DD-WRT: Difference between revisions

From Yggenyk
Jump to navigation Jump to search
No edit summary
 
(12 intermediate revisions by the same user not shown)
Line 17: Line 17:
==Redirect all SMTP traffic to your internet providers SMTP server==
==Redirect all SMTP traffic to your internet providers SMTP server==
[[Let DD-WRT redirect SMTP traffic to a valid SMTP server so everyone on your net can send mail]]
[[Let DD-WRT redirect SMTP traffic to a valid SMTP server so everyone on your net can send mail]]
==Use DD-WRT Router as WiFi Range Extender==
* [http://www.dd-wrt.com/wiki/index.php/Repeater_Bridge DD-WRT wiki mainpage / Linking Routers / Repeater Bridge]
==How DD-WRT routes traffic==
==How DD-WRT routes traffic==
'''To get a better understanding on how DD-WRT routes traffic, you can read:'''
'''To get a better understanding on how DD-WRT routes traffic, you can read:'''
Line 49: Line 53:


==Wireless Access Point==
==Wireless Access Point==
* [http://www.dd-wrt.com/wiki/index.php/Wireless_Access_Point Set up your router as Wireless Access Point]


# Do a hard reset on the router
====Do a hard reset on the router====
# Connect the router directly (to avoid conflicts with other stuff on your network) to one of the switch ports on the router (not the WAN port)
# Connect the router directly (to avoid conflicts with other stuff on your network) to one of the switch ports on the router (not the WAN port)
# Connect to the router '''http://192.168.1.1'''
# Connect to the router '''http://192.168.1.1'''
# Chose a username and password, and login to the router
# Chose a username and password, and login to the router
# Go to the '''Setup - Basic Setup''' tab
 
====Go to the '''Setup - Basic Setup''' tab====
# Set '''WAN Connection Type''' to '''Disabled'''
# Set '''WAN Connection Type''' to '''Disabled'''
# Check '''Assign WAN Port to Switch''' (visible only when WAN Connection Type is set to Disabled)
# Check '''Assign WAN Port to Switch''' (visible only when WAN Connection Type is set to Disabled)
Line 62: Line 66:
# Set '''DHCP Server''' to  '''Disable'''
# Set '''DHCP Server''' to  '''Disable'''
# Uncheck '''Use DNSMasq for DHCP'''
# Uncheck '''Use DNSMasq for DHCP'''
# Set '''Gateway''' to 192.168.1 or whatever your local gateway is  (NTP Client and many things will fail without this)
# Set '''Gateway''' to 192.168.1.2 or whatever your local gateway is  (NTP Client and many things will fail without this)
# Set '''Local DNS''' IP address of primary router (NTP Client and many things will fail without this)
# Set '''Local DNS''' IP address of primary router (NTP Client and many things will fail without this)
# '''Save'''
# '''Save'''


Open the Setup -> Advanced Routing tab
====Go to '''Setup - Advanced Routing''' tab====
(Optional) Change operating mode to: Router
# Set '''Operating Mode''' to '''Router'''
Save
# '''Save'''
Open the Wireless -> Basic Settings tab
 
Wireless Network Name (SSID): YourNetworkNameHere
====Go to '''Wireless - Basic Settings''' tab====
(Optional) Sensitivity Range: The max distance (in meters) to clients x2
# Enter the name of your wireless network in '''Wireless Network Name (SSID)'''
Save
# Set '''Wireless Channel''' to '''Auto'''
Open the Wireless -> Wireless Security tab
# '''(Optional) Sensitivity Range: The max distance (in meters) to clients x2'''
# '''Save'''
 
====Go to '''Wireless - Wireless Security''' tab====
Note: Security is optional, but recommended! Clients must support whatever mode you select here.
Note: Security is optional, but recommended! Clients must support whatever mode you select here.
(Recommended) Security Mode: WPA2
# Set '''Security Mode''' to '''WPA2 Personal Mixed'''
(Recommended) WPA Algorithm: AES
# Set '''WPA Algorithm''' to '''TKIP+AES'''
(Recommended) WPA Shared Key: >8 characters
# Enter the password for your network in '''WPA Shared Key''' (at least 8 characters)
Save
# '''Save'''
Open the Services -> Services tab
(Optional) DNSMasq: Disable (enable if you use additional DNSMasq settings)
(Optional) ttraff Daemon: Disable
Save
Open the Security -> Firewall tab
Uncheck all boxes except Filter Multicast
Save
Disable SPI firewall
Save
Open the Administration -> Management tab
(Recommended) Info Site Password Protection: Enable
(Recommended) Routing: Disabled (enable if you need to route between interfaces)
Apply Settings and connect Ethernet cable to main router via LAN-to-LAN uplink*


Notes:
====Go to '''Services - Services''' tab====
To connect the WAP to the main router, you can probably use either a patch cable, straight-thru, or a crossover cable. Most DD-WRT capable devices can do auto-sensing so the cable type doesn't usually matter.
# Set '''DNSMasq''' to '''Disale'''
You can connect the WAP to the main router via LAN-to-WAN so long as you have assigned the WAN port to switch (see step 3).
# Set '''ttraff Daemon''' to '''Disable'''
# '''Save'''


==Netgear WNDR3700 and DD-WRT==
====Go to '''Open the Security - Firewall''' tab====
* [http://wiki.openwrt.org/toh/netgear/wndr3700 How to tell the difference between WNDR3700v1, WNDR3700v2 and WNDR3700v3]
# Uncheck all boxes except '''Filter Multicast'''
* [http://www.wikidevi.com/wiki/Netgear_WNDR3700v1 Netgear WNDR3700v1 - WikiDevi device specs]
# '''Save'''
* [http://www.wikidevi.com/wiki/Netgear_WNDR3700v2 Netgear WNDR3700v2 - WikiDevi device specs]
# Set '''SPI firewall'' to '''Disable'''
* [http://www.dd-wrt.com/site/support/router-database Router Database]
# '''Save'''
* [http://www.dd-wrt.com/wiki/index.php/Netgear_WNDR3700 Netgear WNDR3700 DD-WRT Wiki]
* [http://www.dd-wrt.com/phpBB2/viewtopic.php?t=79802 WNDR3700: Restore Factory Firmware in Five Easy Steps]


==Netgear WNDR4000 and DD-WRT==
====Go to '''Administration - Management''' tab====
* [http://www.wikidevi.com/wiki/Netgear_WNDR4000 Netgear WNDR4000 - WikiDevi device specs]
'''(Recommended) Info Site Password Protection: Enable'''
Port forward problem
# Set '''Routing''' to '''Disabled'''
* [http://www.dd-wrt.com/phpBB2/viewtopic.php?t=90600&postdays=0&postorder=asc&start=180 New Netgear n750 (WNDR4000) - Pics inside -test build page 5]
# '''Apply Settings'''
* [http://www.pcmag.com/article2/0,2817,2386679,00.asp#fbid=G5jcXShKOZb CNET Review - Editors Choice]
 
* [http://www.maximumpc.com/article/reviews/netgear_wndr4000_review Netgear WNDR4000 Review - Maximum PC]
# Connect Ethernet cable to main router you can use the WAN connection, or any of the LAN ports
* [http://www.edbpriser.dk/Product/Details.aspx?q=wndr4000&sp=all&pid=4998688 Edbpriser]
 
* [http://www.dd-wrt.com/wiki/index.php/Wireless_Access_Point Set up your router as Wireless Access Point]


==Netgear WNDR4500 and DD-WRT==
==WI-FI How fast can it be==
* [http://www.wikidevi.com/wiki/Netgear_WNDR4500 Netgear WNDR4500 - WikiDevi device specs]
* [https://www.lifewire.com/how-fast-is-a-wifi-network-816543 How Fast Is a Wi-Fi Network?]


==Extend the range of your wireless network==
==Extend the range of your wireless network==

Latest revision as of 07:05, 9 December 2022

<google>ENGELSK</google>

DD-WRT

DD-WRT is an opensource linux based firmware for Linksys WRT54G and similar 802.11g wireless routers.


Wiviz, an open source GPL project, allows you to use your WRT to see other networks. It scans for networks and then shows signal strength and effects of antenna adjustment in real time.

Redirect all SMTP traffic to your internet providers SMTP server

Let DD-WRT redirect SMTP traffic to a valid SMTP server so everyone on your net can send mail

Use DD-WRT Router as WiFi Range Extender

How DD-WRT routes traffic

To get a better understanding on how DD-WRT routes traffic, you can read:

If you are interested it tells how to show routing information:

To list your currently active rule-set: iptables -L

This command should list your currently active rule-set, and translate everything possible to a more readable form. For example, it will translate all the different ports according to the /etc/services file as well as DNS all the IP addresses to get DNS records instead. The latter can be a bit of a problem though. For example, it will try to resolve LAN IP addresses, i.e. 192.168.1.1, to something useful. 192.168.0.0/16 is a private range though and should not resolve to anything and the command will seem to hang while resolving the IP. To get around this problem we would do something like the following:

iptables -L -n

Another thing that might be interesting is to see a few statistics about each policy, rule and chain. We could get this by adding the verbose flag. It would then look something like this:

iptables -L -n -v

Don't forget that it is also possible to list the nat and mangle tables. This is done with the -t switch, like this:

iptables -L -t nat

There are also a few files that might be interesting to look at in the /proc file system. For example, it might be interesting to know what connections are currently in the conntrack table. This table contains all the different connections currently tracked and serves as a basic table so we always know what state a connection currently is in. This table can't be edited and even if it was possible, it would be a bad idea. To see the table you can run the following command:

cat /proc/net/ip_conntrack | less

The above command will show all currently tracked connections even though it might be a bit hard to understand everything.

Virtual Interfaces multiple SSID's

Wireless Access Point

Do a hard reset on the router

  1. Connect the router directly (to avoid conflicts with other stuff on your network) to one of the switch ports on the router (not the WAN port)
  2. Connect to the router http://192.168.1.1
  3. Chose a username and password, and login to the router

Go to the Setup - Basic Setup tab

  1. Set WAN Connection Type to Disabled
  2. Check Assign WAN Port to Switch (visible only when WAN Connection Type is set to Disabled)
  3. Set Local IP Address to 192.168.1.2 or something that fits your existing network different from primary router and out of your DHCP pool
  4. Set Subnet Mask to 255.255.255.0 or whatever you use on your network
  5. Set DHCP Server to Disable
  6. Uncheck Use DNSMasq for DHCP
  7. Set Gateway to 192.168.1.2 or whatever your local gateway is (NTP Client and many things will fail without this)
  8. Set Local DNS IP address of primary router (NTP Client and many things will fail without this)
  9. Save

Go to Setup - Advanced Routing tab

  1. Set Operating Mode to Router
  2. Save

Go to Wireless - Basic Settings tab

  1. Enter the name of your wireless network in Wireless Network Name (SSID)
  2. Set Wireless Channel to Auto
  3. (Optional) Sensitivity Range: The max distance (in meters) to clients x2
  4. Save

Go to Wireless - Wireless Security tab

Note: Security is optional, but recommended! Clients must support whatever mode you select here.

  1. Set Security Mode to WPA2 Personal Mixed
  2. Set WPA Algorithm to TKIP+AES
  3. Enter the password for your network in WPA Shared Key (at least 8 characters)
  4. Save

Go to Services - Services tab

  1. Set DNSMasq to Disale
  2. Set ttraff Daemon to Disable
  3. Save

Go to Open the Security - Firewall tab

  1. Uncheck all boxes except Filter Multicast
  2. Save
  3. Set SPI firewall to Disable'
  4. Save

Go to Administration - Management tab

(Recommended) Info Site Password Protection: Enable

  1. Set Routing to Disabled
  2. Apply Settings
  1. Connect Ethernet cable to main router you can use the WAN connection, or any of the LAN ports

WI-FI How fast can it be

Extend the range of your wireless network

Commercial antenna

Do it yourself antenna

WDS (Wireless Distribution System) Repeater for range extension

<google>ENGELSK</google>

id=siteTree