Podrška #14002
Zatvorenrouter-wan-sa-1.bring.out.ba: config - 5
80%
Opis
napraviti novi image
isključiti iz image-a- dnsmasq
- openvpn
- xwrt-webif
- snmpd
- tcpdump
- dsl-qos-queue
Fajlovi
Povezani tiketi 3 (0 otvoreno — 3 zatvorenih)
Izmjenjeno od Ernad Husremović prije oko 17 godina
- Fajl config.tar.gz.gpg config.tar.gz.gpg dodano
pošto sam zadnjih par dana svašta nešto čačkao, najbolje da napravim backup /etc router-a
Izmjenjeno od Ernad Husremović prije oko 17 godina
danas je najnovija stvar da je linux iptables dodatno prolupao, pa sada iptables -L (-t nat) nikada da završi ?!?! da nisam nešto u firewall stavio juče što ga je sblaznilo
Izmjenjeno od Ernad Husremović prije oko 17 godina
root@router-wan-sa-1:/tmp# mtd -r write openwrt-brcm-2.4-squashfs.trx linux
Unlocking linux ... Writing from openwrt-brcm-2.4-squashfs.trx to linux ... [w]
hernad@nmraka-1:~$ sudo ip addr add 192.168.1.33/24 dev eth0
[sudo] password for hernad: hernad@nmraka-1:~$ ping 192.168.1.1 PING 192.168.1.1 (192.168.1.1) 56(84) bytes of data. 64 bytes from 192.168.1.1: icmp_seq=1 ttl=64 time=2.21 ms
Izmjenjeno od Ernad Husremović prije oko 17 godina
setujem password u webif-u
vraćam config
hernad@nmraka-1:~/Desktop$ scp config.tar root@192.168.1.1:/tmp
root@OpenWrt:~# tar xvf /tmp/config.tar
root@OpenWrt:~# reboot
Izmjenjeno od Ernad Husremović prije oko 17 godina
ne bih ja bio ja da nešto ne uprskam
root@OpenWrt:~# cd / <<<<<<<<<<< nedostajalo
root@OpenWrt:/# tar xvf /tmp/config.tar
Izmjenjeno od Ernad Husremović prije oko 17 godina
da li ću morati radi ovoga reflashirati router (da li sam izgubio 166 KB ?
root@router-wan-sa-1:~# du -s -h 166.5k . root@router-wan-sa-1:~# df Filesystem 1k-blocks Used Available Use% Mounted on none 7144 100 7044 1% /tmp /dev/mtdblock/4 640 492 148 77% /jffs mini_fo:/jffs 2624 2624 0 100% / none 135000000 132556980 2443020 98% /mnt/1 root@router-wan-sa-1:~# rm -r -f etc root@router-wan-sa-1:~# du -s -h 0 . root@router-wan-sa-1:~# df Filesystem 1k-blocks Used Available Use% Mounted on none 7144 100 7044 1% /tmp /dev/mtdblock/4 640 408 232 64% /jffs mini_fo:/jffs 2624 2624 0 100% / none 135000000 132556980 2443020 98% /mnt/1
izgleda da nisam
Izmjenjeno od Ernad Husremović prije oko 17 godina
tcp dump nije instaliran
root@router-wan-sa-1:~# ipkg list_installed | grep dsl dsl-qos-queue - 0.9.3-1 - root@router-wan-sa-1:~# ipkg list_installed | grep tcp root@router-wan-sa-1:~# ipkg list_installed | grep snmpd snmpd - 5.1.2-2.3 -
Izmjenjeno od Ernad Husremović prije oko 17 godina
- Fajl fw_scinfrastructure.fwb fw_scinfrastructure.fwb dodano
Izmjenjeno od Ernad Husremović prije oko 17 godina
refresh_ip se mora ručno pokrenuti prvi put!
root@router-wan-sa-1:/tmp# /etc/refresh_ip.sh
cat: can't open 'last_ip.txt': No such file or directory ip sigma-com.net = 89.146.176.9 restarting name server Host '128.177.28.71' is not in the trusted hosts file. (fingerprint md5 35:52:bf:aa:74:dc:7b:97:9d:01:6c:c4:93:c6:4d:7e) Do you want to continue connecting? (y/n) y tmp.zone 100% 1504 1.5KB/s 00:00 feedback=_2_ root@router-wan-sa-1:/tmp# /etc/refresh_ip.sh
Izmjenjeno od Ernad Husremović prije oko 17 godina
ovo treba prebaciti na /mnt/1 i simbolički linkovati
root@router-wan-sa-1:/tmp# du /usr/lib/ipkg
0 /usr/lib/ipkg/lists 35 /usr/lib/ipkg/info 40 /usr/lib/ipkg
Izmjenjeno od Ernad Husremović prije oko 17 godina
dodao net destinaciju u ipkg
/etc/ipkg.conf:
src snapshots http://downloads.openwrt.org/snapshots/brcm-2.4/packages
dest root /
dest ram /tmp
src X-Wrt http://downloads.x-wrt.org/xwrt/kamikaze/snapshots/brcm-2.4/packages
dest net /mnt/1
Izmjenjeno od Ernad Husremović prije oko 17 godina
instalirao snmp-utils:
root@router-wan-sa-1:/tmp# ipkg -d net install snmp-utils_5.1.2-2.3_mipsel.ipk
Izmjenjeno od Ernad Husremović prije oko 17 godina
instalirano ovdje: /mnt/1/usr/bin/snmpstatus , itd ...
Izmjenjeno od Ernad Husremović prije oko 17 godina
utvrdio da bez dnsmasq name server ne radi, zato sam morao vratiti dnsmasq
- ipkg install -t net /tmp/dnsmasq*ipk
- ln -s /mnt/1/usr/sbin/dnsmasq /usr/sbin
- root@router-wan-sa-1:/tmp# ln -s /tmp/resolv.conf /etc/resolv.conf
nakon restarta nameserver na router-u funkcioniše ....
.... hah ne funkcioniše ipak :(
root@router-wan-sa-1:~# cat /etc/resolv.conf
nameserver 195.222.32.10 nameserver 195.222.32.20
Izmjenjeno od Ernad Husremović prije oko 17 godina
joj ja sam pogriješio sintaksu u resolv.conf-u, nema potrebe za dnsmasq ....
root@router-wan-sa-1:~# cat /etc/resolv.conf
nameserver 192.168.45.250
takođe ću izbrisati dnsmasq
root@router-wan-sa-1:~# ipkg remove dnsmasq
Removing package dnsmasq from net... Done.
Izmjenjeno od Ernad Husremović prije oko 17 godina
tcpdump, snmpd, xwrt-webif treba instalirati na "-d net" da ne zauzimaju nepotrebno prostor
Izmjenjeno od Ernad Husremović prije oko 17 godina
ipkg status (/usr/lib/ipkg) na /mnt/1 - net destinaciju¶
root@router-wan-sa-1:/# mv /usr/lib/ipkg /mnt/1/root_usr_lib_ipkg mv: cannot remove '/usr/lib/ipkg/info': Invalid argument mv: cannot remove '/usr/lib/ipkg': Invalid argument root@router-wan-sa-1:/# ls /tmp/usr/lib/ipkg info status root@router-wan-sa-1:/# ls /usr/lib/ipkg /mnt/1/root_usr_lib_ipkg/info /mnt/1/root_usr_lib_ipkg/info: base-files-brcm-2.4.list kmod-ipt-extra.list mtd.list bridge.list kmod-ipt-filter.list nas.list busybox.list kmod-ipt-ipopt.list ntpclient.list dropbear.list kmod-ipt-nat.list nvram.list dsl-qos-queue.list kmod-ipt-queue.list ppp-mod-pppoe.list haserl.list kmod-ppp.list ppp.list ip.list kmod-pppoe.list shfs-utils.list iptables-mod-extra.list kmod-shfs.list snmpd.list iptables-mod-filter.list kmod-switch.list uci.list iptables-mod-ipopt.list kmod-wlcompat.list uclibc.list iptables-mod-nat.list libblkid.list webif.list iptables-utils.list libgcc.list wireless-tools.list iptables.list liblzo.list wl.list kernel.list libncurses.list wlc.list kmod-brcm-wl.list libnetsnmp.list zlib.list kmod-diag.list libopenssl.list kmod-fs-nfs.list libuci.list root@router-wan-sa-1:/usr/lib# mv ipkg ipkg.orig root@router-wan-sa-1:/usr/lib# ln -s /mnt/1/root_usr_lib_ipkg /usr/lib/ipkg root@router-wan-sa-1:/usr/lib# ipkg update Downloading http://openwrt.bring.out.ba/packages/brcm-2.4/Packages Updated list of available packages in /usr/lib/ipkg/lists/b-out-ba Done. root@router-wan-sa-1:/usr/lib# ls /usr/lib/ipkg -l lrwxrwxrwx 1 root root 24 Apr 19 16:26 /usr/lib/ipkg -> /mnt/1/root_usr_lib_ipkg root@router-wan-sa-1:/mnt/1/root_usr_lib_ipkg/lists# ls -l -rw-r--r-- 1 root root 61406 Apr 19 16:26 b-out-ba root@router-wan-sa-1:/mnt/1/root_usr_lib_ipkg/lists# reboot
Izmjenjeno od Ernad Husremović prije oko 17 godina
- Fajl fw_scinfrastructure.fwb fw_scinfrastructure.fwb dodano
napravio sam novo podešenje firewall-a koje pušta udp 1195 (openvpn-windoze port)
Izmjenjeno od Ernad Husremović prije oko 17 godina
- Status promijenjeno iz Dodijeljeno u Zatvoreno
- % završeno promijenjeno iz 0 u 80
pošto sam napravio nove image-s, idem sada na config-6, a ovo zatvaram