|
|||||||
|
|
|
![]() |
|
|
Strumenti |
|
|
#6581 | |
|
Senior Member
Iscritto dal: Dec 1999
Messaggi: 5358
|
Quote:
Codice:
# ifconfig
br0 Link encap:Ethernet HWaddr 00:25:9C:82:BC:CF
inet addr:192.168.0.1 Bcast:192.168.0.255 Mask:255.255.255.0
UP BROADCAST RUNNING PROMISC ALLMULTI MULTICAST MTU:1500 Metric:1
RX packets:4891078 errors:0 dropped:0 overruns:0 frame:0
TX packets:3958790 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:100
RX bytes:3183380851 (2.9 GiB) TX bytes:1444314682 (1.3 GiB)
br0:0 Link encap:Ethernet HWaddr 00:25:9C:82:BC:CF
inet addr:192.168.0.200 Bcast:192.168.0.255 Mask:255.255.255.255
UP BROADCAST RUNNING PROMISC ALLMULTI MULTICAST MTU:1500 Metric:1
eth0 Link encap:Ethernet HWaddr 00:25:9C:82:BC:CF
UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1
RX packets:268853 errors:0 dropped:0 overruns:0 frame:0
TX packets:523724 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:1000
RX bytes:84359022 (80.4 MiB) TX bytes:239535030 (228.4 MiB)
Interrupt:25 Base address:0x5120
lo Link encap:Local Loopback
inet addr:127.0.0.1 Mask:255.0.0.0
UP LOOPBACK RUNNING MTU:16436 Metric:1
RX packets:113252 errors:0 dropped:0 overruns:0 frame:0
TX packets:113252 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:0
RX bytes:29257532 (27.9 MiB) TX bytes:29257532 (27.9 MiB)
ppp0 Link encap:Point-to-Point Protocol
inet addr:XXX.XXX.XXX.XXX P-t-P:80.249.32.89 Mask:255.255.255.255
UP POINTOPOINT RUNNING NOARP MULTICAST MTU:1500 Metric:1
RX packets:3786282 errors:0 dropped:0 overruns:0 frame:0
TX packets:4518735 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:3
RX bytes:1319992145 (1.2 GiB) TX bytes:3109074869 (2.8 GiB)
wl0 Link encap:Ethernet HWaddr 00:25:9C:82:BC:D0
UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1
RX packets:4700595 errors:24 dropped:0 overruns:0 frame:7612611
TX packets:4092070 errors:6999 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:0
RX bytes:3195397089 (2.9 GiB) TX bytes:1421602192 (1.3 GiB)
Interrupt:39
Dalla LAN riesco a pingare il secondo IP e vedo pure ModFS. By(t)e
__________________
Vicking73: "Arecibo è un radiotelescopio che stà in Brasile" marzionieddu: "...stiamo cercando qualcosa nel totale silenzio cosmico..." |
|
|
|
|
|
|
#6582 |
|
Senior Member
Iscritto dal: Oct 2005
Messaggi: 7495
|
si ma dopo aver scritto come si fa, che è lo stesso meccanismo che uso su amod del 2200V4, non posso andare oltre perchè non ho il router in questione
evidentemente fa qualche altra cosa stramba il firewall del wag... |
|
|
|
|
|
#6583 | ||
|
Senior Member
Iscritto dal: Dec 1999
Messaggi: 5358
|
Quote:
Quote:
By(t)e
__________________
Vicking73: "Arecibo è un radiotelescopio che stà in Brasile" marzionieddu: "...stiamo cercando qualcosa nel totale silenzio cosmico..." |
||
|
|
|
|
|
#6584 |
|
Senior Member
Iscritto dal: Feb 2007
Messaggi: 5712
|
considerazione banalissima, ma secondo me occorrerebbe anche considerare da dove si prova ad accedere all'interfaccia di modfs.
spesso se si prova ad accedere all'indirizzo esterno del router dalla lan servita dal router stesso, l'indirizzo non è raggiungibile. sarebbe meglio provare ad accedere da una connessione internet esterna al router stesso |
|
|
|
|
|
#6585 | |
|
Senior Member
Iscritto dal: Dec 1999
Messaggi: 5358
|
Quote:
By(t)e
__________________
Vicking73: "Arecibo è un radiotelescopio che stà in Brasile" marzionieddu: "...stiamo cercando qualcosa nel totale silenzio cosmico..." |
|
|
|
|
|
|
#6586 |
|
Senior Member
Iscritto dal: Oct 2005
Messaggi: 7495
|
ma leggo che parli di iptables...
questo trucco si usa se iptables non funziona; infatti era usato da modfs sul 2200V1 e lo devo usare sul 2200V4 perché è basato sullo stesso firewall che nessuno fino ad ora ha avuto voglia di capire sul serio come usare le funzioni della libreria del firewall ma se invece il firewall è basato su iptables, dovresti capire come funzionano le tabelle e le regole di iptables che è molto più elegante, veloce e funzionale |
|
|
|
|
|
#6587 | |
|
Senior Member
Iscritto dal: Dec 1999
Messaggi: 5358
|
Quote:
By(t)e
__________________
Vicking73: "Arecibo è un radiotelescopio che stà in Brasile" marzionieddu: "...stiamo cercando qualcosa nel totale silenzio cosmico..." |
|
|
|
|
|
|
#6588 | |
|
Senior Member
Iscritto dal: Dec 1999
Messaggi: 5358
|
Quote:
Ho provato a inserire la regola in un po' tutte le chain, ma senza successo. Allego il report delle regole, sono praticamente quelle standard del router, se qualche anima pia potesse instradarmi verso la soluzione. Codice:
# iptables -L -v -n
Chain INPUT (policy DROP 2528 packets, 275K bytes)
pkts bytes target prot opt in out source destination
0 0 ACCEPT all -- ppp0 * 0.0.0.0/0 224.0.0.1
99362 26M ACCEPT all -- !ppp0 * 0.0.0.0/0 0.0.0.0/0 state NEW
51148 7265K ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 state RELATED,ESTABLISHED
0 0 ACCEPT tcp -- br0 * 0.0.0.0/0 0.0.0.0/0 limit: avg 10/sec burst 5 multiport dports 80,443 tcp flags:0x17/0x02
0 0 ACCEPT udp -- br0 * 0.0.0.0/0 0.0.0.0/0 limit: avg 10/sec burst 5 udp spt:68 dpt:67
0 0 ACCEPT icmp -- br0 * 0.0.0.0/0 0.0.0.0/0 limit: avg 10/sec burst 5 icmp type 8
382 31436 DOS icmp -- ppp0 * 0.0.0.0/0 0.0.0.0/0 icmp type 8
2341 259K INPUT_TCP tcp -- ppp0 * 0.0.0.0/0 0.0.0.0/0
450 31390 INPUT_UDP udp -- ppp0 * 0.0.0.0/0 0.0.0.0/0
387 31929 RPING icmp -- ppp0 * 0.0.0.0/0 0.0.0.0/0 limit: avg 10/sec burst 5
Chain FORWARD (policy DROP 1597 packets, 87890 bytes)
pkts bytes target prot opt in out source destination
28199 1594K TCPMSS tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp flags:0x06/0x02 TCPMSS clamp to PMTU
3638K 2136M POLICY tcp -- * * 0.0.0.0/0 0.0.0.0/0
58079 5474K POLICY udp -- * * 0.0.0.0/0 0.0.0.0/0
478 84792 POLICY icmp -- * * 0.0.0.0/0 0.0.0.0/0
0 0 DOS icmp -- ppp0 * 0.0.0.0/0 0.0.0.0/0 icmp type 8
1740K 870M MINIUPNPD all -- ppp0 !ppp0 0.0.0.0/0 0.0.0.0/0
0 0 DOS tcp -- ppp0 * 0.0.0.0/0 0.0.0.0/0 tcp flags:0x17/0x02 state INVALID,NEW,UNTRACKED
27284 2870K DOS udp -- ppp0 * 0.0.0.0/0 0.0.0.0/0
3689K 2141M UNKOWNTYPE all -- * * 0.0.0.0/0 0.0.0.0/0
3664K 2140M ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0 state RELATED,ESTABLISHED
23878 1522K ACCEPT all -- br0 * 0.0.0.0/0 0.0.0.0/0 state NEW
0 0 ACCEPT all -- br0 br0 0.0.0.0/0 0.0.0.0/0
Chain OUTPUT (policy ACCEPT 121K packets, 42M bytes)
pkts bytes target prot opt in out source destination
162 11984 ACCEPT icmp -- * br0 0.0.0.0/0 0.0.0.0/0
0 0 DROP icmp -- * * 0.0.0.0/0 0.0.0.0/0 state INVALID
Chain ACCESS_POLICY (1 references)
pkts bytes target prot opt in out source destination
Chain ALGS (0 references)
pkts bytes target prot opt in out source destination
0 0 ACCEPT all -- * * 0.0.0.0/0 0.0.0.0/0
Chain CONCHK (0 references)
pkts bytes target prot opt in out source destination
Chain DMZ_FORWARD (0 references)
pkts bytes target prot opt in out source destination
Chain DOS (6 references)
pkts bytes target prot opt in out source destination
Chain FORWARD_ALG (2 references)
pkts bytes target prot opt in out source destination
Chain FORWARD_TCP (1 references)
pkts bytes target prot opt in out source destination
1712K 868M FORWARD_ALG all -- * * 0.0.0.0/0 0.0.0.0/0
1712K 868M RETURN all -- * * 0.0.0.0/0 0.0.0.0/0
Chain FORWARD_UDP (1 references)
pkts bytes target prot opt in out source destination
27284 2870K FORWARD_ALG all -- * * 0.0.0.0/0 0.0.0.0/0
27284 2870K RETURN all -- * * 0.0.0.0/0 0.0.0.0/0
Chain HTTP (1 references)
pkts bytes target prot opt in out source destination
Chain INPUT_TCP (1 references)
pkts bytes target prot opt in out source destination
0 0 SCAN all -- * * 0.0.0.0/0 0.0.0.0/0 psd weight-threshold: 21 delay-threshold: 300 lo-ports-weight: 3 hi-ports-weight: 1
2341 259K REMOTE_INPUT all -- * * 0.0.0.0/0 0.0.0.0/0
576 31840 DOS tcp -- ppp0 * 0.0.0.0/0 0.0.0.0/0 tcp flags:0x17/0x02 state INVALID,NEW,UNTRACKED
Chain INPUT_UDP (1 references)
pkts bytes target prot opt in out source destination
0 0 SCAN all -- * * 0.0.0.0/0 0.0.0.0/0 psd weight-threshold: 21 delay-threshold: 300 lo-ports-weight: 3 hi-ports-weight: 1
0 0 ACCEPT udp -- * * 0.0.0.0/0 0.0.0.0/0 udp spt:67 dpt:68
450 31390 DOS udp -- ppp0 * 0.0.0.0/0 0.0.0.0/0
Chain MINIUPNPD (1 references)
pkts bytes target prot opt in out source destination
Chain POLICY (3 references)
pkts bytes target prot opt in out source destination
207K 20M HTTP tcp -- * * 0.0.0.0/0 0.0.0.0/0 tcp dpt:80
3696K 2142M ACCESS_POLICY all -- * * 0.0.0.0/0 0.0.0.0/0
3696K 2142M PORT_FORWARD all -- * * 0.0.0.0/0 0.0.0.0/0
3689K 2141M RETURN all -- * * 0.0.0.0/0 0.0.0.0/0
Chain POLICY_1 (0 references)
pkts bytes target prot opt in out source destination
Chain POLICY_10 (0 references)
pkts bytes target prot opt in out source destination
Chain POLICY_2 (0 references)
pkts bytes target prot opt in out source destination
Chain POLICY_3 (0 references)
pkts bytes target prot opt in out source destination
Chain POLICY_4 (0 references)
pkts bytes target prot opt in out source destination
Chain POLICY_5 (0 references)
pkts bytes target prot opt in out source destination
Chain POLICY_6 (0 references)
pkts bytes target prot opt in out source destination
Chain POLICY_7 (0 references)
pkts bytes target prot opt in out source destination
Chain POLICY_8 (0 references)
pkts bytes target prot opt in out source destination
Chain POLICY_9 (0 references)
pkts bytes target prot opt in out source destination
Chain PORT_FORWARD (1 references)
pkts bytes target prot opt in out source destination
3696K 2142M PORT_FORWARDING all -- * * 0.0.0.0/0 0.0.0.0/0
1712K 868M FORWARD_TCP tcp -- ppp0 * 0.0.0.0/0 0.0.0.0/0
27284 2870K FORWARD_UDP udp -- ppp0 * 0.0.0.0/0 0.0.0.0/0
3689K 2141M RETURN all -- * * 0.0.0.0/0 0.0.0.0/0
Chain PORT_FORWARDING (1 references)
pkts bytes target prot opt in out source destination
24 2208 ACCEPT tcp -- * * 0.0.0.0/0 192.168.0.2 tcp dpt:22
Chain REMOTE_INPUT (1 references)
pkts bytes target prot opt in out source destination
294 17640 ACCEPT tcp -- * * 0.0.0.0/0 192.168.0.1 tcp dpt:443
Chain RPING (1 references)
pkts bytes target prot opt in out source destination
380 31268 ACCEPT icmp -- * * 0.0.0.0/0 0.0.0.0/0 icmp type 8
Chain SCAN (2 references)
pkts bytes target prot opt in out source destination
Chain UNKOWNTYPE (1 references)
pkts bytes target prot opt in out source destination
0 0 DROP all -- * * 0.0.0.0/0 0.0.0.0/0 unkowntype match all
Chain VPN_PASS_FORWARD (0 references)
pkts bytes target prot opt in out source destination
__________________
Vicking73: "Arecibo è un radiotelescopio che stà in Brasile" marzionieddu: "...stiamo cercando qualcosa nel totale silenzio cosmico..." |
|
|
|
|
|
|
#6589 |
|
Senior Member
Iscritto dal: Oct 2005
Messaggi: 7495
|
se c'è iptables-save, usa quello
ti consiglio di fare così: elimina tutte le regole di forwarding che hai, fa iptables-save o quello che puoi >/file/su/usb/uno poi crea una regola qualsiasi per dire che forwarda la porta tcp 8081 su un host qualsiasi rifai iptables-quellochehai >/file/su/usb/due e studi le differenze tra uno e due comunque, questo funziona su un router netfilter only, tipo il dgn3500 è così; su altri router ci sono altri meccanismi oltre iptables ... PS se sei fortunato, per aprire un servizio sul router stesso, non devi manco fare il forwarding, ma solo "aprire" la porta, dove per aprire in questo caso si intende proprio solo aprire, perché httpd di modfs dovrebbe stare ad ascoltare su ogni interfaccia e non solo br0, ma questo però non lo so dire per certo, solo che la wan ha la porta chiusa Ultima modifica di alfonsor : 29-07-2014 alle 10:41. |
|
|
|
|
|
#6590 | |
|
Senior Member
Iscritto dal: Dec 1999
Messaggi: 5358
|
Quote:
Inutile evidenziare che ho provato a metterci quella per ModFS e non ha funzionato. Proverò senza forwardare nulla, ma ho il sospetto che ci sia qualcosa di più complesso dietro. Dovrei provare a fare un dump di un pacchetto per capire che giro fa, ma temo di andare troppo oltre le mie capacità. By(t)e
__________________
Vicking73: "Arecibo è un radiotelescopio che stà in Brasile" marzionieddu: "...stiamo cercando qualcosa nel totale silenzio cosmico..." |
|
|
|
|
|
|
#6591 |
|
Member
Iscritto dal: May 2001
Città: Firenze
Messaggi: 155
|
non riesco ad entrare in telnet nonostante abbia seguto la guida passo passo
telnetEnable.exe 192.168.0.1 0MACADDRESS0 Gearguy Geardog telnet 192.168.0.1 login: Gearguy password: Geardog dove sbaglio? ho provato anche admin/admin Ultima modifica di lcj82 : 29-07-2014 alle 13:01. |
|
|
|
|
|
#6592 | |
|
Senior Member
Iscritto dal: Dec 1999
Messaggi: 5358
|
Quote:
By(t)e
__________________
Vicking73: "Arecibo è un radiotelescopio che stà in Brasile" marzionieddu: "...stiamo cercando qualcosa nel totale silenzio cosmico..." |
|
|
|
|
|
|
#6593 |
|
Member
Iscritto dal: May 2001
Città: Firenze
Messaggi: 155
|
provato
login: root password: (nulla) non entra ho messo modfs oggi prima mi faceva entrare senza problemi |
|
|
|
|
|
#6594 | |
|
Senior Member
Iscritto dal: Dec 1999
Messaggi: 5358
|
Quote:
Ti colleghi con quale client? Putty? Shell linux? Altro? By(t)e
__________________
Vicking73: "Arecibo è un radiotelescopio che stà in Brasile" marzionieddu: "...stiamo cercando qualcosa nel totale silenzio cosmico..." |
|
|
|
|
|
|
#6595 |
|
Member
Iscritto dal: May 2001
Città: Firenze
Messaggi: 155
|
Avviato mi collego come prima dalla console di windows in modalità amministratore prima di metter modfs andava bene...
|
|
|
|
|
|
#6596 |
|
Senior Member
Iscritto dal: Oct 2005
Messaggi: 7495
|
modfs ha il suo server telnet, usa quello; lo controlli da interfaccia di modfs, scegli pass, porta e via dicendo
|
|
|
|
|
|
#6597 | |
|
Member
Iscritto dal: May 2001
Città: Firenze
Messaggi: 155
|
Quote:
non mi fa entrare lo stesso ho cambiato login e password e provato ad entrare con le mie niente uguale |
|
|
|
|
|
|
#6598 |
|
Senior Member
Iscritto dal: Dec 1999
Messaggi: 5358
|
Io farei un reset del firmware, reset delle impostazioni, reinstallazione di ModFS pulita.
Una mezz'ora di lavoro, più o meno. By(t)e
__________________
Vicking73: "Arecibo è un radiotelescopio che stà in Brasile" marzionieddu: "...stiamo cercando qualcosa nel totale silenzio cosmico..." |
|
|
|
|
|
#6599 |
|
Member
Iscritto dal: Jun 2008
Messaggi: 219
|
Va anche su DGN2200v3?
__________________
Notebook: Acer V 15 Nitro (VN7-592G-772Q) Smartphone: HTC U11 Camera: Nikon D7000 |
|
|
|
|
|
#6600 |
|
Senior Member
Iscritto dal: Oct 2005
Messaggi: 7495
|
modfs per il 2200v3 c'è ma
- è lanciabile solo da amod - è vuoto nel senso che non ci sono pacchetti utili dentro, ma è solo una struttura modfs pronta che attende volenterosi che facciano pacchetti |
|
|
|
|
| Strumenti | |
|
|
Tutti gli orari sono GMT +1. Ora sono le: 18:28.





















