Skip to main content
Sticky

Gebruik een eigen router i.p.v. de Experia Box

Gebruik een eigen router i.p.v. de Experia Box
Toon eerste bericht

8857 reacties

wjb
Superuser
  • Auteur
  • 74646 reacties
  • 25 maart 2025

saxman schreef:

Het enige WAN IP adres voor vlan4 dat ik kan vinden is 213.75.112.0/21

Dat IP adres staat in het dashboard bij eth0.4 (vlan 4).

Noteer dat IP adres en kijk bij een storing zowel voor als na de restart van de igmp proxy server of dat IP adres wellicht gewijzigd is.


saxman
Slimmerik
Forum|alt.badge.img+2
  • Slimmerik
  • 129 reacties
  • 25 maart 2025
wjb schreef:

 

 

Maar een 10.x.x.x adres is toch geen WAN? Dat is toch een intern adres?


wjb
Superuser
  • Auteur
  • 74646 reacties
  • 25 maart 2025
saxman schreef:
wjb schreef:

 

 

Maar een 10.x.x.x adres is toch geen WAN? Dat is toch een intern adres?

Dat is wel degelijk het WAN IP adres van vlan 4 waarbij vlan 4 een private network van KPN is.

Het is dus niet een publiek WAN IP adres maar wel nog altijd het WAN IP adres voor vlan 4.


saxman
Slimmerik
Forum|alt.badge.img+2
  • Slimmerik
  • 129 reacties
  • 27 maart 2025

​@wjb Nog geen restart nodig gehad, maar het WAN IP adres van vlan4 is wel gewijzigd. Heb je iets aan deze informatie?


wjb
Superuser
  • Auteur
  • 74646 reacties
  • 27 maart 2025
saxman schreef:

​@wjb Nog geen restart nodig gehad, maar het WAN IP adres van vlan4 is wel gewijzigd. Heb je iets aan deze informatie?

Wel apart dat het WAN IP adres bij jou alweer gewijzigd is immers ook die zou eigenlijk maandenlang hetzelfde moeten blijven. Houd even in de gaten wanneer dat IP adres weer wijzigt.


<eerdere post niet meer relevant>
 

Er waren problemen met tv kijken, maar na een switch herstart te hebben werkt alles weer.


  • Nieuwkomer
  • 1 reactie
  • 18 april 2025

Beste forum leden,

 

Ook ik heb eindelijk glas van KPN.

Ik gebruik al jaren edgerouter X met een ziggo modem in bridge dit gaat goed.
Nu ik KPN glas heb wil ik mijn ziggo lijn er bij houden als backup.  Dus loadbalancing.

Ik heb mijn configuratie al behoorlijk in orde denk ik.

 

situatie:
Eth0 > Ziggo modem
Eth4 > KPN OTN
Eth3 > Mediabox Next van Ziggo met een ip based routing naar Eth0

Eth1 en 2 switches voor de rest van het netwerk

 

Probleem dat ik nu heb is dat KPN op Eth4 in orde lijkt te zijn met vlan4 (ITV), vlan6 (internet), pppoe0
 

ik krijg wel IP adressen op vlan 4 en pppoe

 

Verbinding via Ziggo is OK echter als ik Eth4 inschakel schakelt routering niet over naar KPN. en valt verbindign compleet weg.

 

actieve condiguratie:

Toon inhoud

set firewall all-ping enable
set firewall broadcast-ping disable
set firewall group network-group PRIVATE_NETS network 192.168.0.0/16
set firewall group network-group PRIVATE_NETS network 172.16.0.0/12
set firewall group network-group PRIVATE_NETS network 10.0.0.0/8
set firewall ipv6-name WAN_IN_IPV6 default-action drop
set firewall ipv6-name WAN_IN_IPV6 description 'WAN inbound'
set firewall ipv6-name WAN_IN_IPV6 rule 10 action accept
set firewall ipv6-name WAN_IN_IPV6 rule 10 description 'Allow established/related'
set firewall ipv6-name WAN_IN_IPV6 rule 10 state established enable
set firewall ipv6-name WAN_IN_IPV6 rule 10 state related enable
set firewall ipv6-name WAN_IN_IPV6 rule 20 action drop
set firewall ipv6-name WAN_IN_IPV6 rule 20 description 'Drop invalid'
set firewall ipv6-name WAN_IN_IPV6 rule 20 state invalid enable
set firewall ipv6-name WAN_IN_IPV6 rule 30 action accept
set firewall ipv6-name WAN_IN_IPV6 rule 30 description 'Allow ICMP'
set firewall ipv6-name WAN_IN_IPV6 rule 30 protocol ipv6-icmp
set firewall ipv6-name WAN_LOCAL_IPV6 default-action drop
set firewall ipv6-name WAN_LOCAL_IPV6 description 'WAN to router'
set firewall ipv6-name WAN_LOCAL_IPV6 rule 10 action accept
set firewall ipv6-name WAN_LOCAL_IPV6 rule 10 description 'Allow established/related'
set firewall ipv6-name WAN_LOCAL_IPV6 rule 10 state established enable
set firewall ipv6-name WAN_LOCAL_IPV6 rule 10 state related enable
set firewall ipv6-name WAN_LOCAL_IPV6 rule 20 action drop
set firewall ipv6-name WAN_LOCAL_IPV6 rule 20 description 'Drop invalid'
set firewall ipv6-name WAN_LOCAL_IPV6 rule 20 state invalid enable
set firewall ipv6-name WAN_LOCAL_IPV6 rule 30 action accept
set firewall ipv6-name WAN_LOCAL_IPV6 rule 30 description 'Allow ICMP'
set firewall ipv6-name WAN_LOCAL_IPV6 rule 30 protocol ipv6-icmp
set firewall ipv6-name WAN_LOCAL_IPV6 rule 40 action accept
set firewall ipv6-name WAN_LOCAL_IPV6 rule 40 description 'Allow DHCP'
set firewall ipv6-name WAN_LOCAL_IPV6 rule 40 destination port 546
set firewall ipv6-name WAN_LOCAL_IPV6 rule 40 protocol udp
set firewall ipv6-name WAN_LOCAL_IPV6 rule 40 source port 547
set firewall ipv6-receive-redirects disable
set firewall ipv6-src-route disable
set firewall ip-src-route disable
set firewall log-martians disable
set firewall modify balance rule 10 action modify
set firewall modify balance rule 10 destination group network-group PRIVATE_NETS
set firewall modify balance rule 10 modify table main
set firewall modify balance rule 20 action modify
set firewall modify balance rule 20 destination group address-group ADDRv4_eth0
set firewall modify balance rule 20 modify table main
set firewall modify balance rule 30 action modify
set firewall modify balance rule 30 destination group address-group ADDRv4_eth1
set firewall modify balance rule 30 modify table main
set firewall modify balance rule 110 action modify
set firewall modify balance rule 110 modify lb-group A
set firewall name WAN_IN default-action drop
set firewall name WAN_IN description 'WAN to internal'
set firewall name WAN_IN rule 10 action accept
set firewall name WAN_IN rule 10 description 'Allow established/related'
set firewall name WAN_IN rule 10 state established enable
set firewall name WAN_IN rule 10 state related enable
set firewall name WAN_IN rule 20 action drop
set firewall name WAN_IN rule 20 description 'Drop invalid state'
set firewall name WAN_IN rule 20 state invalid enable
set firewall name WAN_LOCAL default-action drop
set firewall name WAN_LOCAL description 'WAN to router'
set firewall name WAN_LOCAL rule 10 action accept
set firewall name WAN_LOCAL rule 10 description 'Allow established/related'
set firewall name WAN_LOCAL rule 10 state established enable
set firewall name WAN_LOCAL rule 10 state related enable
set firewall name WAN_LOCAL rule 20 action drop
set firewall name WAN_LOCAL rule 20 description 'Drop invalid state'
set firewall name WAN_LOCAL rule 20 state invalid enable
set firewall receive-redirects disable
set firewall send-redirects enable
set firewall source-validation disable
set firewall syn-cookies enable
set interfaces ethernet eth0 address dhcp
set interfaces ethernet eth0 description 'WAN - Ziggo'
set interfaces ethernet eth0 dhcpv6-pd pd 0 interface switch0 host-address '::1'
set interfaces ethernet eth0 dhcpv6-pd pd 0 interface switch0 prefix-id ':1'
set interfaces ethernet eth0 dhcpv6-pd pd 0 interface switch0 service slaac
set interfaces ethernet eth0 dhcpv6-pd pd 0 prefix-length 56
set interfaces ethernet eth0 dhcpv6-pd rapid-commit enable
set interfaces ethernet eth0 duplex auto
set interfaces ethernet eth0 firewall in ipv6-name WAN_IN_IPV6
set interfaces ethernet eth0 firewall in name WAN_IN
set interfaces ethernet eth0 firewall local ipv6-name WAN_LOCAL_IPV6
set interfaces ethernet eth0 firewall local name WAN_LOCAL
set interfaces ethernet eth0 ipv6 address autoconf
set interfaces ethernet eth0 ipv6 dup-addr-detect-transmits 1
set interfaces ethernet eth0 speed auto
set interfaces ethernet eth1 description 'switch-1'
set interfaces ethernet eth1 duplex auto
set interfaces ethernet eth1 speed auto
set interfaces ethernet eth2 description 'Switch-2'
set interfaces ethernet eth2 duplex auto
set interfaces ethernet eth2 speed auto
set interfaces ethernet eth3 description 'Ziggo Next Mediabox'
set interfaces ethernet eth3 duplex auto
set interfaces ethernet eth3 speed auto
set interfaces ethernet eth4 address dhcp
set interfaces ethernet eth4 description 'KPN - FTU'
set interfaces ethernet eth4 disable
set interfaces ethernet eth4 duplex auto
set interfaces ethernet eth4 mtu 1512
set interfaces ethernet eth4 poe output off
set interfaces ethernet eth4 speed auto
set interfaces ethernet eth4 vif 4 address dhcp
set interfaces ethernet eth4 vif 4 description 'KPN - IPTV'
set interfaces ethernet eth4 vif 4 dhcp-options client-option 'send vendor-class-identifier &quot;IPTV_RG&quot;;'
set interfaces ethernet eth4 vif 4 dhcp-options client-option 'request subnet-mask, routers, rfc3442-classless-static-routes;'
set interfaces ethernet eth4 vif 4 dhcp-options default-route no-update
set interfaces ethernet eth4 vif 4 dhcp-options default-route-distance 210
set interfaces ethernet eth4 vif 4 dhcp-options name-server update
set interfaces ethernet eth4 vif 6 address dhcp
set interfaces ethernet eth4 vif 6 description 'KPN - Internet'
set interfaces ethernet eth4 vif 6 mtu 1508
set interfaces ethernet eth4 vif 6 pppoe 0 default-route auto
set interfaces ethernet eth4 vif 6 pppoe 0 firewall in name WAN_IN
set interfaces ethernet eth4 vif 6 pppoe 0 firewall local name WAN_LOCAL
set interfaces ethernet eth4 vif 6 pppoe 0 idle-timeout 180
set interfaces ethernet eth4 vif 6 pppoe 0 mtu 1500
set interfaces ethernet eth4 vif 6 pppoe 0 name-server auto
set interfaces ethernet eth4 vif 6 pppoe 0 password kpn
set interfaces ethernet eth4 vif 6 pppoe 0 user-id kpn
set interfaces loopback lo
set interfaces switch switch0 address 192.168.xxx.xxx/24
set interfaces switch switch0 description Local
set interfaces switch switch0 firewall in modify balance
set interfaces switch switch0 mtu 1500
set interfaces switch switch0 switch-port interface eth1
set interfaces switch switch0 switch-port interface eth2
set interfaces switch switch0 switch-port interface eth3
set interfaces switch switch0 switch-port vlan-aware disable
set interfaces switch switch0 vif 10 address 10.10.10.1/24
set interfaces switch switch0 vif 10 description IoT
set interfaces switch switch0 vif 20 address 10.10.20.1/24
set interfaces switch switch0 vif 20 description Gast
set load-balance group A exclude-local-dns disable
set load-balance group A flush-on-active enable
set load-balance group A gateway-update-interval 20
set load-balance group A interface eth0 failover-only
set load-balance group A interface pppoe0
set load-balance group A lb-local enable
set load-balance group A lb-local-metric-change disable
set port-forward auto-firewall enable
set port-forward hairpin-nat disable
set port-forward rule 1 description Wireguard
set port-forward rule 1 forward-to address 192.168.xxx.xxx
set port-forward rule 1 forward-to port 51820
set port-forward rule 1 original-port 51820
set port-forward rule 1 protocol tcp_udp
set port-forward rule 2 description Plex
set port-forward rule 2 forward-to address 192.168.xxx.xxx
set port-forward rule 2 forward-to port 32400
set port-forward rule 2 original-port 32400
set port-forward rule 2 protocol tcp
set port-forward wan-interface eth0
set protocols static
set service dhcp-server disabled false
~~~~~~~ snip snip ~~~~~~~~~~~~
set service dhcp-server static-arp disable
set service dhcp-server use-dnsmasq disable
set service dns
set service gui http-port 80
set service gui https-port 443
set service gui older-ciphers enable
set service nat rule 5000 description 'masquerade for WAN'
set service nat rule 5000 log enable
set service nat rule 5000 outbound-interface eth0
set service nat rule 5000 protocol all
set service nat rule 5000 type masquerade
set service ssh port 22
set service ssh protocol-version v2
set service unms connection 'wss://xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx'
set system analytics-handler send-analytics-report false
set system conntrack expect-table-size 4096
set system conntrack hash-size 4096
set system conntrack modules sip disable
set system conntrack table-size 32768
set system conntrack tcp half-open-connections 512
set system conntrack tcp loose enable
set system conntrack tcp max-retrans 3
set system crash-handler send-crash-report false
set system domain-name ates-nl.local
set system host-name ates-router
set system login user ubnt authentication encrypted-password 'xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx'
set system login user ubnt level admin
set system name-server 192.168.xxx.xxx
set system name-server 8.8.8.8
set system name-server 1.1.1.1
set system ntp server 0.ubnt.pool.ntp.org
set system ntp server 1.ubnt.pool.ntp.org
set system ntp server 2.ubnt.pool.ntp.org
set system ntp server 3.ubnt.pool.ntp.org
set system offload hwnat enable
set system offload ipsec enable
set system syslog global facility all level notice
set system syslog global facility protocols level debug
set system time-zone Europe/Amsterdam
set system traffic-analysis dpi enable
set system traffic-analysis export enable
set traffic-control
 


 


Reageer