it though

#

it's a backup plan

#

it's just having none is stupid

hollow marlin
#

at least you get it though
Bold statement. "error-$h1ts broke" hmmm, ctrl+c, google.com, ctrl+v. Pretty much sums up what I would do. I already have a lot I need to focus on in networking to deep dive into containers.

dusty osprey
#

that's what i actually do really

hollow marlin
#

But what translates is backup and what if x breaks

#

Mainly why I don't have a NAS. I store my handful of important files on Gdrive and let the guys behind the scene do what they do best.

topaz quarry
#

i store stuff on SAN

#

burn stuff to blueray discs

#

call it a day

#

if the SAN blows up

#

i have physical media

#

i agree storage is hard

#

i'm working on ways to make it less dumb

ember haven
#

I have my pc upstairs and am using a wifi range extender plugged into the wall and connecting it to my pc via an ethernet cable. I'm getting around 98 mbps with this, would I get higher speeds if I changed to a pcie wifi card?

elfin socket
#

I should at some point create a remote backup solution but I just prefer physical copies.

tame carbon
#

rsync <3

ember haven
#

tell me more about this rsync

unborn sluice
#

it's like sync

#

but R

tame carbon
#

rsync is a utility for efficiently transferring and synchronizing files between a computer and an external hard drive and across networked computers by comparing the modification times and sizes of files. It is commonly found on Unix-like operating systems. Rsync is written in...

#

@ember haven its just a tool to synchronize filesystems

#

commonly used for backups

#

once you've made the initial transfer, and modify files, any subsequent synchronizations will only transfer files that were changed

#

rsync ~ user@remote-host:/home/backups/

#

something like that

#

copies entire home folder to a remote machine

topaz quarry
#

naw, we should all locally mount s3 buckets to replicate to

#

backblaze has s3 bucket support :/

unborn sluice
#

I thought people uses rclone now

#

or am I the only one

peak cloak
#

Yeah I used rclone

topaz quarry
#

don't worry

#

i'm the weird one

thick minnow
#

damn it

#

my router is doing the thing again

#

where i cant access my admin page

waxen saddle
#

If it can't read the admin page, how can it be trusted to work at all? You may need to replace the router.

peak cloak
#

huh?

#

but yeah i would replace it

thick minnow
#

it worked for like 3 days

peak cloak
#

Did you factory reset

#

fully

thick minnow
#

i dont think so

#

like i did the steps to factory reset it

#

but it still kept my settings

#

so idk

peak cloak
#

like hold the button for 30 sec, unplug while holding the reset button for 30 seconds, then replug but continue holding the reset button for another 30 seconds

thick minnow
#

ill try that out

#

i have a ac1700 router if that helps

#

from what ive read it says to hold down the reset button for 7 seconds

#

but that hasnt worked

thick minnow
#

Does anyone know if a spoofed MAC address resets when restarting your PC? Also on a dynamic wifi network if that means anything.

hollow marlin
#

How are you spoofing the MAC?

waxen saddle
#

What is a dynamic wifi network?

thick minnow
#

just looking for an answer on the matter

hollow marlin
#

Well how you are spoofing the MAC matters on if it clears on reboot

thick minnow
#

that's my question exactly

#

will it always clear when rebooting your pc?

hollow marlin
#

Depends how its done. What is the need to spoof?

thick minnow
#

well, i play old school runescape and for some reason my primary isp doesn't allow for it to start up

#

but for some reason when i changed my mac address yesterday it worked instantly

hollow marlin
#

MAC address wouldn't be involved unless there was security on just your MAC

thick minnow
#

the method i used to change it was via registry

hollow marlin
#

If it was changed in registry it should not change back

thick minnow
#

would changing my router to like bridge mode or something fix the issue?

hollow marlin
#

Unless your MAC was manually blocked or some type of kid controls, it should not have been an issue.

thick minnow
#

since my router didnt originally come with my isp thing

#

yeah i'd say that wouldn't be the cause, but it's odd because i checked admin tools and there's no block or restriction

#

thanks for the reply juan

#

this might mean my isp is also trying to limit my pc usage

hollow marlin
#

Your ISP will only be able to see the MAC of your router, any device behind your router MAC address is hidden. Something on the router blocking the MAC or hence your local IP

thick minnow
#

gonna give them a call and try to find out what's up later on

tame carbon
#

@waxen saddle sounds like a buzzword

waxen saddle
#

lol. Very much so.

hollow marlin
#

@tame carbon don't give them ideas for SD-WLAN

tame carbon
#

@hollow marlin SD = Software defined?

#

isnt VLAN form of SD-LAN ?

hollow marlin
#

SD-WAN has moved to encompass pretty much all aspects at this point

#

Like Juniper's Contrail was just WAN but now that they bought Mist last year will configure WAN, FW, switches and Mist APs

ember haven
#

@tame carbon I've been wanting a solution like that for some time now, any easy tutorial I can read/watch?

#

For rsync

tame carbon
#

@ember haven read the documentation on it

#

its pretty straightforward

#

if you want rsync to be a scheduled job, use cron

#

man rsync

ember haven
#

Is cron part of rsync or is it something else?

tame carbon
#

cron is a job scheduler

#

rsync is a file copy tool

ember haven
#

Ahh

#

I'm using windows though

tame carbon
ember haven
#

Any complications there?

tame carbon
#

yes

#

all of them

ember haven
#

Lol

#

I would learn Linux but I've been too tied up

tame carbon
#

cron is also linux :P

ember haven
#

Yeah

#

Ok

tame carbon
#

windows users' problems lol

#

I mean, you want to make backups

#

rsync is ment from server to server

#

or from nas to server

#

on windows... well. idk xD

round osprey
#

he has a UDMpro, one of their larger PoE switches, and a 10gigabit switch in a stack
@flint matrix so it has the ISP modem to a 10 gigabit switch, then to the dream machine and from the dream machine to the PC, access points... ? is it correct?

ember haven
#

I wanted to just have the ability to sync my laptop and pc while I'm away

round osprey
#

but i don't think we should be emulating his network behavior
@topaz quarry but that's the only way to make a network, right? otherwise how would you do it

#

ping me if u speak to me

tame carbon
#

I use this to exchange music libraries with my friends

#

Syncthing is similair dropbox, without the centralized file store

ember haven
#

O dang

#

That's amazing actually

tame carbon
#

It runs as a headless program in the background

ember haven
#

Can I use that like Google drive?

tame carbon
#

and has a web UI to manage it

#

its not centralized

#

so its between two computers

#

lan, or across the internet

ember haven
#

Ahh

tame carbon
#

but the network itself is public

#

so when you create a shared folder

#

you can get a link, which other users can use to 'subscribe' to

#

and it will synchronize directories between those two machines

ember haven
#

I can whitelist those though right

tame carbon
#

yeah its secured and encrypted

#

just read their page

ember haven
#

Is it only between two devices?

#

Seems like it could be used to sync a network of devices

tame carbon
#

yeah its for however many users you want

#

download and try it out

#

its very easy to use

ember haven
#

I can't really try out with more than myself rn

#

But yeah I'll play around with it, thanks

#

I can finally share code for my projects using this and not have to worry about many different versions

tame carbon
#

code?

#

@ember haven bruh

#

use git.

#

code is shared using content tracking, not file tracking.

#

git is far superior for this. in every way possible.

round osprey
tame carbon
#

@round osprey its not

round osprey
#

why

tame carbon
#

OneDrive stores data in the cloud

#

syncthing doesnt do that

round osprey
#

but with onedrive u can sync between multiple pc's

tame carbon
#

yep, syncthing does that too

#

but without centralized data storage.

round osprey
#

centralized data storage ?

tame carbon
#

The cloud.

#

I don't want microsoft to have my data.

round osprey
#

so how syncthing works?

tame carbon
#

Directly between machines

round osprey
#

it uses cloud too

tame carbon
#

yes, but it doesnt store files there

#

it only uses their cloud to discover and connect to other clients

#

its peer to peer based

round osprey
#

aaaa

#

then its a nice program

#

๐Ÿ™‚

tame carbon
#

there's another one, similair

#

which has a cool concept

#

ipfs

round osprey
#

this one stores data in the cloud

#

true?

tame carbon
#

also no

round osprey
#

When you look up a file to view or download, you're asking the network to find the nodes that are storing the content behind that file's hash.

tame carbon
#

ipfs makes unique fingerprints for every file, and distributes this through hash tables

#

yeah, but the nodes that host those files, can be found using the hash

#

its not in a datacenter, rather, any computer running ipfs that has that file

#

idk of any practical uses of ipfs

#

but the concept is very cool

#

ipfs://yourhash to reach the file

ember haven
#

Dang

round osprey
#

yeah lol it destroyed my head

ember haven
#

How would I use git

round osprey
#

ipfs://yourhash to reach the file
@tame carbon from any place?

tame carbon
#

@round osprey as long as your browser has ipfs support

#

yes

#

thats the idea

#

I'm not too familair with the specifics of ipfs

round osprey
#

@round osprey as long as your browser has ipfs support
@tame carbon is ipfs a protocol now?

tame carbon
#

its a protocol schema

#

yes

ember haven
#

ipfs sounds like a fun project lol

round osprey
#

aaa

tame carbon
#

I just came across it, when I looked for alternatives for dropbox, onedrive, google drive and the likes

#

settled on syncthing ultimately

ember haven
#

Ahh

tame carbon
#

because more practical

round osprey
#

okey okey now I understand

tame carbon
#

I want offline downloads of remote filesystems

ember haven
#

Crystal, how would I use git?

tame carbon
#

ipfs needs to be online

ember haven
#

I'm not really understanding why git would be much better

tame carbon
#

if you manage code

#

git is the way to go

#

individual changes you make are 'comitted' as a block of changes

#

and you can go back to any version, at any time

ember haven
#

But I use matlab a lot

tame carbon
#

work collaboratively, on same project

#

merge changes

#

and stuff like that

#

pretty much the defacto standard for projects

#

git is used everywhere

ember haven
#

Ahh

#

Welp

tame carbon
#

github is one of the places to host git projects

#

but git doesnt need a server

#

you can use it locally

ember haven
#

I gotta learn this so I can teach my friends to use it then...

tame carbon
#

if you want to collaborate with others, a server is needed

#

because you push your changes to the remote server

#

and other users pull your version from the server

#

and if they also made changes (commits), and say, you both modified the same file

#

you can resolve these conflicts with git, and push a merged version

#

how else do you 'organize' working on software with 1000s of people ? :D

ember haven
#

Idk

tame carbon
#

git was developed out of the need to collaborate with 1000s of people on linux

#

same guy who invented linux, invented git

ember haven
#

My code is .m

#

Wait

#

so

tame carbon
#

git tracks content, so if you modify a line of code

#

git sees only that line that you changed

#

images cannot be treated the same way, since its a binary file

ember haven
#

I have github desktop rn

tame carbon
#

git is typically a commandline program

#

there are however, other tools for it

#

This is commonly used by noobs

ember haven
#

Hahaha

tame carbon
#

git stores its files in a hidden folder .git in the root of your project

ember haven
#

Yeah

#

So I can just work on things

tame carbon
#

yeah its like a normal directory/project

ember haven
#

and whenever I want to update it, i can push it out?

tame carbon
#

yeah, so you make changes

#

then add them to your changelist, and commit them with a message

#

like "Fixed feature foo"

#

then, you push this commit

#

to the server

ember haven
#

Ahh

tame carbon
#

anyone else, can then git pull to update their local branch

ember haven
#

I gotta make this a habit then

tame carbon
#

git init makes new repository

#

if you make a new file like hello.txt

ember haven
#

command line???

tame carbon
#

you can then add it to git tracking with git add hello.txt

#

@ember haven sourcetree does this for you

ember haven
#

oh

tame carbon
#

like I said, git is commandline, only noobs use a GUI

ember haven
#

Haha

#

I want to learn commandline

#

but

tame carbon
#

but yeah git add file

#

and then

#

git commit -m "some new cool feature"

#

git push

#

if you want to download the entire project, if you don't have any code at all

#

you git clone <url to project>

#

and that downloads all the files

#

and checks out the latest version

ember haven
#

Sigh I understand the command line code sorta

#

Want to try and use it

tame carbon
#

This is what sourcetree makes it look like ^

#

you see commits in that list, with their message

#

the 'tree' on the left side, is a visual representation of how versions are linked to themselves

#

if you scrolled all the way down to the beginning

#

the first commit should be there

#

I have projects that I started in 2014, that have over 900 commits on them now xD

ember haven
#

Wow

tame carbon
#

and you can make tags on commits, to do release and version tracking

ember haven
#

Hmmm

tame carbon
#

but the idea, is that the entire project history is in the repository

#

since all the modifications made, since the first initial code push, is the latest version

ember haven
#

Would I have to create another repository "file" in the place I store my code?

tame carbon
#

if you want to put an existing project under git

#

just go to the root directory of that project

#

and run git init

#

this doesnt modify any files

#

it just creates the hidden .git directory

ember haven
#

does the repository look in the entire file?

tame carbon
#

no, the entire repository is in that .git/ directory

#

but the 'current' version you have checked out

#

is in your file structure

#

if you went git checkout -b some-older-version

#

it changes the files on disk, to what they were in that older version

#

and you can just jump back to latest with git checkout master

#

the "checked out" version is the one, you have currently on disk

#

All of this may seem like magic

#

but once you use git, this is all makes sense

ember haven
#

Lol I understand how it's possible to do this, I'm just trying to understand from which perspective I should be viewing how git does things

#

Because there's several ways for this type of thing to be structured

tame carbon
#

I think of it as this: your latest version of the project, is the initial version + ALL the modifications made since then

#

this latest 'branch' is the master

ember haven
#

Yeah I get the concept

tame carbon
#

the latest development version is usually on develop

#

and once you want to release

ember haven
#

Just not the file storage/usage

tame carbon
#

you merge develop onto master

ember haven
#

I understand all the master develop commit stuff

tame carbon
#

git has an internal database, that has this entire project tree and history

#

thats stored in .git

#

but you dont ever see or interact with this

#

you use the git command to make it do things

ember haven
#

I will be able to see it in sourcetree though

#

if I open that specific repository?

tame carbon
#

yeah, sourcetree just sees that git folder

#

sourcetree uses git commands

#

its just, you dont see it

ember haven
#

Yeah ok

#

Hmmm

#

Now I have to somehow regurgitate this information to my friends lol

tame carbon
#

I'd teach myself first

#

and then share it

ember haven
#

I bet it doesn't handle simulink though

#

ofc

tame carbon
#

git tracks file content

#

so text

#

and code is usually text

#

there's a special place in hell for matlab users, don't worry

ember haven
#

Lolol

tame carbon
#

I hate matlab

#

and simulink is even worse

ember haven
#

Matlab isn't much of a coding tool

#

it's more engineering based

tame carbon
#

yeah but I had to implement math logic from a simulink project, for a microcontroller.

#

not fun

#

and the people who made the simulink stuff were too stupid

ember haven
#

I like it because of how easy it is to manipulate matrices and such

thick minnow
#

wait

ember haven
#

lol

tame carbon
#

to understand that microcontrollers speak only machine code

ember haven
#

Yeah the conversion isn't nice

thick minnow
#

should i use the mac address of my old router

#

is that the reason why i cant access of my router admin page?

tame carbon
#

@thick minnow your conversation got lost in the above

thick minnow
#

basically i cant access my router admin page again

ember haven
#

What's mercurial???

tame carbon
#

@ember haven Hg. another version control system, similair to git, it also tracks content

#

but less common

ember haven
#

and what's LF and CRLF?

tame carbon
#

line endings

ember haven
#

used for what?

tame carbon
#

so, the control character that is used to denote line endings (when you press enter key)

ember haven
#

Ahh ok

tame carbon
#

windows uses CRLF (Carriage return, Linefeed)

#

mac does CR (carriage return)

#

and linux is LF (linefeed)

ember haven
#

Weird ok

tame carbon
#

yes

#

@ember haven ever used line ending literals in code?

#

like a string with a newline?

#

"some\n string"

ember haven
#

yeah

tame carbon
#

\n is a newline

#

\r is carriage return

#

windows mac and linux just all use different defaults for that

sacred plover
#

does anybody know why when i do a speed test i get 400-500 mpbs but when i try and download somthing i get only 60-200

tame carbon
#

legacy stuff, from the days of the typewriter xD

#

@sacred plover maybe server on other side isn't as fast

ember haven
#

Ahh

tame carbon
#

when you get highspeed internet, you realize bunch of servers don't give you full speed

ember haven
#

Server bottleneck :3 the worst XD

sacred plover
#

but its like any download i do

ember haven
#

Your internet is too fast

sacred plover
#

lol you think so

tame carbon
#

@sacred plover you probably arent the only one using that server :P

sacred plover
#

ok thx

tame carbon
#

a peasant with a 10mbit connection wont notice this

#

but someone with a 500meg line, will

#

only place where I get the true download speeds that I pay for

#

is with steam

ember haven
#

What's an SSH key??

tame carbon
#

steam servers are blazing fast

#

@ember haven SSH is a way to remotely log onto a computer or system, its also what git uses to transfer data

ember haven
#

O ya

#

speaking of remote login

tame carbon
#

SSH key is a way to use public/private key cryptography to authenticate

#

doesnt use a password

#

instead, uses a key

ember haven
#

Is there a convenient way to remote login to my pc with my laptop

tame carbon
#

on windows?

ember haven
#

yeah

tame carbon
#

beyond RDP, no

#

linux has ssh

#

:D

ember haven
#

Lol

#

This guy really wants me to switch to linux

tame carbon
#

no xD

#

not specifically

ember haven
#

The world really wants me to switch to linux

tame carbon
#

its just that windows is garbage for developers and sysadmins

ember haven
#

all the comp sci majors are looking at me

#

Yeah I see

tame carbon
#

see, I used to develop on windows and deploy on linux

#

but then I had to write programs that interact with things like filesystem

#

and then suddenly, you realize, that even that has OS specific quircks

#

so I made my development system same OS as my deploy environment

#

and dont ever want to go back

ember haven
#

Lol I see

tame carbon
#

You know what I hate in windows the most?

#

There's no easy and quick way to get to your home folder

#

you have to manually pin it to quick access

ember haven
#

HAHA YEAH

tame carbon
#

Where's Home ?

#

the directory above Documents

ember haven
#

There's so many quirks about windows that I don't really like

#

but

#

I've learned too much to justify an easy switch rn

thick minnow
#

is there like a way to portfoward router to like all my parts, lol i know it a stupid question

tame carbon
#

@thick minnow forward all ports?

thick minnow
#

yeah pretty much

tame carbon
#

some routers have a DMZ feature

thick minnow
#

cause everytime i want to change a port i have to reset my router

tame carbon
#

allows you enter a local IP of a machine, that is responsible for all unforwarded traffic

thick minnow
#

you gotta tell me everything ahead of time

#

cause one i reset my router i only got like 1 minute to do everything

tame carbon
#

no phone with mobile dataplan?

thick minnow
#

phone broke lol

tame carbon
#

F

thick minnow
#

having a new one sent to me rn

tame carbon
#

every ISP has their own shitty variant of a router

#

Idk how they work

#

nor do I want to learn

#

Just look for DMZ somewhere in settings

#

or forward a big range of ports xD

thick minnow
#

well i upgraded my factory router to a netgear ac1700

tame carbon
#

idk anything about that

#

<-- uses mikrotik only

#

@thick minnow either forward individual ports, or forward a range of ports

#

or DMZ

#

quite stupid actually

#

that you have to restart a router to apply settings

thick minnow
#

well not to apply settings

#

i have to reset my router to access the admin page

#

im pretty sure i factory reset my router and it worked for 3 days

#

but now its doing the same damn thing again

#

and im not about to spend another 100 bucks on a router

ember haven
#

So a repository is a folder?

thick minnow
#

and i dont have the slightest clue on how to fix it

waxen scroll
thick minnow
#

like im thinking its the firewall

#

but like at this point ive been troubleshooting for 3 damn days

waxen scroll
#

<---- uses ubnt only @tame carbon

peak cloak
#

if you can spend 100 bucks on a new router, get the hap ac3

#

project for today will be to get wireguard setup

thick minnow
#

i got this router like a year ago

#

yes its old but it has 5ghz and 2.4ghz wifi

#

guest network

#

all this good stuff

peak cloak
#

guest network is basic stuff

thick minnow
#

and i dont want to throw away more money on a router that will probably get the same issue

peak cloak
#

nah, @tame carbon is a microtik shill, I don't think that will happen with the mikrotik router

orchid shell
#

what happens if I lower the frequency like from 80 mhz to 20 mhz on my wifi

peak cloak
#

you mean, changing the channel width?

orchid shell
#

sure idk

#

its just im trying to do online class rn and my wifi is awful

peak cloak
#

it depends on what the radio(wifi) enviroment is like

orchid shell
#

like

#

physical obstructions?

peak cloak
#

no, like other people's wifi

orchid shell
#

well is there a way to make it where my wifi reaches further

peak cloak
#

not really

#

unless your TX power is low

orchid shell
#

whats TX power

peak cloak
#

transmit power, I doubt consumer routers let you adjust that

orchid shell
#

i have a modem

#

iirc its CGN3ACSMR

peak cloak
#

that's a router

#

and a modem

orchid shell
#

k den

#

thing is my parents have had it for a super long time so

#

maybe its just getting worse with age who knows

tame carbon
#

@peak cloak shilling implies I get money from mtik

peak cloak
#

used the wrong terms

hazy sandal
#

Anyone understands why WiFi devices in the not working diagram can ping the pfSense box, the dns servers, other devices, other public ips but not browse to the pfSense box by ip or ANY FQDN?

#

Both APs are Technicolor TG799vac Xtream ISP provided gateways/routers

#

And all devices show up in pfSense DHCP leases as active and online

waxen scroll
#

internet and dns works tho right?

tame carbon
#

this is where a network tap comes in handy xD

#

either with two ethernet interfaces on a computer, or a dedicated tap

hazy sandal
#

@waxen scroll yeah. All wired devices can access everything w/o issues.
@tame carbon would a tap work when thereโ€™s only issues with wireless access?

waxen scroll
#

right but it sounds like DNS and internet work on wireless too?

hazy sandal
#

It gets the correct settings from the dhcp server yeah, and can ping public ips as well

waxen scroll
#

im concerned you have two APs that arent enterprise grade

#

perhaps turn them off one at a time and try testing

hazy sandal
#

I havenโ€™t noticed any difference which AP I connect to wirelessly, if thatโ€™s what you mean?

waxen scroll
#

are both using the same SSID?

#

@tame carbon a tap would be nice

hazy sandal
#

In the working config yeah, but not when trying to figure out why stuff doesnโ€™t work. They had the same SSID in the non-working config a few RTFDs ago

#

Would the tap be able to analyze the traffic between ie pfSense and hallway ap or between the living room and hallway aps without actually being a device on the network, or how does it work?

waxen scroll
#

yes, but its a device on the network

rocky badge
#

@hazy sandal wait, so tldr, wireless can't access internet but wired can?

#

same network on pfSense?

hazy sandal
#

Yeah

rocky badge
#

Are they both on the same network

hazy sandal
#

Yeah

waxen scroll
#

so i'd normally tell you to do a tcpdump on the pfsense, and you still can try... but the reason tcpdump isnt reliable is because if pfsense decides to drop the traffic tcpdump might not see it

hazy sandal
#

And they somewhat can access internet by pinging ips

rocky badge
#

you have firewall rules created in pfSense, right?

#

pfSense's default action is drop

tame carbon
#

do a trace to 1.1.1.1

somber meadow
#

cause this is the networking channel I assume you all can help with my modem cause it decided to not be connected right now?

tame carbon
#

and you can also try arpping

#

to the pfsense machine

hazy sandal
#

Yeah, but any rule affecting WiFi would affect wired as well, shouldnโ€™t it? Theyโ€™re all on lan in pfSense

waxen scroll
#

you're right unless the rules got screwed up

#

like you only allowed part of the DHCP range

tame carbon
#

does it work if you plug your laptop into the port where the wifi AP is plugged in?

waxen scroll
#

@tame carbon it works there

#

that means the whole path is validated

tame carbon
#

so whats left but to blame the crap wifi KEKW

hazy sandal
#

Nah, thereโ€™s only the default allow lan to all and anti lockout rule active on lan.
It works on that port yeah.

rocky badge
#

like this?

#

may have different names but same info?

hazy sandal
#

Yeah

rocky badge
#

have you ran a traceroute?

hazy sandal
#

From pfSense of from a wireless device?

rocky badge
#

wireless device -> external IP

#

Does wired from pfSense work?

waxen scroll
#

*slapp @rocky badge . he can reach the internet fine, not the pfsense mgmt IP. tell him how to tcpdump it cause i only ubnt

tame carbon
#

mtik has torch KEKW

hazy sandal
#

Not targeting the external ip specifically, but public ips work fine

rocky badge
#

oh because I asked you this and you said you couldn't access the internet lmao

#

to tcpump pfSense

hazy sandal
#

I after that said they can ping, but whatever, easy to miss ๐Ÿ˜‰

rocky badge
#

/usr/sbin/tcpdump -i mlxen0 replace mlxen0 with your interface

#

if you want to pipe into wireshark from Windows echo (8) | "C:\Program Files\PuTTY\plink.exe" -no-antispoof -l root -pw <PW> <router IP> /usr/sbin/tcpdump -i mlxen0 -w - | "C:\Program Files\Wireshark\Wireshark.exe" -k -i - update paths and info as needed

waxen scroll
#

lmao you've clearly had pfsense problems before

rocky badge
#

Nah, I like wiresharking stuff

hazy sandal
#

Great! Then I have something to do after class tomorrow (WS2019 administration) ๐Ÿคฃ canโ€™t mess more tonight ๐Ÿคฃ

waxen scroll
#

@hazy sandal stupid question. you're trying to reach the pfsense using 10.10.10.254 and not its public IP, right?

hazy sandal
#

Yeah

rocky badge
#

Are you on windows or linux

waxen scroll
#

k. just making sure

hazy sandal
#

Doesnโ€™t work on WiFi, but works wired. Both win and Debian 10

rocky badge
#

Routes ok? nothing blocking it on those?

waxen scroll
#

its the same LAN subnet, should have a local route regardless

rocky badge
#

You can't assume anything with Windows ๐Ÿ˜‚

hazy sandal
#

Shouldnโ€™t be. I regularly run route -f

#

Since Iโ€™ve been messing a lot xD

rocky badge
#

lmao

waxen scroll
#

@rocky badge did you know you can make a tap with windows or linux?

rocky badge
#

Yeah

hazy sandal
#

I need a dual nic pc for that, right?

waxen scroll
#

yep and make a bridge interface

#

then wireshark the bridge interface

rocky badge
#

yeah

hazy sandal
#

Okey. Dammit. My only multi nic box is the pfSense one ๐Ÿ˜ฃ

waxen scroll
#

i dont see why you couldnt make pfsense do it at the same time

#

maybe blob knows

rocky badge
#

pfSense can bridge

little schooner
#

@rocky badge have you tried tnsr in a lab environment?

rocky badge
#

no

hazy sandal
#

But I might be able to pull the card from an old xp box my kids are using, disconnected obviously ๐Ÿคฃ

waxen scroll
#

uh oh. heres packet capture king

little schooner
#

I read one of their blog posts that says its free for noncommerical use

rocky badge
#

it is

little schooner
#

but I wonder if it supports any of the plugins that work on pfsense

#

I want to replace the edgerouter

waxen scroll
#

but the edge router is purpose built and low power while your pfsense isnt

#

๐Ÿ˜ฆ

little schooner
#

@waxen scroll right. it seems to have that power advantage

#

but what if the new intel cpus use only like 5W

#

i can consider it again

hazy sandal
#

Iโ€™ll look into tapping it tomorrow ๐Ÿ˜ hope I can get this to work. Thanks for the tips and tricks! They sure will come to use somehow sometime! ๐Ÿ˜

waxen scroll
#

maybe in tiny form factor but thats gonna be a weak CPU... no packet switching all packets hit cpu

#

cpu 100%

#

gross

little schooner
#

the blog post mentioned someone using a xeon cpu, quad core, at 3.5+ ghz and it handled 40gbps traffic fine

#

but thats a lot more power.

waxen scroll
#

ive seen laptops cpu hit 100% just from 1gb traffic incoming on their NIC

little schooner
#

ouch lol thats awful

rocky badge
#

@little schooner, @chrome hound does roughly 10Gbps on pfSense with a 4790K iirc.
I use a 4460 and I can do Gigabit just fine.

little schooner
#

even 5gbps is fine for my use case

#

its good to hear though

#

heh i used to have that cpu

#

thats when I upgraded to the 8700k

waxen scroll
#

im very pleased multiple people in here are excited about wireshark, tcpdump, taps, IT change process, documentation

rocky badge
#

Yeah my desktop is a 8700K

little schooner
#

tcpdump is awesome. I used it the other day to remotely capture traffic from camera hosts and see if they were making telnet or ssh connections out to the internet

#

its still trying to make telnet connections out but no more ssh

#

the camera firmware upgrade didn't change that, and I was hoping it would

#

I can disable ssh service now in the new firmware

waxen scroll
#

its from china, of course not

little schooner
#

hikvision... yes a china brand

#

edgerouter has tcpdump built in so its so fast to verify stuff with

#

I get the answer immediately

waxen scroll
#

yep

little schooner
#

i love that about it

rocky badge
#

pfSensed as well ๐Ÿ˜‰

little schooner
#

good stuff.

#

tnsr with a quad core is what I want to try at my moms house.

#

to see what its all about

waxen scroll
#

thats like testing in prod

chrome hound
#

your PCI lane will also slow down your line speed you can process

waxen scroll
#

thank you. another pfsense hater

little schooner
#

I got backups units handy

waxen scroll
#

๐Ÿคฉ

somber meadow
#

man this arris surfboard doesn't want to give me a stable network connection

waxen scroll
#

arris told me off once on a warranty claim

#

told them ๐Ÿ–• you're taking this back whether you want to or not

#

convinced amazon to take it back way out of return window

somber meadow
#

this thing worked for like a year or more properly

#

only more recently doing this to me

rocky badge
#

@chrome hound ๐Ÿ‘€

Tracing route to cloudflare.com [2606:4700::6811:af55]
over a maximum of 30 hops:

  1    <1 ms    <1 ms    <1 ms  router.home.vlan.ipv6.ryois.me [2001:470:e204:3::1]
  2    32 ms    29 ms    33 ms  tunnel600116.tunnel.tserv13.ash1.ipv6.he.net [2001:470:7:4ba::1]
  3    28 ms    37 ms    28 ms  10ge2-2.core1.ash1.he.net [2001:470:0:90::1]
  4    39 ms    74 ms    39 ms  13335.ash.equinix.com [2001:504:0:2:0:1:3335:1]
  5    31 ms    29 ms    30 ms  2606:4700::6811:af55
ember haven
#

@tame carbon Why not just use github desktop app instead of sourcetree? Are there any differences?

waxen scroll
#

y u use tunnel

#

isnt urs native?

peak cloak
#

@ember haven or you could just use git

#

that's what I do

#

the differences are just more features

ember haven
#

ahh ok

peak cloak
#

github, gitlab, etc. are all based on git

#

you could host your own git server too

#

just plain old git

tame carbon
#

@ember haven basically what he says ^

#

I just use commandline, and any remote

#

at work we use bitbucket

#

privately I use gitea

unborn sluice
#

Bitbucket ricardo

rocky badge
#

@peak cloak I use a mix of git and Visual Studio Code's git lol, and my hosted Gitlabs

#

I have a gitlab at home and a gitlab at school

#

I love Gitlab's CI/CD lol

peak cloak
#

I should get gitlab setup

#

Boy do I need to get my proxmox machine back up

#

I may be able to get a free r710 from school

#

but those are loud and suck power

#

probably just gonna save the drives and other parts

waxen scroll
#

i have an r710

#

it does suck power. its not too loud as long as you arent loading the CPU up. but at idle you arent going to want to keep it in a living area

#

if you have a basement thats best. you wont really hear it upstairs unless CPU is loaded up

peak cloak
#

yeah, I worked a little bit with it. My networking stuff is in the basement

rocky badge
#

my R620 isn't that bad

peak cloak
#

it's more of the power I'm concerned about

#

Rx20's are better

rocky badge
#

I also have my gitlab doing discord notifs lol

peak cloak
#

nice

high wolf
#

lmao who's your ISP
@thick minnow Optus - in Australia

thick minnow
#

ok

#

im in my router settings rn

#

Normally I cant access it

#

any ideas

#

thinking firewall

#

could it possibly be my ISP blocking me from accessing my admin page?

#

Should get my ip dynamically from my isp or should i set it as static?

#

same thing with my DNS, dynamic or static?

peak cloak
#

Unless you pay for static, then no static ip for you

#

DNS, do whatever you want

thick minnow
#

is that like my router admin page?

#

or something else

peak cloak
#

that's your public ip

thick minnow
#

k so i dont care about that

#

what about seeting my default DMZ server to 192.168.1.0

#

think thatll change anything?

peak cloak
#

idk anything how those weird routers do DMZ

thick minnow
#

is that like admin control panel or naw

peak cloak
#

no

thick minnow
#

dang

#

i have a remote management setting

#

think that can help me access my admin page or probably not

peak cloak
#

maybe, idk what's in it

unborn sluice
#

what are you even trying to achieve, why DMZ

thick minnow
#

once i exit out of my router admin page i cant access it until a router restart

peak cloak
#

he doesn't know what DMZ does @unborn sluice

thick minnow
#

so im wondering if one of these settings is interfering with that

peak cloak
#

I feel like it's just a firmware problem

waxen scroll
#

@little schooner tell me about change process

thick minnow
#

ive factory reset my router

peak cloak
#

fully?

thick minnow
#

i believe so

peak cloak
#

did the wifi SSID reset?

thick minnow
#

i have a little reset button i need press using a paper clip or something

unborn sluice
#

so the admin page is a one-off

#

"secure"

thick minnow
#

held that down for 7-10 seconds

#

no like after i exit out of it, it refuses to connect

thick minnow
#

i think so

#

like i never changed it

#

like thing is

#

i could care less about having access to it

#

but me and a bunch of my friends have a server that i host

unborn sluice
#

wait wait

thick minnow
#

and the port changes everytime i launch it

unborn sluice
#

We are asking if the SSID of the WiFi changed or not

thick minnow
#

my router has Name(SSID)

#

that hasnt changed

#

not sure if im looking at the right thing or not though

unborn sluice
#

and the port changes everytime i launch it

#

isn't this app configurable

#

not the router's concern

thick minnow
#

from what ive tried it isnt

unborn sluice
#

your router shouldn't care what port your app runs on

thick minnow
#

like its a minecraft lan server that i port foward to my router

#

and then they can play on it like that

#

so if there is im more than open for suggestions

peak cloak
#

wait I'm confused

#

where does it change

thick minnow
#

in minecraft

peak cloak
#

on the server or on the router

unborn sluice
#

so everytime you launch the minecraft server it uses a different port

thick minnow
#

server

#

correct

#

and from what ive seen so far its random

peak cloak
#

are running on windows or linux

unborn sluice
#

Not the router's problem tbh

thick minnow
#

windows

peak cloak
#

there's your problem

thick minnow
#

?

peak cloak
#

avoid running servers on windows at all costs

unborn sluice
thick minnow
#

well yeah

peak cloak
#

I've ran MC servers, all you do is open the port on the machine and then just specifiy the port for MC to use in the server.properties file

thick minnow
#

but like literally we have 5 people on at time max

unborn sluice
#

I am still confused why would minecraft change port every launch

thick minnow
#

i use a LAN method

unborn sluice
thick minnow
#

so that way i can launch the server and minecraft at once

unborn sluice
#

so this is not a dedicated server

thick minnow
#

nope

peak cloak
#

oh, the Open to LAN things

#

oh

thick minnow
#

yeah

peak cloak
#

yeah

unborn sluice
#

OHHHH

thick minnow
#

then i port foward that to my router

#

and boom

#

they join

peak cloak
#

yeah that's your problem

#

it's called LAN for a reason

unborn sluice
#

boom, expose the LAN minecraft that isn't built to be secure

peak cloak
#

doesn't it use broadcast or something too?

thick minnow
#

not a clue

unborn sluice
#

does it though

thick minnow
#

like its worked before

#

and im too lazy to set a up an actual server

unborn sluice
#

spam the broadcast address with minecraft

peak cloak
#

it's not hard

thick minnow
#

cause its modded and i dont have a clue how to do that

unborn sluice
#

We have people here who are server owners/develoeprs

#

you can try to ask us though

thick minnow
#

like for the dedicated server stuff

#

ive gotten it to like boot up and everything

#

but like

#

idk how to add mods or let me friends join

unborn sluice
#

I mean you're exposing an app to the internet that was meant for LAN

thick minnow
#

yeah

unborn sluice
#

not the most secure

peak cloak
#

That's what got me started

unborn sluice
#

or just don't turn off the server

thick minnow
#

i dont have ubuntu

unborn sluice
#

checkmate

peak cloak
#

WSL exists

thick minnow
#

not a clue what that is

unborn sluice
#

are you runnign your minecraft on WSL

peak cloak
#

no, god no

unborn sluice
#

good gracious

peak cloak
#

centos VM on proxmox

unborn sluice
#

thank god

thick minnow
#

like when it comes to routers

#

port fowarding is like the max i know

#

so i dont have the slightest clue what any of that means

unborn sluice
#

what's your linux experience

thick minnow
#

0

#

never used it in my life

unborn sluice
#

at this point, i might just direct you to linode

#

since minecraft is an app(?) ready to be deployed

thick minnow
#

yes

#

i 100% know what that means and understand that fully

#

but for those who dont know

#

care to explain?

peak cloak
#

Linode is a cloud computing platform

unborn sluice
#

basically you pay for servers

#

they hsot your minecrat

thick minnow
#

oh

peak cloak
#

the thing is, he probobly doesn't want to pay

#

neither do I

thick minnow
#

^

unborn sluice
#

neither do I

thick minnow
#

like me and friends only play for like a few hours a week

peak cloak
#

yeah

unborn sluice
#

miencraft realms exists for a reason though

peak cloak
#

you have an older computer somewhere

unborn sluice
#

for people who want to have a minecraft server but don't know the "how to" in servers

#

though am not sure about modding realms

thick minnow
#

modded though

peak cloak
#

@unborn sluice I mean MC servers is what got me into it

thick minnow
#

so idk how to deal with that

peak cloak
#

yeah, not on realms

unborn sluice
#

minecraft still lel

#

realms is for kids

#

but seriously though, even for friends I would not consider realms

thick minnow
#

alright ima try to do the dedicated minecraft server thingy

unborn sluice
#

please dont' use WSL

peak cloak
#

@thick minnow look for an older computer somewhere

thick minnow
#

i dont need it to run 24/7

peak cloak
#

I use an optiplex 3010 for all my things

#

yeah

#

so you can just turn it off

#

you could even make it turn on at certain times

#

DELL bios lets you do that

unborn sluice
#

what's the spepc of optiplex 3010

thick minnow
#

any reason why i couldnt just use my main desktop?

peak cloak
#

because windows

#

you could

#

I just don't recommend it

unborn sluice
#

a optiplex 3010 is available in my area for $99ish
but i3 3rd gen

peak cloak
#

@unborn sluice i5-3470@3.2 ghz, 8GBram, 1tb hard drive

#

depends on the version

unborn sluice
#

i doubt that's 8MB tbh

peak cloak
#

good catch

unborn sluice
#

i might just buy one lel

#

but my freenas is i5-4th gen

#

and all it does is store files

peak cloak
#

now I want to get a server

#

something more powerful

unborn sluice
#

the used market in my area is crap

#

who markets an old optiplex as a gaming

peak cloak
#

where are you?

unborn sluice
#

Asia

peak cloak
#

oh

#

I was able to find a full sized server cabinet for free

#

it was like a 2 hour drive though

#

In PA

unborn sluice
#

there are no IaaS / PaaS in my city

#

so no free used server stuff for me

#

Some of the VPS providers are in like 2 cities away

peak cloak
#

NJ/NY area has a bunch of stuff. Most of it is old though

unborn sluice
#

don't really mind old tbh

#

as long as I can still use it

peak cloak
#

power, that's the main thing

#

I don't mind noise too much

unborn sluice
#

As long as the used server doesn't suck up much power

peak cloak
#

Rx20's or HP G8's would be the lowest gen I would go

unborn sluice
#

I actually want towers instead of racks

peak cloak
#

both are nice

#

racks take up lots of space if you don't have a rack

#

towers you can just place anywhere

unborn sluice
#

Dell Optiplex 9020 i5 4thgen / 4gbram for $240ish

#

dang the prices

#

I just want free server stuff

#

might move to a diff city or country for free servers

peak cloak
#

no free servers here

#

well almost free for super old ones

unborn sluice
#

I don't really want to spend $200 for used hardware (optiplex)

thick minnow
#

k

#

well i just made like a dedicated server thingy

unborn sluice
#

might just build a pi cluster

thick minnow
#

so ima see if it works

#

getting a lot of errors

#

but thats future me problem

#

probably 5 minute future me problem

peak cloak
#

old

thick minnow
#

op

#

server crashed

unborn sluice
#

$20 for not posting

peak cloak
#

oh, didn't see that

#

not worth it even if it worked

#

this however is nicer

thick minnow
#

rip

#

server keeps crashing at the same area

peak cloak
#

from where? linode?

thick minnow
#

windows

peak cloak
#

oh

#

dedicated MC server?

#

are you running from cmd-line

#

how do you know it's crashing

thick minnow
#

cmd-line

#

out of memory

peak cloak
#

give it more memory

thick minnow
#

i gave it some more ram

#

yep

#

test number 2

peak cloak
#

paste what you are typing here

thick minnow
#

i created a bat file with this

peak cloak
#

yeah, that's what I do sorta on linux

#

just .sh files

thick minnow
#

hold up

#

java -Xmx2048M -Xms2048M -jar forge-1.12.2-14.23.5.2847-universal.jar nogui

#

got that rn

#

eyyy

#

stuff loading