New Kong test build: DD-WRT 33435M - 2017/10/04

Post new topic   Reply to topic    DD-WRT Forum Index -> Broadcom SoC based Hardware
Goto page Previous  1, 2, 3, 4, 5  Next
Author Message
Cableboxman
DD-WRT Novice


Joined: 22 Jul 2017
Posts: 2

PostPosted: Thu Oct 05, 2017 5:23    Post subject: Openvpn TLS issue workaround Reply with quote
adding this under Additional Config worked instantly for me .

tls-cipher "DEFAULT:@SECLEVEL=0"
Sponsor
trekkie713
DD-WRT Novice


Joined: 05 Oct 2017
Posts: 3

PostPosted: Thu Oct 05, 2017 10:03    Post subject: Dnsmasq issue Reply with quote
Does this build have the updated version of dnsmasq that fixes the discovered vulnerabilities?

Thanks.
egc
DD-WRT Guru


Joined: 18 Mar 2014
Posts: 12922
Location: Netherlands

PostPosted: Thu Oct 05, 2017 10:29    Post subject: Reply with quote
Probably yes, this build does report version 2.78 see also: http://svn.dd-wrt.com/changeset/33430
_________________
Routers:Netgear R7000, R6400v1, R6400v2, EA6900 (XvortexCFE), E2000, E1200v1, WRT54GS v1.
Install guide R6400v2, R6700v3,XR300:https://forum.dd-wrt.com/phpBB2/viewtopic.php?t=316399
Install guide R7800/XR500: https://forum.dd-wrt.com/phpBB2/viewtopic.php?t=320614
Forum Guide Lines (important read):https://forum.dd-wrt.com/phpBB2/viewtopic.php?t=324087
eywong
DD-WRT User


Joined: 21 Jul 2010
Posts: 120
Location: USA

PostPosted: Thu Oct 05, 2017 14:21    Post subject: Asus RT-AC68U Reply with quote
Router: Asus RT-AC68U (H/W Ver: A1)
Firmware: DD-WRT v3.0-r33435M kongac (10/04/17)
Previous: DD-WRT v3.0-r33010M kongac (09/19/17)
Kernel: Linux 4.4.89 #446 SMP Wed Oct 4 07:56:30 CEST 2017 armv7l
Previous: Linux 4.4.88 #441 SMP Tue Sep 19 22:44:21 CEST 2017 armv7l
Status: ok
Reset: no (ddup --flash-latest)
Errors: no
Uptime: 21:05
mac913
DD-WRT Guru


Joined: 02 May 2008
Posts: 1848
Location: Canada

PostPosted: Thu Oct 05, 2017 16:40    Post subject: Reply with quote
My scripts will not run on this build.

My scripts that start with...

#!/bin/sh

And I get the error...

'bin/sh: can't open '

UPDATE...

The above error message was cause by a SPACE if front of "#!/bin/sh" (without quotes). This was not a problem is past builds.

Then I ran into another problem after removing the space (using notepad++ v7.5.1) to edit and save the file. When executing the file I was getting "File Not Found". Re-check the directory listing and it was there. So using WinSCP v5.11.1 Internal Editor I re-saved the file and it executed with no errors. So notepad++ isn't encoding the file correctly during saving and I tried all of them.

Now so far all is good.

Thanks Kong for another Great Build!

Router: 2x Netgear R7000
Firmware: DD-WRT v3.0-r33435M kongac (10/04/17)
Previous: DD-WRT v3.0-r33010M kongac (09/19/17)
Kernel: Linux 4.4.89 #446 SMP Wed Oct 4 07:56:30 CEST 2017 armv7l
Previous: Linux 4.4.88 #441 SMP Tue Sep 19 22:44:21 CEST 2017 armv7l
Status: No issues, yet
Reset: No (ddup --flash-latest)
Errors: No
Uptime: 25min

_________________
Home Network on Telus 1Gb PureFibre - 10GbE Copper Backbone
2x R7800 - Gateway & WiFi & 3xWireGuard - DDWRT r53562 Std k4.9

Off Site 1

R7000 - Gateway & WiFi & WireGuard - DDWRT r54517 Std
E3000 - Station Bridge - DDWRT r49626 Mega K4.4

Off Site 2

R7000 - Gateway & WiFi - DDWRT r54517 Std
E2000 - Wired ISP IPTV PVR Blocker - DDWRT r35531


YAMon 3.4.6 | DNSCrypt-Proxy V2


Last edited by mac913 on Thu Oct 05, 2017 21:27; edited 3 times in total
Alozaros
DD-WRT Guru


Joined: 16 Nov 2015
Posts: 6447
Location: UK, London, just across the river..

PostPosted: Thu Oct 05, 2017 17:11    Post subject: Reply with quote
Router Model Netgear R7000
Firmware Version DD-WRT v3.0-r33435M kongac (10/04/17)
Kernel Version Linux 4.4.89 #446 SMP Wed Oct 4 07:56:30 CEST 2017 armv7l

update: via ddup
reset: no
status: operational
errors: none... so far so good 10x KONG

mac913 i do have country-blocking script that starts
with #!/bin/sh.... and i can see its running ....

_________________
Atheros
TP-Link WR740Nv1 ---DD-WRT 55630 WAP
TP-Link WR1043NDv2 -DD-WRT 55723 Gateway/DoT,Forced DNS,Ad-Block,Firewall,x4VLAN,VPN
TP-Link WR1043NDv2 -Gargoyle OS 1.15.x AP,DNS,QoS,Quotas
Qualcomm-Atheros
Netgear XR500 --DD-WRT 55779 Gateway/DoH,Forced DNS,AP Isolation,4VLAN,Ad-Block,Firewall,Vanilla
Netgear R7800 --DD-WRT 55819 Gateway/DoT,AD-Block,Forced DNS,AP&Net Isolation,x3VLAN,Firewall,Vanilla
Netgear R9000 --DD-WRT 55779 Gateway/DoT,AD-Block,AP Isolation,Firewall,Forced DNS,x2VLAN,Vanilla
Broadcom
Netgear R7000 --DD-WRT 55460 Gateway/SmartDNS/DoH,AD-Block,Firewall,Forced DNS,x3VLAN,VPN
NOT USING 5Ghz ANYWHERE
------------------------------------------------------
Stubby DNS over TLS I DNSCrypt v2 by mac913
mac913
DD-WRT Guru


Joined: 02 May 2008
Posts: 1848
Location: Canada

PostPosted: Thu Oct 05, 2017 17:29    Post subject: Reply with quote
DELETED POST

See above post for update.

_________________
Home Network on Telus 1Gb PureFibre - 10GbE Copper Backbone
2x R7800 - Gateway & WiFi & 3xWireGuard - DDWRT r53562 Std k4.9

Off Site 1

R7000 - Gateway & WiFi & WireGuard - DDWRT r54517 Std
E3000 - Station Bridge - DDWRT r49626 Mega K4.4

Off Site 2

R7000 - Gateway & WiFi - DDWRT r54517 Std
E2000 - Wired ISP IPTV PVR Blocker - DDWRT r35531


YAMon 3.4.6 | DNSCrypt-Proxy V2


Last edited by mac913 on Thu Oct 05, 2017 21:08; edited 1 time in total
zfil
DD-WRT Novice


Joined: 12 Oct 2014
Posts: 31

PostPosted: Thu Oct 05, 2017 20:05    Post subject: Reply with quote
Router: R7000
Firmware: DD-WRT v3.0-r33435M kongac (10/04/17)
Kernel: Linux 4.4.89 #446 SMP Wed Oct 4 07:56:30 CEST 2017 armv7l
Upgraded: from 33010M v3 via ddup --flash-latest
Reset: no
Status: Working
Errors: none now

Update: freeze after 2 days uptime

Thanks Kong!


Last edited by zfil on Sat Oct 07, 2017 1:06; edited 1 time in total
hurleyp
DD-WRT User


Joined: 10 Sep 2009
Posts: 425
Location: Ottawa, Ontario, Canada

PostPosted: Fri Oct 06, 2017 12:40    Post subject: Reply with quote
Router: Netgear R7000
Firmware: v3.0-r33435M kongac (10/04/17)
Kernel: Linux 4.4.89 #446 SMP Wed Oct 4 07:56:30 CEST 2017 armv7l
Status: Up and running for just over a day and a half
Reset: Soft boot before and after ddup
Errors: None

Upgraded via 'ddup --flash-latest' from r33010M v3. Performed a 'erase nvram' this time, as it's been 11 months Shocked since the last one.

The temperatures are good: CPU 59.7 °C / WL0 48.5 °C / WL1 49.5 °C (The R7000 is wall-mounted.)


Current basic R7000 setup (subject to change of course):
- SFE - On
- Static WAN IP
- LAN DHCP Enabled
- IPv4 only
- No additional VLANS
- Encrypt DNS enabled / Cisco OpenDNS
- Wireless: Regulatory Domain = UNITED_STATES, wl0 NG-Mixed (ch. 7 + 5), wl1 NA-Mixed (ch. 161 + 159), AES
- SNMP enabled, SSH enabled, Telnet disabled
- Firewall enabled, Log Level high
- Syslog: remote to Logentries. klogd: disabled.
- USB Flashdrive mounted as JFFS, adblocking via pixelserv
- NO: ttraf, VNC, Zabbix, VPN, Radius, OpenVPN
- NO: Port forwarding, UPnP, DMZ, QoS
- NO: Samba, CIFS, JFFS2, miniDLNA, Entware, Optware

_________________
Netgear R7000: v3.0-r54248 std (11/29/23)
EdgeRouter-X: EdgeOS v2.0.9-hotfix 7
kallsop
DD-WRT User


Joined: 10 Apr 2008
Posts: 135

PostPosted: Fri Oct 06, 2017 13:09    Post subject: Reply with quote
Router: R7000
Firmware: DD-WRT v3.0-r33435M kongac (10/04/17)
Kernel: Linux 4.4.89 #446 SMP Wed Oct 4 07:56:30 CEST 2017 armv7l
Upgraded: from 32170M via GUI
Reset: no
Status: Working
Errors: none

So far so good. I have SFE disabled. OpenVPN client + PBR running ok. Papertrail logging looks clean.
LichtiMC
DD-WRT Novice


Joined: 06 Oct 2017
Posts: 2

PostPosted: Fri Oct 06, 2017 23:43    Post subject: Disable/enable Wifi per Shell command Reply with quote
I'm trying to disable and enable both 2.4 and 5GHz wifi on my R7000 with latest build per shell.
In principle it does work, but after about 2hrs the router disconnects and goes offline. I have to power recycle the device to bring it up again.

These are the commands I'm using:
startservice radio_off_0 -f; startservice radio_off_1 -f
and
startservice radio_on_0 -f; startservice radio_on_1 -f

My purpose is to automatically switch off wifi when going to bed and enable it in the morning.

I guess it has smth. to do with dnsmasq. After these dnsmasq-logging-entries the router is dead:
Code:
10.06.2017 02:02   10.06.2017 02:02   system   Info   process_monitor[16547]   set timer: 3600 seconds, callback: ntp_main()
10.06.2017 02:02   10.06.2017 02:02   system   Info   dnsmasq[16562]   read /etc/hosts - 21 addresses
10.06.2017 02:02   10.06.2017 02:02   system   Info   dnsmasq[16562]   using 2 more local addresses
10.06.2017 02:02   10.06.2017 02:02   system   Info   dnsmasq[16562]   using nameserver 8.8.4.4#53
10.06.2017 02:02   10.06.2017 02:02   system   Info   dnsmasq[16562]   using nameserver 8.8.8.8#53
10.06.2017 02:02   10.06.2017 02:02   system   Info   dnsmasq[16562]   using local addresses only for domain example.com
10.06.2017 02:02   10.06.2017 02:02   system   Info   dnsmasq[16562]   using local addresses only for domain example.org
10.06.2017 02:02   10.06.2017 02:02   system   Info   dnsmasq[16562]   using local addresses only for domain example.net
10.06.2017 02:02   10.06.2017 02:02   system   Info   dnsmasq[16562]   using local addresses only for domain invalid
10.06.2017 02:02   10.06.2017 02:02   system   Info   dnsmasq[16562]   using local addresses only for domain local
10.06.2017 02:02   10.06.2017 02:02   system   Info   dnsmasq[16562]   using local addresses only for domain localhost
10.06.2017 02:02   10.06.2017 02:02   system   Info   dnsmasq[16562]   using local addresses only for domain onion
10.06.2017 02:02   10.06.2017 02:02   system   Info   dnsmasq[16562]   using local addresses only for domain test
10.06.2017 02:02   10.06.2017 02:02   system   Info   dnsmasq[16562]   reading /tmp/resolv.dnsmasq
10.06.2017 02:02   10.06.2017 02:02   system   Info   dnsmasq[16562]   using 2 more local addresses
10.06.2017 02:02   10.06.2017 02:02   system   Info   dnsmasq[16562]   using local addresses only for domain example.com
10.06.2017 02:02   10.06.2017 02:02   system   Info   dnsmasq[16562]   using local addresses only for domain example.org
10.06.2017 02:02   10.06.2017 02:02   system   Info   dnsmasq[16562]   using local addresses only for domain example.net
10.06.2017 02:02   10.06.2017 02:02   system   Info   dnsmasq[16562]   using local addresses only for domain invalid
10.06.2017 02:02   10.06.2017 02:02   system   Info   dnsmasq[16562]   using local addresses only for domain local
10.06.2017 02:02   10.06.2017 02:02   system   Info   dnsmasq[16562]   using local addresses only for domain localhost
10.06.2017 02:02   10.06.2017 02:02   user-level   Info      dnsmasq : dnsmasq daemon successfully started
10.06.2017 02:02   10.06.2017 02:02   system   Info   dnsmasq[16562]   using local addresses only for domain onion
10.06.2017 02:02   10.06.2017 02:02   system   Info   dnsmasq[16562]   using local addresses only for domain test
10.06.2017 02:02   10.06.2017 02:02   system   Info   dnsmasq-dhcp[16562]   DHCP, IP range 192.168.10.101 -- 192.168.10.199, lease time 1d
10.06.2017 02:02   10.06.2017 02:02   system   Info   dnsmasq[16562]   compile time options: IPv6 GNU-getopt no-RTC no-DBus no-i18n no-IDN DHCP DHCPv6 no-Lua no-TFTP no-conntrack no-ipset no-auth DNSSEC loop-detect no-inotify
10.06.2017 02:02   10.06.2017 02:02   system   Info   dnsmasq[16562]   started, version 2.78 cachesize 1500
10.06.2017 02:02   10.06.2017 02:02   system   Debug   process_monitor[16547]   We need to re-update after 3600 seconds
10.06.2017 02:02   10.06.2017 02:02   user-level   Info      process_monitor successfully started
10.05.2017 23:59   10.05.2017 23:59   user-level   Debug      ttraff: data for 5-10-2017 commited to nvram
10.05.2017 23:57   10.05.2017 23:57   user-level   Info      nas : NAS daemon successfully stopped
10.05.2017 23:57   10.05.2017 23:57   user-level   Info      NAS : NAS lan (wl1 interface) successfully started
10.05.2017 23:57   10.05.2017 23:57   user-level   Info      nas : NAS daemon successfully stopped
10.05.2017 23:57   10.05.2017 23:57   user-level   Info      nas : NAS daemon successfully stopped


Does anybody know why the router loses the connection and what I can do against it? Thanks.
kvoorhees
DD-WRT Novice


Joined: 03 Nov 2015
Posts: 6

PostPosted: Sat Oct 07, 2017 13:03    Post subject: New Certs Reply with quote
dragonC wrote:
dragonC wrote:
<Kong> wrote:
dragonC wrote:
My OpenVPN Server process fails launch.

I have it start under a Startup script (by directly launching /usr/sbin/openvpn with a config file). I can try to config it via the GUI and see if there's any difference.

Any one else has input on OpenVPN (server and/or client) in this build?

UPDATE: Same with GUI config -- OpenVPN process is not launching. Have to revert to previous working build for now.


Create new certs, same for freeradius, this is due to openssl upgrade. You can see this if you look at the syslog messages. tls_err...


Arr...thanks <Kong>. Let me give it a try.



Bad on my part --> I vaguely remember turning syslog off, coz I don't often monitor that. But occasional incidents like this is the reason we should have that enabled in the first place. Will report back once I give it a try.




New certs work. Thanks Kong


Do we have to generate all new client certs as well? What specifically do we need to update? Thanks!
Alozaros
DD-WRT Guru


Joined: 16 Nov 2015
Posts: 6447
Location: UK, London, just across the river..

PostPosted: Sat Oct 07, 2017 18:23    Post subject: Reply with quote
LichtiMC i guess you can turn off radio via cron script instead... on one of my routers i have this script to
turn on/off business hours only

0 18 * * 1,2,3,4,5 root wl -i eth1 radio off
0 6 * * 1,2,3,4,5 root wl -i eth1 radio on

i guess you have to adapt it for your router Wink to be honest its been there for ages and i haven't checked it if its still working...

_________________
Atheros
TP-Link WR740Nv1 ---DD-WRT 55630 WAP
TP-Link WR1043NDv2 -DD-WRT 55723 Gateway/DoT,Forced DNS,Ad-Block,Firewall,x4VLAN,VPN
TP-Link WR1043NDv2 -Gargoyle OS 1.15.x AP,DNS,QoS,Quotas
Qualcomm-Atheros
Netgear XR500 --DD-WRT 55779 Gateway/DoH,Forced DNS,AP Isolation,4VLAN,Ad-Block,Firewall,Vanilla
Netgear R7800 --DD-WRT 55819 Gateway/DoT,AD-Block,Forced DNS,AP&Net Isolation,x3VLAN,Firewall,Vanilla
Netgear R9000 --DD-WRT 55779 Gateway/DoT,AD-Block,AP Isolation,Firewall,Forced DNS,x2VLAN,Vanilla
Broadcom
Netgear R7000 --DD-WRT 55460 Gateway/SmartDNS/DoH,AD-Block,Firewall,Forced DNS,x3VLAN,VPN
NOT USING 5Ghz ANYWHERE
------------------------------------------------------
Stubby DNS over TLS I DNSCrypt v2 by mac913
dg_102
DD-WRT Novice


Joined: 16 Sep 2017
Posts: 7
Location: Toronto, Canada

PostPosted: Sun Oct 08, 2017 14:49    Post subject: Reply with quote
Router Model: Dlink-DIR885L/R A2
Firmware Version: DD-WRT v3.0-r33435M kongac (10/04/17)
Kernel Version: Linux 4.4.89 #446 SMP Wed Oct 4 07:56:30 CEST 2017 armv7l
DHCP Server: Enabled - Running
USB Support: Enabled
CloneVince
DD-WRT User


Joined: 31 May 2014
Posts: 219

PostPosted: Sun Oct 08, 2017 15:45    Post subject: Reply with quote
Posted as stable at : http://www.desipro.de/ddwrt/K3-AC-Arm/

@Kong : correct me if i'm wrong, but it's the same version as http://www.desipro.de/ddwrt/K3-AC-Arm/TEST/ ?

_________________
Unofficial Kong's release repository : http://ddwrt-kong.clonevince.fr/
Goto page Previous  1, 2, 3, 4, 5  Next Display posts from previous:    Page 2 of 5
Post new topic   Reply to topic    DD-WRT Forum Index -> Broadcom SoC based Hardware All times are GMT

Navigation

 
Jump to:  
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
You can attach files in this forum
You can download files in this forum