Forumi


Povratak   PC Ekspert Forum > Internet i mrežne tehnologije > Mreže
Ime
Lozinka

Odgovori
 
Uređivanje
Staro 21.06.2015., 11:42   #151
Ag008
RESPECT MY AUTHORITAH
Moj komp
 
Ag008's Avatar
 
Datum registracije: Jul 2008
Lokacija: Rijeka
Postovi: 7,347
Dostupna je;
__________________
.
Ag008 je offline   Reply With Quote
Staro 21.06.2015., 12:39   #152
mauro.stefancic
Registered User
 
Datum registracije: Jun 2015
Lokacija: Rijeka
Postovi: 3
...da li se može koristiti kao VPN gateway (server role) ? Naime, kreirao sam Open VPN server na android media box-u (žično spojen na Zyxel), kao privremeno rješenje za spajanje Iphona na lokalnu mrežu (PPTP VPN preko Open VPN klienta). Konekcija na server uredno radi, ali iz nekog razloga nemam pristup WIFI lokalnim uređajima (otvorio sam potrebe VPN portove preko firewall / acces control menija). Jel' netko pokušao nešto slično ? Ukoliko VPN IPSec radi, nema potrebe za dodatnim serverima…
mauro.stefancic je offline   Reply With Quote
Oglasni prostor
Oglas
 
Oglas
Staro 21.06.2015., 12:54   #153
Ag008
RESPECT MY AUTHORITAH
Moj komp
 
Ag008's Avatar
 
Datum registracije: Jul 2008
Lokacija: Rijeka
Postovi: 7,347
Pa jesi sam probao? Imaš u službenim uputama od 251-257 stranice kako kreirati to što bi ti htio (valjda). Nije mi ni baš jasno što radiš i što želiš.
ftp://ftp2.zyxel.com/VMG5313-B30A/us...ion%205.00.pdf
Ako još nemaš admina, ovdje je postupak kako ga dobiti;
http://forum.pcekspert.com/showthrea...14#post2762814
Pa se s njime prijaviš i eksperimentiraš
__________________
.
Ag008 je offline   Reply With Quote
Staro 21.06.2015., 13:14   #154
mauro.stefancic
Registered User
 
Datum registracije: Jun 2015
Lokacija: Rijeka
Postovi: 3
...VPN veza mi je potrebana za upravljanje Orvibo Allone WiWo-R1U smart home automation uređaja, preko Iphone aplikacije (uređaj se na lokalnu mrežu spaja bežično). Zatražio sam od ISP-a da mi otvori navedenu opciju, za sada bez rezultata. Izgleda da ću morati kreirati admina...radi i na trio paketu (fw V1.00 (AAUN.1)b2_150507) ?
mauro.stefancic je offline   Reply With Quote
Staro 22.06.2015., 21:52   #155
doctorow
Registered User
 
Datum registracije: Jun 2015
Lokacija: Zagreb
Postovi: 7
Hi, I'm running the latest firmware here (V1.00(AAUN.1)b2_150507). Unfortunately I don't speak Croatian, and I tried following silver_tip's instruction by cut & pasting it to Google Translate. But I am afraid the output was rather gibberish. Could you help me and summarize the steps in English?

Thanks! Andrew
doctorow je offline   Reply With Quote
Staro 22.06.2015., 23:15   #156
Nikky
Moderator
 
Nikky's Avatar
 
Datum registracije: Sep 2006
Lokacija: St
Postovi: 22,575
You are temporarily in Croatia (I see by *.dsl.iskon.hr) ?
In this topic we are talking about a device from the title, and how to bypass idiotic restrictions implemented by isp customization.
If you do not miss any of the hidden options then you do not need fiddle with "unlocking".
Nikky je offline   Reply With Quote
Staro 23.06.2015., 00:56   #157
doctorow
Registered User
 
Datum registracije: Jun 2015
Lokacija: Zagreb
Postovi: 7
Citiraj:
Autor Nikky Pregled postova
You are temporarily in Croatia (I see by *.dsl.iskon.hr) ?
In this topic we are talking about a device from the title, and how to bypass idiotic restrictions implemented by isp customization.
If you do not miss any of the hidden options then you do not need fiddle with "unlocking".
Thanks, yes, temporarily, but for the next one year or so. I'd like to use the ipsec and sip features of the router, and I understand that these features have been restricted/removed for no apparent reason. I looked at the posts here and I understand that, after a hard reset and without the device being attached to the dsl line, I have to create one or two users to be able to get admin rights before being able to SSH/telnet to the device and do the rest... it's just that there are some parts that I didn't understand through Google Translate and I want to avoid any mistakes that I cannot reverse afterwards. Appreciate your help.
doctorow je offline   Reply With Quote
Staro 23.06.2015., 01:25   #158
silver_tip
Premium
Moj komp
 
silver_tip's Avatar
 
Datum registracije: May 2010
Lokacija: doma
Postovi: 2,779
1. Adding admin does not solve the your problem.
2. After connecting the cable from the ISP, options that you need to be locked - hide.
3. User admin has additional access:

a) Power Management
b) USB Service + Media Server + Print Server
c) Wireless -WDS
d) VoIP Call History
e) VoIP Call Rule

4. Only flesh to the factory fw leaves all options open.
5. With factory fw everything works ok. if you know your SIP data and username and password for DSL connection.

6. All these data can be drawn from the router but no one wants to publish it, because ISPs could change security settings, and then everything would perhaps locked.
silver_tip je offline   Reply With Quote
Staro 23.06.2015., 09:56   #159
doctorow
Registered User
 
Datum registracije: Jun 2015
Lokacija: Zagreb
Postovi: 7
Citiraj:
Autor silver_tip Pregled postova
6. All these data can be drawn from the router but no one wants to publish it, because ISPs could change security settings, and then everything would perhaps locked.


This makes sense and is quite unfortunate. I would buy my own router/modem, but as you said, the DSL login data is hidden, so even that option is unavailable. Question, with user admin, is there the possibility to enable something like a bridge mode? I have a Fritzbox as well and I'd be happy if I could hook it up directly to the Internet (rather than in a limited NAT behind the Zyxel).

Andrew
doctorow je offline   Reply With Quote
Staro 23.06.2015., 12:21   #160
Nikky
Moderator
 
Nikky's Avatar
 
Datum registracije: Sep 2006
Lokacija: St
Postovi: 22,575
You said you would like to use the ipsec and sip features, both you could solve this way:
- Define which ports use IPSec (by a version of IPSec)
- In PortForward function of ZyXEL (should you be available), open ports
- Take / get another WAN router with IPSec feature and set IPSec connection
It should work.

In a similar way should work alternative VoIp with additional VoIP Gateway.

Unfortunately you have / you chose an ISP that pushes a lot of restrictions.
I'm not sure if you can get a Bridge mode for Internet connection,
then things would be a little easier.
Nikky je offline   Reply With Quote
Oglasni prostor
Oglas
 
Oglas
Staro 23.06.2015., 12:48   #161
doctorow
Registered User
 
Datum registracije: Jun 2015
Lokacija: Zagreb
Postovi: 7
Citiraj:
Autor Nikky Pregled postova
You said you would like to use the ipsec and sip features, both you could solve this way:
- Define which ports use IPSec (by a version of IPSec)
- In PortForward function of ZyXEL (should you be available), open ports
- Take / get another WAN router with IPSec feature and set IPSec connection
It should work.
Unfortunately it doesn't work. I tried. I have a Fritzbox that I previously used and which is now NATed behind the Zyxel. But the Zyxel doesn't seem to forward ESP packets, at least with the current limited Iskon firmware (only TCP/UDP worked). I also tried putting the Fritzbox in the DMZ zone, but IPsec packets were still not properly forwarded.

Citiraj:
Unfortunately you have / you chose an ISP that pushes a lot of restrictions.
I agree. Someone recommended them to me and also handled the ordering and everything. Of course he had no idea, and when I asked him, he said that most Croatian ISPs restrict their routers and the choice of routers.

Citiraj:
I'm not sure if you can get a Bridge mode for Internet connection,
then things would be a little easier.
I agree, a bridge mode would solve a lot of problems considering that even port forwarding is kinda limited (see above). I'd basically use the Zyxel just as a modem, and have another router (my Fritzbox) do all the rest.
doctorow je offline   Reply With Quote
Staro 23.06.2015., 13:15   #162
MasterX
do you speak it?
 
Datum registracije: Mar 2003
Lokacija: ::1
Postovi: 1,625
send Iskon e-mail to pomoc@iskon.hr and ask them to change (Zyxel) router configuration to BRIDGE MODE, tell them to provide you PPPoE username and password

it works 100%, since I have 4 Iskon VDSL connections on different locations, all of them are in bridge mode with ASUS routers behind Zyxel

I got this setup working for OpenVPN site-to-site tunnels etc. connecting remote offices with the main office (HQ)

did anybody got Moj.Iskon app running on mobile phone (android - playstore)?
__________________
Drinking Rum before 10am makes you a Pirate, not an Alcoholic.

Zadnje izmijenjeno od: MasterX. 23.06.2015. u 13:30.
MasterX je offline   Reply With Quote