#networking

1 messages · Page 370 of 1

nimble sable
#

as far as i know, if your wifi router is acting like an actual router, it will either do dhcp itself or won't quite work as a router (i don't think you can have a dhcp server on a completely seperate network, which the LTE router is in, due to the presence of the Wifi router...unless you mean "wifi access point" which just does Wifi, like a wifi version of a switch). Also, in order for DNS to propogate to every device the best way is to set it on the DHCP (i.e. tell every device that "pi hole" is the dns server as part of the dhcp settings. which i don' tthink you're accounting for. What are you trying to do here?

stark otter
#

Uhh, let's rephrase that a bit.
The LTE Router is the "modem".
WiFi Router is the WiFi AP.

What am I trying to do is that I extend the network connection from the modem to the WiFi AP.

#

Also, in order for DNS to propogate to every device the best way is to set it on the DHCP
So, does that mean I have to disable DHCP from the "modem" and switch it on the WiFi AP?

stark otter
#

Anyway, if this setup kills the entire network I have to resort by setting up manually the DNS on all devices because stock PH ISP router sucks.

nimble sable
#

whats the wifi thing you have?

sudden kayak
#

possibly yes in the long run

nimble sable
peak cloak
#

It's Comcast after all

glossy crystal
#

Has anyone attempted adding WiFi antennas to a laptop?

thick minnow
#

Hi, I have a static IP from my ISP and they gavee a FQDN (my_ip.adsl.isp_name.tdl) can I ask them to change it to mydomain.com? They even can do that?

#
> ping my public ip

64 bytes from ip.adsl.isp.tdl (ip):...
thick minnow
#

Yes that what I did but still this domain shows up

#

So even

> ping mydomain.tld

64 bytes from ip.adsl.isp.tdl (ip):...
thick minnow
peak cloak
#

reverse dns

thick minnow
#

So I'm on a revers proxy?

peak cloak
#

no

#

the whole getting domain name from IP is called reverse dns

#

normal dns is domain -> IP

#

basically ask ISP if you can change reverse dns record for your IP

thick minnow
#

But just in general they can?

peak cloak
thick minnow
#

OK thanks so match

#

@peak cloak sorry for pinging, dose every one have a rdns?

peak cloak
#

but it has to do with a PTR record

thick minnow
#

👍

latent bobcat
#

my uap ac lr came lets go

dark sphinx
#

Anyone here use the modem and router provided from spectrum

cedar igloo
#

Are LDAP connections only allowed for a set period of time?
Are they supposed to be short or long-lived connections?

peak cloak
#

good video on how bgp, dns works

carmine moss
#

Could someone help me setup my mikrotik router with 2 AP's in 13 hours just DM me. thanks in advance! as it keeps having weird problems no matter what I configure and what other people tried to help me with

blazing gorge
#

anyone have any clue why nmap gives me a 404 error when trying to install it on raspbian? sudo apt-get install nmap

fading mesa
#

Heres the situation:
Server at Location A with Fiber Internet 1G/1G
PC at Location B with DSL Internet 1G/50mb
PC uses Windows built in PPTP VPN to connect to Server for file access
When PC download file from server it downloads at 5MB/s
Shouldnt it download at 100MB/s since the server has an upload speed of 1G

undone basin
visual crane
#

@blazing gorge did you run sudo apt update ?

blazing gorge
#

It’s weird cause every time I boot up my vm it makes me go through a set up process and I have to reinstall everything

visual crane
#

@blazing gorge Try apt show nmap and pinging the repo listed on the APT-Sources line? That's odd, did you remove the .iso from the virtual disk drive after installing?

blazing gorge
#

Oh wait do I have to do that?

visual crane
#

Yes, otherwise it will boot from the .iso

blazing gorge
#

Lol

thick minnow
#

@faint gale I need some help with my networking

low pond
#

I like how you mention some random dude who has the name of smart dude, and break all rules of public chat question asking like "do not ask to ask", etc, gl getting your answer

thick minnow
#

He is my dearest friend and I believe he can help me with my troubles.

low pond
#

Then take it to the dm's? 😄 if you know them...

#

This should be a public chat, you ask, any one here can answer, not just a single specific dude

thick minnow
#

Sorry, didn't mean to commit a hate crime to this server.

#

I will take it to DMs.

low pond
#

🙄 don't know if your trolling, just gave good advise for asking almost any question anywhere, not only LTT. whatever, I told what I told

latent bobcat
#

hey does anyone know how to configure wireguard with a dynamic port? or do i have to run multiple instances with different ports

latent bobcat
#

bro, if he pings a specific dude, its probably because he needs that dude

ruby bramble
#

Ayo can someone help me setup my unifi ap (just the ap no cloud key or management shiz)

thick minnow
#

is it worth it switch from 100mb ethernet to gigabit ethernet for streaming?

ruby bramble
#

What res and how many people on your network

thick minnow
#

res?

ruby bramble
#

Resolution of stream

thick minnow
#

5 including myself

#

720p to 1080p

#

on a bad day the download speed is 40mb and upload speed of 35mb

#

but the current is

#

83.47 dw 73.23 ul

ruby bramble
#

Damn you ain’t getting as advertised

thick minnow
#

?

ruby bramble
#

You ain’t getting 100

thick minnow
#

is it worth it switch from 100mb ethernet to gigabit ethernet for streaming?

thick minnow
ruby bramble
#

Have you had bad problems lately with streaming

thick minnow
#

I haven't tried streaming at all, still trying to setup stuff

ruby bramble
#

Well try it first if you have problems then upgrade

thick minnow
#

ahh, ok then, thanks

thick minnow
#

Hi, is that a good for main router for a home? I have servers and sec cams etc. (Mikrotik CRS328-24P-4S+RM)

livid compass
arctic surge
#

So I'm wondering, if I were to order 2 asus routers. And have one connected to the modem(Fiber optic) and the other one routed using CAT6 cables to the attic. Obviously it would have full coverage, but does it like load balance, so say I have my PC and other devices connected to the one in the attic(That is daisy chained to the one downstairs connected to the modem). So like when I'm downloading something on my pc(Which is ethernet connected to the attic one) it would make full usage of the bandwith we got from our ISP

#

Aka that it won't merely act as an extender but actually do the calculating

dusty solar
#

so my dad FINALLY got us onto a new isp. right now i get 57mb download and 30 upload on a 100mb download plan (dont know the upload). but now we are switching to 300mb download and 30 upload (i will replace the switches in the house to gigabit switches) would i see a tripling of my download speed or would i get even more (looking generally at steam downloads)

#

because i download at 7mbps on steam now

#

and if i would just say i tripled it it would download at 21mbps

#

would my assumation be correct?

nimble sable
nimble sable
nimble sable
dusty solar
#

thats download ookla says

#

but steam thinks otherwise

#

but ookla is probs mbit

nimble sable
#

yeao

#

small b vs big b...so youre getting about 50+

#

which is. idk what's happening with the other 50

short lion
#

Sounds about right when converted

dusty solar
#

but im getting new switches for the 300mbit internet

short lion
#

8mbps\1MB

dusty solar
#

bcs i think these switches are bottlenecking it

nimble sable
#

well if everything remains the same u shd see tripling of speed

#

if not more

#

IME steam downloads are REALLY fast

short lion
#

Wait are u Daisey chaining switches?

dusty solar
#

i have no choice

#

modem of isp is downstairs and my room is well almost opposite of the house from there

#

but its only 1 switch between my modem and me

short lion
#

And presumably cat 6?

dusty solar
#

dont know that tbh

short lion
#

It should say on cable. Cat5e should be alright anyway for short distance.

#

Yeah that shouldn't really be bottlenecking unless they aren't gigabit

dusty solar
#

cat 5 4 pr

nimble sable
#

see i didn't think cables made that much of a difference, until i accidentally used the crap i got with my phillips hue to connect my wifi AP

#

cut my speed down to 25%

short lion
#

If the switch is only 100mbps then that's the problem

dusty solar
short lion
#

But if u know it's gigabit then there's something else up..

dusty solar
#

but do multiple switches in between modem and pc/device make the speeds go down?

short lion
#

It can yeah depending on how many devices demanding the internet.

dusty solar
#

oh ok, my brother lives a floor above me (top floor) and has 2 switches in between his pc and modem

#

but thanks for the info 🙂

hollow marlin
nimble sable
#

i think what you want to look at as well is stuff like "switching capacity" or whatever it's called (usually an issue with VERY lowe powered or old switches and/or a LOT Of devices that are ultimately just all going through one switch). i've personaly never had any issues even with wierd daisy chaining and long cables (with the exception of the one time i used whatever the hell the phillips hue cable was). I make sure to buy well known gigabit switches

hollow marlin
#

Focusing on switching capacity for anything past 2010 is really not required. Any basic dumb switch is switching in hardware nowadays.

nimble sable
#

yea otherwise i can't really think of how daisy chaining would make a difference

hollow marlin
#

Im not. I was only commenting on that particular cable included with the hue

agile thicket
#

Ah

#

It's just odd they would include that since it's usually used for phone lines lol

nimble sable
dusty solar
#

i will check if my ethernet cable is connected directly to the modem instead of my dads switch near the modem for downstairs

nimble sable
hollow marlin
#

Yeah, PoE is not supported over 2 pairs.

agile thicket
#

Positive is ran by the blue ones. In a 2 pair link you're not getting the full circuit (Blue gives positive, brown gives negative)

#

green and orange run data

#

Basically pin 4-5 and 7-8 are needed to do poe

#

To give you reference

nimble sable
# agile thicket

oh yea i realized that afterwards, just wasn't expecting it right off the bat

reef cloak
agile thicket
#

Gawd, there's one thing I'll never get over with my job.

Major anxiety and panic attacks before production changes

#

Especially when things hang, knowing if it breaks, you're gonna have life flashbacks

waxen scroll
#

I only feel slightly nervous

#

I get to do a massive change affecting the servers that make our money

#

24/7 environment

agile thicket
#

You have a test environment right?

agile thicket
waxen scroll
#

its too expensive to make a test environment for networking

agile thicket
#

Oh gee. Always have one to replicate what you want to do to see what happens

#

How much hardware are you talking?

waxen scroll
#

we cant buy a million dollars in network gear just for test

peak cloak
#

commit-confirm 2

agile thicket
#

I wanna ask so many questions but it’s not safe to discuss any of this here

#

I do wish you luck though

#

That’s a scary place to be for sure

peak cloak
#

almost accidentally deleted whole / on server today

waxen scroll
#

you could argue virtual butttttttt trust me, ive been burned a LOT by hardware doing something unexpected. a virtual cant replicate that

agile thicket
#

We all have

peak cloak
#

Was supposed to be */

waxen scroll
#

for example, a switch said it has a valid route somewhere but the linecards decided not to program it

agile thicket
#

And yes virtual was gonna be a recommendation but you said networking and there’s not a lot in that field in regard to virtual

agile thicket
peak cloak
#

I don't think anyone is going to be labbing whole network

agile thicket
#

But I do enjoy ESXi

#

And trust it almost completely

peak cloak
#

Maybe a specific setup, yeah, but not the whole thing

waxen scroll
#

the change script for what i'm doing is like 5000 lines

#

touches 30 pieces of gear

#

took a month or so to write

primal ice
#

and 2 seconds to propagate and take down the whole network. :p

agile thicket
waxen scroll
#

restores like that will cause an outage

#

i have a ton of lines of script to back it out so there is no outage

#

networks are no longer one/two main devices per zone

#

you have a bunch of zones sharing the same equipment

cunning lion
#

1 pack equals 2 adapters

#

ZERO need for a filter since the coaxil is already isolated from everyone else since its a Saterlite network and NOT a cable network

#

We got rid of the Satelite TV and just have a big atenna in its place now for OTA TV in the entire house

#

Since it was DirectTV the spliter is perfectly fine for MOCA. AKA 1 Spliter that then runs to each room

hollow marlin
waxen scroll
hollow marlin
#

vMX can mimic it in software

waxen scroll
#

the l3 table? valid next hop.

#

linecard literally saying null0

waxen scroll
#

@hollow marlin how is virtual hardware bug formed?

thick minnow
#

Hi, it might be stupid question.
Could someone please send me a resource to download imgs for network diagrams?

thick minnow
#

I meant switches images and routers to put in my digram

slow pivot
thick minnow
#

Thanks

river bobcat
#

Hi everyone, I hope somebody can help with a networking question? Not sure if this belongs in support or not...

It's written here:
https://linustechtips.com/topic/1380969-splitting-bandwidth

peak cloak
#

and proper APs with qos

river bobcat
# peak cloak and proper APs with qos

Something like Ubiquiti UniFi-AP-AC PRO Access Point?

So will that have the same smoothness for people when they walk around? So when I have 2 of these laying around and somebody walks from 1 point of the building to another it the device will automatically switch to the other access point?

peak cloak
#

for 100 people you really should have some proper network design

#

having lots of devices on one flat network could also slow things down a lot

#

broadcast, etc.

river bobcat
#

And what about splitting the bandwidth?

peak cloak
#

use qos

#

to limit a bandwidth on a user

river bobcat
#

Can qos also assign a portion of the total bandwidth to 1 device?

peak cloak
#

uhh, yeah

river bobcat
#

Do you know any good APs that have this option?

peak cloak
#

basically anything actually prosumer/enterprise

river bobcat
#

👍 alright, thanks

peak cloak
#

some do it better than others

#

you really want to limit bandwidth on wifi clients

#

200mbps for 100 people is really stretching it

#

technically 2mbps per person

river bobcat
#

Well it's not for them to stream

peak cloak
#

still for work?

river bobcat
#

And not all there at once usually

peak cloak
#

tp-link omada have this

river bobcat
#

No it's not for work. Those people don't actually "need" it. It's just some extra service to provide for them

peak cloak
#

ah got it

river bobcat
# peak cloak

This looks nice if it can be set per device or user

peak cloak
#

It would be best to somehow so it for everyone, per ssid

low pond
#

Is it a bug in my side or they don't exist in this group?

hollow marlin
# waxen scroll linecard literally saying null0

I can't imagine CEF's table is full which is all I could think that would have different next-hops vs the routing table. vMX can simulate this due to their split of the CP/FP in separate nodes. Bugs however, thats just part of the fun pepoJuice

low pond
#

sip

rocky hawk
#

So I'm building right now my office and I'm putting everywhere cat7 ethernet with a 10Gbit switch and an ubiquiti dream machine pro SE as a router.

But since I have some extra funds for an overkill setup and a part of this setup is a decent NAS for all my computers (Mac Mini + workstation + some mobile devices) I was wondering if I should go for a totally overkill network cards for it. I'm thinking about 40 Gbps direct connection to my workstation and a 10Gbit for everything else. Anyone got some experience with a setup like this?

#

I'm mostly interested in having a NAS directly connected to a workstation with 40 or 100Gbit connection, since I already have some experience with regular 10Gbit ethernet at home

nimble sable
peak cloak
#

You can't use ethernet

#

That's one thing

rocky hawk
#

I could use cat8, but there are no cards

nimble sable
#

nah, just go fiber

clear igloo
#

There is no equipment that uses anything over 10G over copper 8p8c

nimble sable
#

om3 can do 100 too right?

clear igloo
#

Yes

peak cloak
#

I don't even know if sfp+ can do over 10g

nimble sable
#

no

peak cloak
#

I think you need qsfp

clear igloo
#

sfp+ can do 25G

peak cloak
#

Ah

clear igloo
#

but that's SFP28 technically

rocky hawk
#

I was thinking about getting just two mellanox connectx cards and a cable. My NAS will be just next to my workstation

nimble sable
#

a DAC cable then?

clear igloo
#

SFPDD was rumored at one point, might see it in a few years, who knows

nimble sable
#

with 40G too, idk how many switches there are that support that that aren't super expensive

clear igloo
#

40g fiber? pretty cheap usually for used switches

rocky hawk
#

I don't really need a switch since only one other device can do 40 Gbit other than my NAS

nimble sable
#

really? nice

clear igloo
#

Then you'll go DAC or fiber with 40G QSFP on either end

rocky hawk
#

sounds good 🙂

nimble sable
#

just connect computer to NAS directly?

rocky hawk
#

yeah

#

NAS will have also a 10Gbit ethernet card for other devices

#

so 10Gbit for everything, 40 Gbit for the workstation

nimble sable
#

ooh interesting setup

rocky hawk
#

I just wanted to get a lot of fast storage for the workstation, but keep it on the network if I need to access it from other devices

nimble sable
#

why not 40Gbit to a switch with maybe just the 2 or 3 40Gbit ports?

#

like i'm doing that but one level lower. NAS gets 10Gbit to switch, workstation gets 2.5 all else gets 1

rocky hawk
#

I already have at home 10Gbit everywhere

#

including 10Gbit up/down FTTH ISP connection

nimble sable
#

O.O

nimble sable
#

where do you live, and how can i move there

rocky hawk
#

Poland, it costs $25 a month and it's uncapped

peak cloak
#

in the us you can get it too, just costs a lot more

nimble sable
#

ok...time to move to poland

rocky hawk
#

yup, I used to live in California a while back 🙂

peak cloak
#

don't want to live in poland tbh

#

all my family lives there

nimble sable
#

LOL

peak cloak
#

well that's not the reason

nimble sable
#

genuinely asking, but maybe slightly off topic, @rocky hawk how is the language situation in poland, like how well can you get by with only english

rocky hawk
#

Oh, I speak both languages and a few more

nimble sable
#

i was looking at germany for PG but realized i pretty much need to be able to learn in german if i want to get anywhere

rocky hawk
#

but I know that english native speakers here and they don't really complain

nimble sable
#

oh nice

rocky hawk
#

it's much better in bigger cities and much worse in rural areas

nimble sable
#

wow, and here i thought my symmetrical gigabit was a big deal

peak cloak
#

Chattanooga in Tennessee has 10g residential

#

also where ever snazzy labs lives

rocky hawk
#

my secondary ISP is 1Gbit symmetrical

#

but Ubiquiti DMP doesn't support this kind of a setup, so it's a major PITA to use

peak cloak
#

don't use Ubiquiti

nimble sable
#

lol why @peak cloak ?

peak cloak
#

I hate unifi

nimble sable
#

hmm doesn't nvme cap out at 32Gbps?

rocky hawk
#

I like their stuff, but it's buggy when you have anything faster than 1Gbit

peak cloak
#

the webui, urgh

#

edgeos is fine

nimble sable
peak cloak
#

netgear same thing

#

ew

rocky hawk
#

I've hacked a netgear switch with noctua fans

#

to get a cheap 10Gbit ethernet. I've literally took a drill to it to make it work

peak cloak
#

bruh

#

just get a CRS305

rocky hawk
#

but it was still loud and hot, so I've replaced it with an ubiquiti aggregation switch

rocky badge
#

I need more SFP+ ports but I cba to buy more shit 😂

nimble sable
rocky badge
#

Been looking @ this

peak cloak
#

goddamn

rocky badge
#

2 for each server, desktop, UDMP, access layer switches

peak cloak
#

can't you get something used from like cisco or juniper

rocky badge
#

ew no

nimble sable
rocky badge
#

This switch

#

Old switches you'd find on eBay are average power consumption @ 100W or higher

rocky badge
#

Plus SDN lol

#

All under one vendor 😌

nimble sable
#

SDN?

rocky badge
#

Software Defined Networking

low pond
#

is yeetco meraki good or

rocky badge
#

8x8 MU-MIMO, 5GbE, layer 7 on the AP

low pond
#

an friend saw a good deal on some Meraki switch other day

rocky badge
little schooner
rocky badge
#

no

little schooner
#

though it's really nice

waxen scroll
#

Hmm that may be cheaper than the alternative to be honest

#

but hes cheating, I think thats education pricing

#

$2.7k for a normal big business would be cutting it close for not going meraki

#

2.7k times 200 or whatever

copper rover
#

Can anyone recommend a WiFi 6 router that's not super expensive and doesn't contain garbage firmware?

primal ice
#
peak cloak
#

I have the eap225

#

Not wifi 6, but prob similar firmware

copper rover
peak cloak
#

I heard eh things about Asus

#

You won't be able to do anything remotely advanced

tribal meteor
#

if you want good security go linksys

peak cloak
#

Lol

#

Security wise they are all basically the same

#

Block all new from wan

tribal meteor
#

I mean more options, linksys provides more

#

can't do much with ASUS

peak cloak
#

Like?

tribal meteor
#

you can individually filter devices on linksys, on ASUS you cannot, if filter, it filters all devices

#

little security features like that

peak cloak
#

Wdym by filter?

tribal meteor
#

like websites, etc

peak cloak
#

I mean, that's not really security

#

More like parental controls, wonder how it was implemented

#

Dns, or actual blocking

copper rover
#

I'm looking for an unubtainium here, but seeking A WiFi 6 router with firmware based on one of many open sourced router code

tribal meteor
#

I've use both, I say go with ASUS if you want more features

copper rover
#

If ASUS's firmware is based on one of those open sourced projects, then that at least gives me some comfort of security. Linksys and DLINK are garbage

primal ice
#

asus uses their own custom sauce.

copper rover
#

😦

primal ice
#

generally built upon some small linux distro that is 10 or more years old. just like linksys and dlink.

tribal meteor
#

yea, linksys and dlink are very outdated

peak cloak
thick minnow
#

don't bother imo.

#

unifi ap's and switches are great, dont bother with their routers. grab an old server like a t330(you can get these for free from IT companies) and throw an OSS firewall on it like opnsense or pfsense, or grab a protectli box or something along those lines.

peak cloak
#

I just know myself I would never get it since I hate unifi, maybe if it was edgeos it would be better, but I think it actually does run edgeos under the hood

thick minnow
#

pfsense is amazing if you know what youre doing.

peak cloak
#

Using servers as routers sucks

thick minnow
#

free router's dont suck.

peak cloak
#

High power, noise, not built to the task

thick minnow
#

well..if you get it from your isp it does

peak cloak
thick minnow
#

so throw plex on it too.

#

or unraid and run the router in vm.

peak cloak
#

If you want a basic but advanced router, get a hex or er-x

thick minnow
#

there are millions of options.

peak cloak
#

Ok wtf, unRAID sucks

#

All the bad options

thick minnow
#

unraid absolutely has its uses.

#

proxmox if you hate unraid.

peak cloak
#

You do not want to virtualize your main router

#

Bruh

thick minnow
#

i dont disagree, but you say everything sucks. what do you recommend. because edgerouters are bloody awful compared to something like pfsense which gives you a commercial grade ips.

#

with things like suricata and such.

#

what are you going to do, get a watchguard, or a sonicwall, or a meraki sub? and pay thousands in licensing?

peak cloak
#

Pfsense is just eh, I hate it's webui, vyos all the way if you want a software router. Er-x is pretty good. You don't need packet inspection

thick minnow
#

YOU may not need dpi or an IPS

peak cloak
#

And most consumers don't need it either

#

Only really need it at companies

#

And for that you want a dedicated machine

thick minnow
#

which a pfsense box can be with something like protectli or a server with an asic in it.

peak cloak
#

Sure, but "throw pfsense on a computer" is not a good router

#

Pfsense for a dedicated appliance for dpi sure

thick minnow
#

i think youre mistaking dpi with ips... they are two very different things.

peak cloak
#

Deep packet inspection

thick minnow
#

ips=intrusion prevention dpi=deep packet inspection.

#

dpi is mostly used for blocking or correctly routing/filtering ssl and/or encrypted packets, ips pulls from things like abuseidb and checks for common exploits sent out and protects you

#

normal people do not need dpi

#

ips on the other hand is far more debateable.

peak cloak
#

Different purpose same thing, both slow down the network, both require inspection of packets

copper rover
#

I agree, I have zero interest in repurposing a Dell PoweEdge server,

thick minnow
#

@copper rover he was going on about how what i said was not an option, so i offered alternatives, i dont disagree.

peak cloak
#

Not a very good option

thick minnow
#

though you can actually make a poweredge rather good at performance per watt for a server on linux, its still a bear of a system

primal ice
#

meh oh I need to update.

copper rover
#

Would the OS be smart enough to offload TCP/IP to the NIC hardware (if the NIC supports it?)

peak cloak
#

Dedicated appliances are just better

copper rover
#

Or would it all be mainline CPU?

peak cloak
#

Most routers run Linux anyway

#

Just have hardware acceleration

copper rover
#

I see, so it would be up to whatever the Linux kernel supports

thick minnow
#

everything from sonicwalls to merakis to watchguards to unifi's all use linux

#

or a variant

#

every modern piece of networking that isnt a dumb switch runs some variant of bsd or *nix

#

and even some dumb switches probably do for that matter.

peak cloak
#

I mean it's basically just a switch chip, where would it even run

thick minnow
#

some dumb switches still have a gui you can access(i dont know why.)

#

most of those are running apache or nginx to throw up that webpage

peak cloak
#

Huh

thick minnow
#

again i think its REALLY dumb

#

but ive seen a few that do

peak cloak
#

Yeah seems stupid to not advertise a feature, but have it

thick minnow
#

^

peak cloak
#

Maybe just commonality between managed and not managed version, idk

thick minnow
#

its basically 9/10ths of the way to a smart switch at that point. honestly its probably for cost cutting, same hardware less software.

#

yeah exactly.

peak cloak
#

And just mark up the managed more

thick minnow
#

cheaper to make a few thousand of the same switch and just cut off the serial port or what have you.

copper rover
#

Web UI for non-managed switches is really more for SNMP I think for things like up-down status

thick minnow
#

thats probably the actual reason, but there are better ways of doing that.

copper rover
#

Netgear is a big offender in this area

#

And their switch firmware is buggy as hell

thick minnow
#

netgear is a name i wish id never hear again when working with smb's

copper rover
#

Yeah, it's trash

thick minnow
#

"its all the same right, this 10$ switch i got off ebay will work just as well as this cisco catalyst switch right?"

peak cloak
#

Yeah I have one and it's a pita

thick minnow
#

no...no it will not.

copper rover
#

lol

thick minnow
#

lol

copper rover
#

D-Link switches are allright...for the price. Can't complain too much. You get what you pay for, but at least you get it

thick minnow
#

d-link routers are horrid though, but yeah, if you just need an at home switch d-link isnt the worst you could do

peak cloak
#

My main switch is a dlink, got it for free so whatever

#

It works, does what I need it to do

#

Poe and all

thick minnow
#

i run unifi switches and ap's at home personally

copper rover
#

Edge Switch, or Unifi Switch?

thick minnow
#

unifi switches

#

all unifi except for routing

copper rover
#

Unifi requires a controller. I'm not sure the Unifi switch has a UI you can use

#

Web UI that is

thick minnow
#

docker.

copper rover
#

I see

peak cloak
#

I have a whole lot of different brands, tplink for APs, unifi flex mini switch, Netgear, er-x, mikrotik

copper rover
#

ZTE is crap

thick minnow
#

zte is and always has been bad haha

peak cloak
thick minnow
#

that being said the only switch ive EVER had catch fire was a tp-link one

copper rover
#

You can't do much with them over SSH other then adopt and reboot

thick minnow
#

you can actually

#

its just not intuitive.

copper rover
#

hmmm

thick minnow
#

the switches run linux so you can actually configure it and all that, its just unifi tries to hide that.

peak cloak
#

Do they run a similar cli as edgeos

thick minnow
#

depends on model

peak cloak
#

So basically vyetta based, like vyos

thick minnow
#

for example older unifi and commerical unifi yes, the udm stuff, no it runs unifios which is like all useful features removed version of that.

peak cloak
#

Rip

thick minnow
#

udm is great for like a router you want to grab for your grandparents.

peak cloak
#

I honestly prefer cli these days

thick minnow
#

whats great about unifi is its remote management simplicity, if i want to deploy and basically forget about a device i use unifi routers.

#

either family or clients that are cheap.

copper rover
#

CLI for programming. But I really NEED the GUI when working with vendors remotely to validate port activity and search MAC addresses

peak cloak
#

Good and bad, since I myself wouldn't want to have something being controlled by the cloud

thick minnow
#

if the client isnt cheap i give a whole range from watchguards out to fully custom opnsense boxes with proprietary scripts loaded

#

i hate watchguards but some people love them for some reason

peak cloak
#

Never heard of them

thick minnow
#

youre lucky.

copper rover
#

I'm a Fortigate guy with SMB market. I'm done with SonicWALL (have been for a long time after Dell originally bought them out).

thick minnow
#

i had to get some of their certs and god they are awful.

copper rover
#

And Watchguard and Barracuda suck

thick minnow
#

fortigate has some great stuff, sonicwall has become horrid.

#

meraki is cisco attempting to fuck us harder.

thick minnow
#

aruba is great if you are dealing with small enterprise

#

but unaffordable below that

copper rover
#

Yeah, I agree

#

I never had a client that large, so I never had a chance to play with Aruba

#

Mainly deal with Unifi AP these days

thick minnow
#

ive had a few large medical customers using aruba, and a few small/medium enterprises

#

ive always loved it when ive had an smb ask me for my best and i send them an aruba quote just for the reaction

#

"can i have your fourth best" was one of the best replies ive gotten from that

#

I basically just work security now though, so things are quite a bit different on this side of it

#

i kind of miss just doing network work

#

building out clients was actually extremely rewarding

#

security work is basically run a bunch of scripts is 90% of the work, rest of it is time spent in things like armitage, phishing, red teaming, etc.

copper rover
#

I'm about to quit my job in the next few months for a new one. I won't say who my employer is. But let just say we have no sales people with IT experience. The clients we get are cheap and so not worth our time.

I'm so done with my skills being wasted. It's not good for me frankly.

thick minnow
#

yeah thats a big thing i learned a long time ago, if youre a cheap client i wont even fuck with you. there arent enough liability waivers for me to waste my time.

copper rover
#

I primarily deal with VM Server infrastructure and consult clients with data management

#

Workstation stuff is handled pretty well with RMM agents and AV. Then you get EDR to provide additional protection. Ensure clients of 2FA with O365 and the vast majority of security issues are mitigated in SMB environment

thick minnow
#

the second those cheaparse clients get ransomed they try everything they can to find a way to pin it on you, from your rmm software to printer drivers you installed for them, they just whinge and fight and try to get their money back and everything and i just refuse to deal with the hassle

#

when i have a client nowadays start talking to me about cost or deals i drop them, and within a year or two they are back with a blank check.

#

you want security and things working, or do you want cheap, pick 2.

copper rover
#

Oh, I definately mention ransomware. Tell them security is like an onion with layers - - Firewall, workstation (patches, AV, EDR), and employee training. And backups are the #1 thing for server and local data. All in e-mail.

If they lose data from ransomware, my forward button gets used to basically say "I told you so, now lets talk about preventing this from occuring again"

thick minnow
#

the onion metaphor is one ive used for years to dumb down layered security haha, it seems the easiest way to explain it to imbeciles.

#

have more layers than your neighbor and youre probably fine.

copper rover
#

Well, the metaphor is really for the business decision makers. Basically tell them, "hey, you really need this, and here's why the cost is justified"

thick minnow
#

MFA is a 100% requirement that i have had for all clients for over 4 years now. if a company wont jump on board i wont go further in discussion with them though.

#

that is completely non-negotiable to me

copper rover
#

^Agreed

thick minnow
#

ive dropped over 10 clients for refusing to use it.

copper rover
#

Wish I had 10 clients to drop. lol

thick minnow
#

well this is over a period of about 15 years haha.

copper rover
#

I'm not in that fortunate position to cherry pick. God I wish I could

thick minnow
#

never too late to change your ways. time is money, and time spent on dealing with stupid things constantly is you not making money.

#

how much is your time worth, im dying from cancer, my time is worth a LOT.

#

as new clients come on, onboard them with requirements that are non-negotiable, and as you get more of those, go sink or swim with your old clients.

copper rover
#

I've learned a lot from different industries and styles of management over the years. One thing rings true; the fish rots from the head. Often is the owner that's so cheap, they somehow think it pays to fail.

Nope. I have none of that noise

thick minnow
#

I remember I had a client yell at me(and this was the ceo), trying to say i was fear mongering when i was discussing security, he ran a fucking engineering firm that did government contracts, i stood up and walked out the door

#

he called me for like 3 weeks after begging me to reconsider....fact is, i dont have time for people like that.

#

if you don't consider your business worth protecting, i dont either.

copper rover
#

Maybe I've had bad luck, but I find the most arrogant clients are Doctors and lawyers. They act like I'm talking down to them, get all pissy, so I then throw down my IT knowledge like I'm talking to another IT pro (it's easier for me actually). Well, they don't pick up what I'm throwing down and get even more angry. Can't win! SMH

thick minnow
#

oh, and great irony they went out of business after they got ransomwared.

#

doctors 100%, lawyers ive had hit and miss.

#

i refuse to deal with a private practice without a full business team on board though, that includes law firms and medical.

#

just because youre a managing partner in a law firm or a head surgeon doesnt mean you understand risk analysis

copper rover
#

I'm afraid of working for medical industry; many small firms don't adhere to proper HIPAA compliance. I will NOT manage your machine if you don't have Windows Pro with BitLocker enabled. I will not answer before a judge because some moron lost their laptop in a smash-n-grab due to being left in a car.

thick minnow
#

just like i dont know how to read latin or cut someone open if i want them to get up after hah.

#

HIPAA is a nightmare. because i work remote a lot, and i have those clients even my home is iso:27001 certified.

#

thus my conversation with presenmonkey about how HE may not need IPS

#

lol

#

i love dealing with cert auditing though, from iso27001 to nist and nist csf(a whole different thing)

copper rover
#

Well, who certifies proper IPS implementation?

thick minnow
#

"hey look at this, you get to send money to me...a lot of money"

#

ips is simply another layer, its impossible to really certify something like that, you just pull from as many different sources as possible

#

from ip based blocking to signature based blocking to WoT based blocking etc

#

geoblocking and so on and so forth

copper rover
#

I know what it is, but how do you quantify what is acceptable and what is just in name only?

thick minnow
#

well, that really depends, i mean thats a really difficult question to ask, there are so many different options in that sense. I can tell you unifi with their non-customisable ips is NOT up to my standard

#

i need to be able to add abuse sources myself if say theres a new source i find and I want to add it in to my system

#

thats why im such a huge fan of opnsense. if it isnt there i can build it.

copper rover
#

People crap all over Gartner, but that is my default go-to when in question. But some rando IPS solution in FOSS project...yeah, no way

thick minnow
#

well suricata is a "rando" ips solution in a foss project

#

and its considered enterprise grade

#

so, there is that.

copper rover
#

So is it "free"

thick minnow
#

but yeah, unifi's IPS is...you can implement a better ips into openwrt.

copper rover
#

F = Free

thick minnow
#

yeah its free. Though again, its not the ONLY thing i would recommend to use.

#

i dont fully trust any one option.

#

be it proprietary or open source.

#

id rather have to deal with multiple systems than leak client files. Its more of a daily headache, but less of a headache than losing a 7 figure client.

#

anyways in terms of things i really recommend, huntress.io.

#

that's a client requirement i have

copper rover
#

Unless you're doing MITM with SSL inspection, you can't prevent data exfiltration from a compromised machine sending over an SSL session

thick minnow
#

well thats what DPI is for.

#

and something like huntress.

copper rover
#

No, DPI can't crack open SSL packets unless it's MITM

thick minnow
#

yes and you use mitm.

#

on the dpi

copper rover
#

Combined, I see

thick minnow
#

certificate store.

copper rover
#

Yeah, because that's what it takes. Each client machine has to have the cert installed

thick minnow
#

yep

copper rover
#

GPO or whatever, not difficult

thick minnow
#

exactly, its rather simple

#

seriously though check out huntress demo if you can(and no i dont work for them or resell for them, they are really just that good of a thing to have)

copper rover
#

What is is, like over 90% of web traffic goes over 443. Port 80 is just to start the session before you get redirected to SSL .lol

#

Yeah, I'll check out huntress

thick minnow
#

nowadays id say above 90%.

#

id say closer to 96%+

#

which when you consider all web traffic, that 6% is a LOT.

copper rover
#

Yeah

thick minnow
#

also for home use(if you dont want a neutered version of nessus) check out Greenbone security scanner

#

its a good software to learn

#

my nessus subcription is "oof" amounts of money, but i still use greenbone as well.

copper rover
#

What's your opinion of Huntress vs SentinelOne?

thick minnow
#

two very different things.

#

huntress is an mdr sentinelone is an edr

copper rover
#

I just noticed that

thick minnow
#

what huntress does is 1.) ransomware canary, and 2.) checks for persistence

#

any long term data exfiltration requires persistence

copper rover
#

So basically there's a live NOC at the other end with an MDR?

thick minnow
#

so it checks for things like startup files or things that run on startup

rocky badge
#

With HSTS

thick minnow
#

and yes, and they are amazing. Ive had them call me at 3 in the morning to report things, and its one of the few times im really happy to get a call at 3am

copper rover
#

Interesting

thick minnow
#

and yeah hsts is a thing, but its sporadically implemented

#

yeah, if huntress calls me, its something i REALLY want to know.

#

and that is huuuuge peace of mind for me.

copper rover
#

I work around the Houston TX area, so I deal with a lot of industrial side of things. Nation states hit them hard for obvious reasons. Would be nice to know these things

thick minnow
#

bloody hell.

#

I work in the houston tx area. lmfao!

#

small world isnt it.

copper rover
#

Yeah, so you know!

#

Hurricane season is my favorite . lol

thick minnow
#

yeah i know haha. Im here for the med center though myself, have to say its not bad living with cancer in probably the worlds leading cancer research center.

copper rover
#

I pray I never have to find out for sure

thick minnow
#

though mine is gastrointestinal so i go to methodist not md anderson

#

yeah, its not terribly fun lol, but look on the bright side, if it does youre in the best possible hands.

copper rover
#

Leader in cardiology too

thick minnow
#

on the cancer group im a part of, one of the biggest fears is misdiagnosis for the wrong type of super rare cancer...it takes some people yeaaaaars to get the correct diagnosis. By which time they are already pretty much done for. From start to fully diagnosed as an incurable untreatable cancer it was less than 4 months.

#

my doctors were and are amazing, its just my cancer is so rare there is no treatment. no fault of theirs.

copper rover
#

So all clear?

thick minnow
#

no, im a dead man walking, because its a genetic cancer and will keep coming back until it hits my brain

#

but thats not the doctors fault

#

i was given max 12 years, average 6

#

i wont live to 50

#

and im lucky, it hits most people at 8-12 years old, and they dont live to 20.

#

so, ive already lived a more full life than most.

#

and im in my mid-late 30's.

copper rover
#

I dunno. It ain't over until the fat lady sings. I'm hearing breakneck advancements in immunotherpy and whatnot. Or so I've read

thick minnow
#

the only options for mine are crispr or an mrna vaccine of some sort(yes, the covid vaccine is based on cancer treament tech)

#

and i cant even get into a trial because I am a sample size of 1.

#

im the only living adult with it.

#

so a trial is useless.

#

so its possible, but likely will happen a few years after my death

#

i plan to donate my body to help with it because again, my cancer is mainly a paediatric one, and kids dying is horrible =/

#

if we werent in a global pandemic id be volunteering at the cancer center in the kids wards

copper rover
#

Yeah, that take courage. A soldier at the spiritual level to endure that. Good thing there's people like you in this world that will go the extra mile for that. Major respect 🤘

thick minnow
#

what else can i do, you know?

#

if youre dying you have to go out with a smile and helping people. not like you can take anything with you.

copper rover
#

True. As George Carlin would say "It's just stuff"

thick minnow
#

exactly lol

#

anyways im off to bed, take care mate

copper rover
#

Yup, you too. Thanks for the info BTW, I'll check it out. I'm got to wrap this up too for work. See ya'll later. ✌️

pulsar thorn
#

Anybody know any cheaper alternatives to Ubiquiti APs and a software defined network? I love the automatic moving clients between access points but it's just out of my price range...

frozen cobalt
#

What would be the best way to connect my office lan with my home lan?

south token
#

how do i use internet download manager ?
i have never used it before
I am trying to download some stuff from getintopc.com and i dont know how to use a internet download manager please help

frozen cobalt
# frozen cobalt What would be the best way to connect my office lan with my home lan?

A bit more detail:
My father's office is alley's down our house and he has a few computers there connected to a lan. Both My house and office have a routers with independent internet access, My house has my PC, my brother's laptop and a couple of phones. The office has a nas, as well as my father's PC. How can i connect the lans so that i can access the nas from home and my father can remotely work on his PC from when he is home? Also is there a way to make it so that when one place looses internet, it can access the internet from the other router?

south token
#

can someone please help ?

pulsar thorn
peak cloak
#

What you want is basically a third router between the two networks

#

No wifi, just a ethernet router like hex or er-x

frozen cobalt
#

a third router?

#

as an upstream or super router?

peak cloak
#

I mean technically you wouldn't even need it thinking about it

peak cloak
frozen cobalt
#

k

peak cloak
#

basically this is the idea, you could prob do it without the 3rd router, but the 2 routers would prob require some more advanced features

#

and in this setup in the diagram they would need to be able to set static routes

#

so you can see how home clients would be able to reach the NAS

frozen cobalt
#

ah no

#

could you explain a bit?

peak cloak
#

basically in your nomal router setup you have a default gateway and that's where your computer sends all traffic to outside of it's subnet, so if an address would be outside 192.168.2.1 - 192.168.2.255 it would send it to 192.168.2.1 and it would decide what to do with it. When we set a static route on home router, for example: 192.168.1.0/24 via 192.168.2.2 it would send all packets with a destination of 192.168.1.0/24 it to the third router which will send it over to the other network, and when it wants to send data back we need a entry in the office router like 192.168.2.0/24 via 192.168.1.2

frozen cobalt
#

ah so the client are using the router as a messenger between the routers

peak cloak
#

well kinda basically, it will still send to the main router on each site first, since it has all the static routes configured

frozen cobalt
#

yes

peak cloak
#

so all traffic would still be going to the main routers on each site, but would then if needed sent to the 3rd one

frozen cobalt
#

oh

#

can this be done between routers of different brands?

peak cloak
#

ofc

frozen cobalt
#

ok

peak cloak
#

just need to be able to set static routes, etc.

frozen cobalt
#

i would connect the third router with ethernet cable right?

peak cloak
#

if on the home and office routers you can set interface addresses you may be able to get without the 3rd router

peak cloak
#

let me try to draw it up

frozen cobalt
#

ok

peak cloak
#

someone else correct me if I'm wrong, but basically something like this

#

the subnet size of the 100.x network is overkill big, just trying to explain

frozen cobalt
#

hmmm

#

how can i check if my router supports this?

peak cloak
#

what router do you have

frozen cobalt
#

Tenda Ac 1200

peak cloak
#

not really

frozen cobalt
#

😦

peak cloak
#

possibly using a third party firmware

frozen cobalt
#

that would not be a good thing, right?

peak cloak
#

but I wouldn't guaranteee it

frozen cobalt
#

i will check with my ISP if they can give a salution

peak cloak
frozen cobalt
#

Thank you abyways

peak cloak
#

you can use third router, since the Tenda Ac 1200 has static routes

thick minnow
thick minnow
peak cloak
#

that was my reaction too at first

thick minnow
#

" father's office is alley's down our house" it sounded like it was like "down the road"

#

yeah really confusing

peak cloak
#

maybe, but then they said they wanted to be able to use the other one for internet if it went down

thick minnow
#

uh lol, dig a hole and run a wire?

#

or unifi ptp

#

or failover load balancing if in same house.

#

i have gigabit fiber with starlink failover actually myself

peak cloak
#

is starlink still cgnat?

thick minnow
#

yeah, but you can get around it with a vpn.

peak cloak
#

yeah ofc, what about native ipv6?

thick minnow
#

oh yeah, thats not terrible tbh. just a bit more work.

#

tbf though its not like im hosting massive websites or anything.

main sorrel
#

Is it worth qualifying home network Ethernet runs? I’m planning on running Ethernet to all the rooms in my house, as well as IP cameras/etc, but I don’t want to realize later that I screwed up and am getting really poor performance. But is it even worth trying to do that? Hardware that does qualification is expensive.

peak cloak
#

just don't run it parallel to any high voltage

main sorrel
# peak cloak I don't qualify any of my runs, just a simple pair tester and that's it

https://www.homedepot.com/p/Klein-Tools-Scout-Pro-3-Tester-Kit-VDV501-851/312212425 something like this? Just making sure that the wires are all in the right place?

peak cloak
#

I have something even more basic,

#

I was working for someone who did electrical work, and that's all they did to test it

main sorrel
#

Okay awesome. Thank you!

pine sage
#

I want to learn how to set up a local network. I have 3 machines, I have my main machine that i will access all of the other machines from. the file server, and then lastley the windows 98 machine. which has all my physical media drives, (5.25 floppy and 3.5 floppy DVD/CD drives). it sounds pretty difficult to network all those things. i dont want to interface with the computers operating system at all i just want to use their drives as network drives

pine sage
#

anyone got any advice

rocky badge
#

@clear igloo I kinda want to switch to M365 Business Premium off of Google Workspace 😩

clear igloo
#

For email or?

rocky badge
#

email, cloud identity, InTune

clear igloo
#

Ah, yah, I'm using it for email pretty much only. It's like $6/user per month

rocky badge
#

I use Google Workspace for Google Drive and Google Photos, I kinda want to keep that

#

but I want M365 for email, cloud identity, intune, office apps, etc

clear igloo
rocky badge
#

$20/mo for M365 and $12/mo for Google

clear igloo
#

but does that package include InTune and Azure?

rocky badge
#

Yes

low pond
#

M$ money plan!

rocky badge
#

@clear igloo Apparently MS made the setup super easy now.

#

If you're using a compatible 3rd party DNS (like Cloudflare), feed it your credentials and it'll setup DNS records for you.

rocky badge
#

Outlook/Exchange, Azure AD, InTune MDM, etc

nimble sable
rocky badge
#

Google Workspace is ok for small business/homelab people

#

but M365 is way better for larger businesses and enterprise

#

A lot more control and options

low pond
#

their whole admin iam stuff is pretty well made

rocky badge
#

M365 is good for small business as well

nimble sable
#

oh cool

rocky badge
#

Just depends on what you want

nimble sable
#

there's some stuff that google makes a bit harder imo, but their CS is really good, how is MS for customer service?

#

hmm, shd i switch to cloudflare or smthg for dns?

peak cloak
#

host your own nameservers beardLinusKappa

peak cloak
rocky badge
peak cloak
nimble sable
nimble sable
rocky badge
#

idrc about that lol ¯_(ツ)_/¯

#

I use AWS, Azure, and Google Cloud as well

#

The only really "small" cloud service I use is DigitalOcean, which is still big.

#

Because all of those services are mature

nimble sable
rocky badge
reef gazelle
#

If you want availability, a CDN has to have HA and redundancy out the wazoo

#

There's no way for any company with a shoestring Kickstarter to do that on their own.

waxen scroll
reef gazelle
#

Sounds like using a big guy by proxy

#

So not on their own lol

nimble sable
rocky badge
#

timapple meanwhile my apple devices with barely anything

waxen scroll
#

@rocky badge gonna get a P6 pro on tuesday

rocky badge
#

lol

hollow marlin
#

@waxen scroll @clear igloo Finally got exaBGP from 1 full table of 29GB of mem down to 2 full tables at 6GB ping

hollow marlin
#

Oh I had the RAM. Problem was python being single threaded and BGP path selection on 4 million routes resulted in 40mins before the peering went up. All due to an added flag in the command for the database

clear igloo
#

lol, that's some long peering times

hollow marlin
#

sending full routes was snappy. The times between starting exaBGP and it being ready to peer was the problem

clear igloo
#

Interesting, I had an issue a while back with traffic tools where it would trickle routes into the box until I found an option to as shovel as much as you can into each message

tender hazel
#

BTW @hollow marlin we were able to get FS.com optics to work with the TA5004 chassis. The official ADTRAN optics use the string ADTRAN in the vendor-specific area of the EEPROM, and we were able to get FS Box to program the string into the area of the EEPROM. The chassis now recognizes the optic as an official ADTRAN and it works.

waxen scroll
#

for now

waxen scroll
viral sleet
#

Looking for a bit of networking help here.
I have a non-wifi motherboard and the router is all the way on the other side of the apartment, I can't move it to my room as the other side for some reason basically becomes a deadzone, I'd run a long ethernet cable but I don't think it's possible, it is but I'd need to get a technician and stuff, I checked out powerline adapters but since they completely depend on the wiring of the building, I think it's a total nono because this building is straight up horrible, very old and outdated and has terrible wirings, and I don't know if I want to pay the premium price for a non-guaranteed solution, I have a DSL outlet in my room (the same outlet I'd connect my router to if I put it in my room, so that it receives internet), is it possible to run two routers on the same home network without being connected to eachother via a LAN cable? Like, leave the current router in the living room connected to the outlet, and buy a new router connecting it to my own outlet (both accessing the same network), would it work or would there be IP conflicts??

#

Also for some bullshit reason we're not allowed thirdparty router's, So I'm unable to get a mesh system if I wanted to, I'm bound by my carrier's stock routers (thanks turkey)

peak cloak
#

You can't use the dsl outlet since that's basically like the transport of your internet

viral sleet
#

So it's limited to 1 outlet at a time, what solution do you suggest?

clear igloo
#

If you have coax cables in both locations you could do Moca but that's more money than powerline

clear igloo
viral sleet
#

I'm still new here and don't know the exact reason, but I asked some fellow techies that are natives here and they said I'm locked to the turk telekom routers only

clear igloo
#

For the internet connection, not for anything after their box

viral sleet
#

Oh I see your point now

#

hmm

#

I'll look a little into it

clear igloo
#

The biggest thing to keep an eye on is material of the walls. If you put a mesh system into a building with solid concrete walls you'll have a bad time

viral sleet
#

If that's what I'm gonna be doing, what mesh system do you recommend? im not that familiar with networking

viral sleet
#

they don't seem veryyy concrete to me

#

I'll go around tapping my walls trying to figure out if it's concrete lmao

clear igloo
#

The reason it's an issue is because most mesh uses 5GHz for the connection between nodes and that's more easily blocked by solid walls and whatnot

rustic star
rocky badge
#

Lol

viral sleet
rustic star
#

I mean they definitely do make nice profits

clear igloo
#

Basically a dedicated highway for communication and data transfer and then other highways for cars to get on and off

viral sleet
#

I see

#

do you suggest just running a long lan cable?

rocky badge
#

@clear igloo

clear igloo
#

lel

clear igloo
# viral sleet do you suggest just running a long lan cable?

That's going to be the cheapest and most solid, there are options though. You could see if your current router is sending out a 5GHz signal and using a signal checking app to see if that reaches into your room (even if barely) then you'll know a node in the middle should work out well to help get the signal to you so you can plug in directly

viral sleet
#

my router is only capable of 2.4ghz, terribly

#

hold on let me get the model number

#

it's a Türk Telekom branded TP-Link TD-W9970v3

clear igloo
#

yikes, that's old 😄

peak cloak
#

Ethernet should be able to do 100m

viral sleet
viral sleet
peak cloak
#

Yeah

#

Could put it in a cable raceway

viral sleet
#

we have these across the apartment, but not one in my room, if I'm not mistaken you can run cables through them right?

peak cloak
#

No clue, never seen such a thing in the us

viral sleet
#

I think you can, checking one in the living room and it has the AC cable running through it to the other side but what's confusing me is that I'm following that cable and the cable is just cut off with no target

#

I'll try and see if it's possible to run cables through them, hopefully that'd be my solution but I'm gonna have to figure out of I can get someone to drill and put one of these access points in my room

peak cloak
#

Either way, you shouldn't run Ethernet in close parallel with high voltage

#

I think you could get away with it using shielded ethernet, but def not unshielded

viral sleet
#

Can I check what's the highest cat gen my router can well route? I have a cat5, cat5e and a cat6 cable, but I don't know if my router actually supports the cat6 one

#

that's assuming the router would have to support it, that is

peak cloak
#

It's all the same connector

#

Although there is a distinction between shielded and unshielded ports

#

And cat5e is bare minimum these days

#

Cat6 is the standard

viral sleet
#

I see

waxen scroll
#

i have those

#

they're generally installed to hang fans by the builder and you as the buyer can take the cap off and install a fan. You cannot use these for an AP with live high voltage wires in the box or conduit

peak cloak
#

Oh yeah codes, most prohibit low and hv in same conduit and box

waxen scroll
#

even if they didnt it may cause packet loss

viral sleet
#

and I keep getting dns errors sometimes, when trying to open a site, would take 2 reloads for it to actually load sometimes and it does feel slow and sluggish nowadays, even tho nothing has changed in my network setup and I haven't messed with the dns settings on my router

peak cloak
#

Ceiling fans

viral sleet
#

oh, gotcha

viral sleet
peak cloak
#

Wdym "I used to run it via lan, but now running lan"

viral sleet
#

terrible wording, earlier this year I used to run lan on my xbox in the living room but we basically moved around the furniture so I don't run it with lan anymore

#

but now I'm running my pc via lan in my room (or was, until a bit ago), and it doesn't get nearly as much speeds as my xbox did on lan earlier this year

peak cloak
#

So it used to be ethernet, now it's wifi?

viral sleet
#

yes

peak cloak
#

Oh, gotcha

viral sleet
#

it's getting half the speeds

peak cloak
#

The PC is?

viral sleet
#

Yeah

peak cloak
#

Same cable?

viral sleet
#

cat6 for the pc, cat5 for the xbox

peak cloak
#

Could be many reasons, but gotta isolate it one by one.

#

Try the cat5?

viral sleet
#

I'll try it but I'll need to wait for a bit to move the router back to my room

#

do you mind if I ping you in a bit? it shouldn't be too long, definitely less than half an hour

peak cloak
#

Could also be network drivers

#

Do you happen to have another computer?

#

Could do a lan speed test

viral sleet
#

ah could be, I only got this computer last night, built it set it up for the first time and ran driverpack, but I didn't install any other drivers manually

viral sleet
peak cloak
#

Ethernet on motherboard right?

viral sleet
#

yeah

peak cloak
#

Yeah try to find the drivers for the chipset, what's the motherboard

viral sleet
#

b550m pro-vdh

#

it'd be this right?

#

I'll install it and test the speeds once I get to move back the router to my room

peak cloak
viral sleet
#

@peak cloak Actually, I think my whole issue could be fixed if I managed to connect the router i imported through my current router

#

I tried doing so before but I couldn't figure it out

#

can you help me?

#

my second router is D-Link AC1300

peak cloak
#

Like a wireless repeater?

viral sleet
#

connect them with a wire and configure it to use the second router

#

it's much better and definitely has better range too

peak cloak
#

So basically as an access point

viral sleet
#

that way I can leave it in my room

#

yes

thick minnow
# viral sleet yes

check in the web management interface. Mine had an option to set up as an access point there.

peak cloak
#

Most don't

#

You could check, but then there are 2 other ways, one is preferred

#

Either you can just plug cable from main router into wan, and that will work just fine BUT you will be double nating, which can could all sorts of issues since it's no longer one unified network

#

Second option is to try to take advantage how they are programmed, and turn off dhcp on it, then plug cable from main router into the lan ports

#

This will not Nat, and therefore it will be basically just an AP

viral sleet
#

I'm fine as long as I'll be able to connect to the imported router and use the internet from there

peak cloak
#

If you just want internet access you could do the first option

viral sleet
#

that's what I tried and didn't work

peak cloak
#

What didn't work?

viral sleet
#

also for some reason 2 bricks came with my imported router, one labeled as a SWITCHING ADAPTER

viral sleet
peak cloak
#

Could you access admin page

viral sleet
#

Yeah

peak cloak
#

Could you check the status page of second router and see what ip it got

viral sleet
#

alright let me boot it up and connect to it, but back to the question what's the switching adapter?

#

I assume I should stick to the power supply adapter, not the switching one?

peak cloak
#

Switching in power refers to the type of AC - dc converter

#

A switching power supply

viral sleet
#

connected to the imported router SSID ^ but it won't let me access the panel

smoky estuary
#

My parents are considering upgrading from 350mbps internet to 1100mbps (gigabit speeds) if it's available, it feels wrong even thinking of the concept of gigabit residential internet in England

viral sleet
#

my current router has a bridge option

#

nvm i got access to the imported router panel

#

lemme check

#

Is there anything specific to look for?

#

the ip is 192.168.0.2

peak cloak
#

Ok, seems fine

#

It looks like you have an internet connection tho?

viral sleet
#

I moved the router to my room, as everybody is sleeping now (its like 2am)

#

i dont wanna have to keep moving routers and basically not have internet in the day for my pc

#

oh u mean the second router, no it doesnt have internet that screenshot is from the other one

#

this is the imported router

peak cloak
#

huh, so it's not getting an ip it seems from main router

peak cloak
# viral sleet

what mode is it in, look for something like WAN settings and make sure it's DHCP

viral sleet
#

it doesnt have a WAN port

peak cloak
#

oh

viral sleet
#

would it still have WAN settings?

peak cloak
#

what does it have,

#

DSL?

viral sleet
#

an Internet port, and 4 LANs

primal ice
#

on the d-link router you would want to set up the ssid's as the same as the tp-link router, if you are connecting it wired you want to change the address of the d-link router to the address range of the tp-link router. 192.168.1.x -- right now its set to 19.168.0.x

peak cloak
viral sleet
#

Im not sure if the internet port is just a renamed WAN

peak cloak
#

oh yeah same thing

#

you are connected via internet port?

#

well it's connected to main router via internet port?

peak cloak
#

it seems to be different subnet anyway

viral sleet
#

hmm i connected it to the lan port since thats what the guide i saw earlier said , let me try the internet port

peak cloak
viral sleet
#

now its main router LAN port to imported router Internet/WAN port

peak cloak
#

you need to turn off DHCP off as well in that method

peak cloak
#

and if the 2nd method with plugging into lan doesn't work

viral sleet
#

the internet LED is blinking orange

peak cloak
#

normal

viral sleet
#

uhh im connected to WAN/Internet now, what should i look for in the panel?

peak cloak
#

well depends

#

show screenshot of the same page

viral sleet
peak cloak
#

hmm

#

should show at least something connected

#

you have a cable from main LAN to second WAN right?

viral sleet
#

yep

#

ill try restarting the router, perhaps a miracle happens

#

it shows IP addresses now

peak cloak
#

huh, still nothing on wan

#

wait no

#

it's showing an IP from the other router I think?

viral sleet
#

i think so because the IP for the other router is 192.168.1.1 while this one is 192.168.0.2

#

also its not blinking orange anymore, its just stable orange

#

if that means something

peak cloak
#

I honestly don't know what else

#

maybe someone else could help to somehow hack it together

viral sleet
#

damn

#

but if my main router has bridge mode settings it shouldnt be hard to route my internet to the second router should it?

#

what would be the point of the settings if i couldnt

peak cloak
#

just a AP mode, which gets rid of any routing is what you need

viral sleet
#

"How to change a D-Link router to AP mode

  1. Connect a computer to the D-link router and launch a web browser.

  2. Visit the following router configuration page:

http://192.168.0.1

  1. You are prompted to enter a username and password. Enter the following default login credentials:

Username: admin

Password: leave blank

NOTE: If the default login credentials do not work, you might have changed the admin password

  1. Click Setup > Local Network

  2. Set the DHCP Mode to Off

  3. Click Apply Changes."

primal ice
#

bridge mode on the tp-link would shut off all functions on it. it would just be a media converter then. (don't really want to do that) if you hook the d-link up with the lan ports you have to change the address of the d-link to be in the same subnet 192.168.1.x instead of the default 192.168.0.x -- what you really want to do is set a dhcp range on the tp-link router like 192.168.1.100 to 192.168.1.254 - then use the 192.168.1.2 to 192.168.1.99 as "static IPs" for thing you set up manually. then set the d-link router to 192.168.1.10 ..

pulsar thorn
#

Just set it's internal IP to something in the range on your LAN, disable dhcp and hook it up to main router via lan port

viral sleet
#

alright I'll do that in a min, waiting for my pc to go back up since it's installing graphics drivers

#

how long does it usually take for graphics drivers? it's been a long few minutes

pulsar thorn
#

No idea... hopefully not too long

viral sleet
#

I guess ill do that, constantly switching networks on my phone

#

1 sec

viral sleet
#

or am I getting it wrong

primal ice
#

192.168.1 instead of 192.168.0

viral sleet
#

the default settings of my main router

viral sleet
pulsar thorn
#

Yeah you can use anything in between x.2 - x.254 as long as there's nothing on that ip already

primal ice
#

the d-link not the tp-link

pulsar thorn
#

Yeah, give the device you want acting as an access point the ip address

#

I use a dlink dsl-4320l as an access point at the moment, just gave it an ip out of dhcp range, plugged in via lan port and it works great

viral sleet
#

where can I change the static ips? I don't see any settings regarding the range of it in the main router

primal ice
pulsar thorn
#

You mean set the ip on your access point?

#

Settings > network

viral sleet
#

ah the static ip would be the ip of the router itself my bad, I thought it was another settings of range I had to change

pulsar thorn
#

Yeah haha

viral sleet
primal ice
#

looks good

pulsar thorn
#

Yup

#

Mine doesn't have an option for dns relay :(

viral sleet
#

I can access both panels while connected to the main router now

#

but still no internet access

primal ice
#

and you should have internet

#

try from your computer

pulsar thorn
#

Dlink won't say you have internet, but you'll have internet

viral sleet
primal ice
#

hooked to the d-link by ethernet.

pulsar thorn
#

Or wifi

viral sleet
#

jj

#

yeah still no internet access

primal ice
#

ehh the d-link may need to be restarted - though you've accessed by the new address its still showing the old addresses

viral sleet