Witam serdecznie, naszło mnie żeby zrobić sobie super router domowy z dwoma lanami i czterema wanami - multiwan itd, ale nie mogę ustawić vlanów - router nie odpowiada na żadnym z portów - niewiem czy to przez config/network?
AA bez gui.
config interface 'loopback'
option ifname 'lo'
option proto 'static'
option ipaddr '127.0.0.1'
option netmask '255.0.0.0'
config interface 'lan'
option ifname 'eth0.1'
#option type 'bridge'
option proto 'static'
option ipaddr '192.168.8.31'
option netmask '255.255.255.0'
#option dns '192.168.1.1'
config interface 'lanb'
option ifname 'eth0.3'
#option type 'bridge'
option proto 'static'
option ipaddr '192.168.7.31'
option netmask '255.255.255.0'
#option dns '192.168.1.1'
config 'interface' 'wan'
option 'ifname' 'eth1'
option '_orig_ifname' 'eth1'
option '_orig_bridge' 'false'
option 'proto' 'static'
option 'ipaddr' '192.168.9.31'
option 'netmask' '255.255.255.0'
option 'gateway' '192.168.9.68'
option 'dns' '192.168.9.68'
config 'interface' 'wanb'
option 'ifname' 'eth0.2'
option 'proto' 'static'
option 'netmask' '255.255.255.0'
option 'ipaddr' '192.168.3.239'
option 'gateway' '192.168.3.1'
option 'dns' '193.59.116.1'
config interface 'wan3gp'
option auto '1'
option proto '3g'
option device '/dev/ttyUSB0'
option apn 'internet'
option service 'umts'
option mobile_isp 'Polska - Play Online'
config interface 'wan3ga'
option auto '1'
option proto '3g'
option device '/dev/ttyUSB4'
option apn 'internet'
option service 'umts'
option mobile_isp 'Polska - Aero2'
config switch
option name 'eth0'
#option reset '1'
option enable_vlan '1'
config switch_vlan
option device 'eth0'
option vlan '1'
option ports '0t 1 2'
config switch_vlan
option device 'eth0'
option vlan '2'
option ports '0t 4'
config switch_vlan
option device 'eth0'
option vlan '3'
option ports '0t 3'
Ponadto chcę mieć wlan w bridge z wanb - jako wan w trybie sta
config/wireless:
config wifi-device 'radio0'
option type 'mac80211'
option macaddr '54:e6:fc:b9:87:ae'
option disabled '0'
option htmode 'HT20'
list ht_capab 'SHORT-GI-40'
list ht_capab 'TX-STBC'
list ht_capab 'RX-STBC1'
list ht_capab 'DSSS_CCK-40'
option noscan '1'
option channel 'auto'
option hwmode 'auto'
config wifi-iface 'ap_g'
option device 'radio0'
option mode 'sta'
option disabled '0'
option network 'wanb'
option ssid 'ankv7'
#option bssid '00:0c:42:69:57:80'
option encryption 'none'
option macaddr '00:19:e0:6d:b6:2f'
No i jeszcze moj - czy tak moze byc ?
etc/config/firewall:
config defaults
option syn_flood '1'
option input 'ACCEPT'
option output 'ACCEPT'
option forward 'REJECT'
option drop_invalid '1'
config zone
option name 'lan'
option network 'lan lanb'
option input 'ACCEPT'
option output 'ACCEPT'
option forward 'REJECT'
config zone
option name 'wan'
option network 'wan wanb wan3gp wan3ga'
option input 'REJECT'
option output 'ACCEPT'
option forward 'REJECT'
option masq '1'
option mtu_fix '1'
config forwarding
option src 'lan'
option dest 'wan'
config 'forwarding'
option src 'wan'
option dest 'lan'
config rule
option name 'Allow-DHCP-Renew'
option src 'wan'
option proto 'udp'
option dest_port '68'
option target 'ACCEPT'
option family 'ipv4'
config rule
option name 'Allow-Ping'
option src 'wan'
option proto 'icmp'
option icmp_type 'echo-request'
option family 'ipv4'
option target 'ACCEPT'
config rule
option name 'Allow-DHCPv6'
option src 'wan'
option proto 'udp'
option src_ip 'fe80::/10'
option src_port '547'
option dest_ip 'fe80::/10'
option dest_port '546'
option family 'ipv6'
option target 'ACCEPT'
config rule
option name 'Allow-ICMPv6-Input'
option src 'wan'
option proto 'icmp'
list icmp_type 'echo-request'
list icmp_type 'echo-reply'
list icmp_type 'destination-unreachable'
list icmp_type 'packet-too-big'
list icmp_type 'time-exceeded'
list icmp_type 'bad-header'
list icmp_type 'unknown-header-type'
list icmp_type 'router-solicitation'
list icmp_type 'neighbour-solicitation'
list icmp_type 'router-advertisement'
list icmp_type 'neighbour-advertisement'
option limit '1000/sec'
option family 'ipv6'
option target 'ACCEPT'
config rule
option name 'Allow-ICMPv6-Forward'
option src 'wan'
option dest '*'
option proto 'icmp'
list icmp_type 'echo-request'
list icmp_type 'echo-reply'
list icmp_type 'destination-unreachable'
list icmp_type 'packet-too-big'
list icmp_type 'time-exceeded'
list icmp_type 'bad-header'
list icmp_type 'unknown-header-type'
option limit '1000/sec'
option family 'ipv6'
option target 'ACCEPT'
config include
option path '/etc/firewall.user'
PAnowie please HELP bo mnie szlag trafi ....