Buona sera, a seguito del post iniziato nell'altra
sezione, continuo qui la discussione.
Sono riuscito a fare il downgrade da 1.1.2 a 1.0.3 seguendo la
guida, rifatto il root, installata la gui, aggiornato il firmware a 1.1.0, connesso il router con altra connessione, impostato gateway e dns e assicuratomi che da terminale "opkg update" non mi restituisse errori sono riuscito a installare luci.
Ora, fatto un bel backup da openwrt della config funzionate e "snella" ( in caso di malfuzionamenti posso ripristinare senza perdere root), proviamo a vedere se riesco a far passare il traffico da questa benedetta porta SFP...
Ho impostato rotte e masqurade così da riuscire ad accedere alal Gui del Modem e a Luci, passando dalal SFP tramite indirizzo 192.168.10.1. Da qui però, mi sono accorto che non ho accesso ssh, evidentemente sul firewall c'è qualche drop che verso al porta SFP, che in origine era intesa come WAN e non come LAN. Dalla Gui ho provato anche ad abilitare ssh sulla porta wan ( nella sezione "funzioni extra" del modem), ma anche in questo modo ssh non passa.
Per il momento, mi sono limitato a creare un bridge tra eth4 e ptm0 e ad aggiungerlo alla zona firewall LAN, ma sfortunatamente il modem non si collega.
Se invece aggiungo ptm0 al bridge LAN esistente ( quello delle porte ethernet), il modem si collega regolarmente al gestore e con pppoe scan vedo la "macchina" del gestore, pronta ad accettare la mia connesisone pppo-client.
Per chi non avesse seguito l'altro post, ricordo che vorrei usare il modem in modalità bridge verso la dslam e far passare tutto il traffico dalla porta SFP, dall'altra parte ho un router mikrotik dove sulla SFP farò autenticazione pppoe verso il mio gestore.
Grazie in anticipo per gli eventuali aiuti.
EDIT:
non so se può tornare utile... sto provando a fare alcune modifiche al firewall. procedo per tentativi, un po alla volta, e mentre faccio un reload al firewall, vedo degli warning, in particolare mi lascia in dubbio uno proprio sul
"forward sfplan -> wan" che indica ( da queloo che posso capire) un errore sull'interfaccia "set by script". Non vorrei che fossse un bug del firmware, visto che la porta sfp come la voglio usare io, fino ad oggi non è interessata a nessuno....
vi mostro il code:
Warning: Option 'lan'.wan is unknown
Warning: Section 'lan' has no device, network, subnet or extra options
Warning: Option 'wan'.conntrack is unknown
Warning: Option 'wan'.wan is unknown
Warning: Section 'wan' cannot resolve device of network 'wan6'
Warning: Section 'wan' cannot resolve device of network 'wwan'
Warning: Option 'z_wlnetb24'.wan is unknown
Warning: Option 'z_wlnetb5'.wan is unknown
Warning: Section @zone[5] (newzone) has no device, network, subnet or extra opti ons
Warning: Section @zone[0] (lan) has no device, network, subnet or extra options
Warning: Section @zone[5] (newzone) has no device, network, subnet or extra opti ons
* Clearing IPv4 filter table
* Clearing IPv4 nat table
* Clearing IPv4 mangle table
* Clearing IPv4 raw table
* Populating IPv4 filter table
* Zone 'lan'
* Zone 'wan'
* Zone 'z_wlnetb24'
* Zone 'z_wlnetb5'
* Zone 'sfplan'
* Zone 'newzone'
* Rule 'ubus:cwmpd[cwmpd] rule 1'
* Rule 'ubus:cwmpd[cwmpd] rule 2'
* Rule 'ubus:igmpproxy[instance1] rule 0'
* Rule 'ubus:igmpproxy[instance1] rule 1'
* Rule 'Drop_non_TCP_SYN'
* Rule 'drop_lan_2_z_wlnetb24'
* Rule 'drop_z_wlnetb24_2_lan'
* Rule 'drop-lan_2_z_wlnetb24_GW'
* Rule 'Allow_z_wlnetb24_ICMP'
* Rule 'Allow_z_wlnetb24_DHCP'
* Rule 'Allow_z_wlnetb24_DNS'
* Rule 'drop_lan_2_z_wlnetb5'
* Rule 'drop_z_wlnetb5_2_lan'
* Rule 'drop-lan_2_z_wlnetb5_GW'
* Rule 'Allow_z_wlnetb5_ICMP'
* Rule 'Allow_z_wlnetb5_DHCP'
* Rule 'Allow_z_wlnetb5_DNS'
* Rule 'Allow-DHCP-Renew'
* Rule 'Allow-Ping'
* Rule 'access_2_LAN_IP'
* Rule 'close_port_139'
* Rule 'close_port_445'
* Rule 'Deny-CUPS-lan'
* Rule 'Deny-CUPS-wan'
* Rule 'SSH_wan'
* Rule 'Restrict-TCP-LAN-Input'
* Rule 'Default action for outgoing NAT'
* Redirect 'ubus:cwmpd[cwmpd] redirect 0'
* Forward 'lan' -> 'wan'
* Forward 'z_wlnetb24' -> 'wan'
* Forward 'z_wlnetb5' -> 'wan'
* Forward 'sfplan' -> 'wan'
Warning: weird character in interface `<set by script>' ('/' and ' ' are not all owed by the kernel).
Warning: weird character in interface `<set by script>' ('/' and ' ' are not all owed by the kernel).
Warning: weird character in interface `<set by script>' ('/' and ' ' are not all owed by the kernel).
Warning: weird character in interface `<set by script>' ('/' and ' ' are not all owed by the kernel).
Warning: weird character in interface `<set by script>' ('/' and ' ' are not all owed by the kernel).
Warning: weird character in interface `<set by script>' ('/' and ' ' are not all owed by the kernel).
Warning: weird character in interface `<set by script>' ('/' and ' ' are not all owed by the kernel).
* Populating IPv4 nat table
* Zone 'lan'
* Zone 'wan'
* Zone 'z_wlnetb24'
* Zone 'z_wlnetb5'
* Zone 'sfplan'
* Zone 'newzone'
* Redirect 'ubus:cwmpd[cwmpd] redirect 0'
Warning: weird character in interface `<set by script>' ('/' and ' ' are not all owed by the kernel).
* Populating IPv4 mangle table
* Zone 'lan'
* Zone 'wan'
* Zone 'z_wlnetb24'
* Zone 'z_wlnetb5'
* Zone 'sfplan'
* Zone 'newzone'
Warning: weird character in interface `<set by script>' ('/' and ' ' are not all owed by the kernel).
* Populating IPv4 raw table
* Zone 'lan'
* Zone 'wan'
* Zone 'z_wlnetb24'
* Zone 'z_wlnetb5'
* Zone 'sfplan'
* Zone 'newzone'
* Clearing IPv6 filter table
* Clearing IPv6 mangle table
* Clearing IPv6 raw table
* Populating IPv6 filter table
* Zone 'lan'
* Zone 'wan'
* Zone 'z_wlnetb24'
* Zone 'z_wlnetb5'
* Zone 'sfplan'
* Zone 'newzone'
* Rule 'ubus:cwmpd[cwmpd] rule 1'
* Rule 'ubus:cwmpd[cwmpd] rule 2'
* Rule 'ubus:igmpproxy[instance1] rule 0'
* Rule 'Drop_non_TCP_SYN'
* Rule 'drop_lan_2_z_wlnetb24'
* Rule 'drop_z_wlnetb24_2_lan'
* Rule 'Allow-z_wlnetb24_ICMPv6'
* Rule 'drop_lan_2_z_wlnetb5'
* Rule 'drop_z_wlnetb5_2_lan'
* Rule 'Allow-z_wlnetb5_ICMPv6'
* Rule 'Allow-DHCPv6'
* Rule 'Allow-ICMPv6-Input'
* Rule 'Allow-ICMPv6-Forward'
* Rule 'Deny-CUPS-lan-v6'
* Rule 'Deny-CUPS-wan-v6'
* Rule 'Default action for outgoing NAT'
* Forward 'lan' -> 'wan'
* Forward 'z_wlnetb24' -> 'wan'
* Forward 'z_wlnetb5' -> 'wan'
* Forward 'sfplan' -> 'wan'
Warning: weird character in interface `<set by script>' ('/' and ' ' are not all owed by the kernel).
Warning: weird character in interface `<set by script>' ('/' and ' ' are not all owed by the kernel).
Warning: weird character in interface `<set by script>' ('/' and ' ' are not all owed by the kernel).
Warning: weird character in interface `<set by script>' ('/' and ' ' are not all owed by the kernel).
Warning: weird character in interface `<set by script>' ('/' and ' ' are not all owed by the kernel).
Warning: weird character in interface `<set by script>' ('/' and ' ' are not all owed by the kernel).
Warning: weird character in interface `<set by script>' ('/' and ' ' are not all owed by the kernel).
* Populating IPv6 mangle table
* Zone 'lan'
* Zone 'wan'
* Zone 'z_wlnetb24'
* Zone 'z_wlnetb5'
* Zone 'sfplan'
* Zone 'newzone'
Warning: weird character in interface `<set by script>' ('/' and ' ' are not all owed by the kernel).
* Populating IPv6 raw table
* Zone 'lan'
* Zone 'wan'
* Zone 'z_wlnetb24'
* Zone 'z_wlnetb5'
* Zone 'sfplan'
* Zone 'newzone'
* Set tcp_ecn to off
* Set tcp_syncookies to on
! Unable to write value: No such file or directory
* Set tcp_window_scaling to on
* Running script '/lib/functions/firewall-ext-tch.sh'
* Running script '/lib/functions/tod.sh'
iptables: Chain already exists.
ip6tables: Chain already exists.
iptables: Chain already exists.
ip6tables: Chain already exists.
* Running script '/lib/functions/firewall-mmpbx.sh'
* Running script '/lib/functions/firewall-dropbear.sh'
* Running script '/usr/share/miniupnpd/firewall.include'