• SNBForums Code of Conduct

    SNBForums is a community for everyone, no matter what their level of experience.

    Please be tolerant and patient of others, especially newcomers. We are all here to share and learn!

    The rules are simple: Be patient, be nice, be helpful or be gone!

Recent content by CntrlAltDel

  1. CntrlAltDel

    UniFi native RADIUS auth issue over WiFi

    @Tech9 I managed to solve the issue. 14 hours of troubleshooting just to find out one of the credentials which should've been following the format of name.surname had name,surname instead which was causing parsing error on loading of the RADIUS profile. I then also had to manually update the...
  2. CntrlAltDel

    UniFi native RADIUS auth issue over WiFi

    Interesting, just checking RADIUS dump over SSH and it looks like there's only Access-Request retries with no responses. ps aux | egrep -i 'freeradius|radiusd|unifi.*radius' | grep -v egrep <user> <pid> 0.0 0.0 4952 2120 pts/0 S+ 22:37 0:00 grep -E -i...
  3. CntrlAltDel

    UniFi native RADIUS auth issue over WiFi

    The APs are connected to the UniFi Switch, the ports that they are connected to are configured native VLAN=Management and tagged VLANs=All of the VLANs associated with SSID's that I mentioned i.e BYOD-Wireless VLAN 35, Users-Wireless VLAN 30 etc. I am communicating that the APs should be able to...
  4. CntrlAltDel

    UniFi native RADIUS auth issue over WiFi

    No they're not. Management VLAN 1 = APs themselves BYOD-Wireless VLAN 35 = VLAN associated with SSID (This one auths WPA2-Enterprise -> RADIUS and fails) Users-Wireless VLAN 30 = VLAN associated with SSID (This one auths WPA2-PSK successfully) All the VLANs associated with the SSIDs are tagged...
  5. CntrlAltDel

    UniFi native RADIUS auth issue over WiFi

    All APs are UniFi UAP-NanoHD's. Yes, in fact RADIUS auth worked before. It's just now that I've split SSID's into separate VLANs that there's an issue. There's no firewall related blocks. Nothing happens when I try to auth from client device, even an event isn't logged. Yes, I just named it...
  6. CntrlAltDel

    UniFi native RADIUS auth issue over WiFi

    Hi there, I'm having an issue authing to one of my SSID's that is using WPA2-Enterprise with the native UniFi RADIUS configured on the default ports 1813/1814. I have another SSID that is just authing with a WPA2-PSK which just works fine. Network looks like this: Management VLAN 1...
  7. CntrlAltDel

    Ideal ASUS AP Setup Config for WiF Coverage?

    For anyone wondering how this concluded. I switched to a UniFi setup with UniFi network app hosted on Proxmox, UXG Max, UAP-NanoHD*2 both on different channels and 2 SSIDs for 2.4G and 5G and I've not had one problem since switching. Even without 802.11r my devices roam seamlessly between APs.
  8. CntrlAltDel

    Ideal ASUS AP Setup Config for WiF Coverage?

    Alright, it seems it may just be better for me to get a L2 switch to handle the cabling and then to move the AP to central and elevated position in the house (in the middle somewhere). I think I'll give it a go and see what the outcome is.
  9. CntrlAltDel

    Ideal ASUS AP Setup Config for WiF Coverage?

    Hi there, So I just have a quick question specifically around my concern about AP handover on WiFi. There's one WiFi deadzone in my household that I want to correct by adding another RT-AC88U (I have another in the front of my house). The core idea is to use the same equipment assuming there is...
  10. CntrlAltDel

    SMBv1 only?

    Yeh, I just switched back to OPNsense, it was getting quite clear that I was running outdated equipment.
  11. CntrlAltDel

    SMBv1 only?

    Also entware seems to offer SMBv4 client but BACKUPMON only supports up to SMBv3.01. Even still not sure if installing the entware pkg would allow for SMBv4 where SMBv1 is running natively.
  12. CntrlAltDel

    SMBv1 only?

    I'm on Merlin 386.14_2 AC88U trying to setup BACKUPMON and noticed when I tried to use SMB network location BACKUPMON fails to connect but pings work fine. Eventually I got to enabled SMBv1 on W11 (where the share is hosted) and that made it possible for me to connect which begs the question...
  13. CntrlAltDel

    Allow ICMP from whitelist .txt hosted online?

    Spent some time on this and took the most direct approach and it seems to be holding up: - Installed Entware via amtm - Installed curl and ca-bundle to download from https link with ip list .txt - Created updater script that just curls once daily the .txt ip list - Script then applied rule list...
  14. CntrlAltDel

    Allow ICMP from whitelist .txt hosted online?

    Hi there, Does anyone know if it's at all possible to source IP whitelist for ICMP from an online .txt? In GUI there's only a blanket "Respond ICMP Echo (ping) Request from WAN" option but I'd like to control this a bit more.
  15. CntrlAltDel

    MAC Address Filter Per SSID?

    Hi there, I have an ASUS RT-AC88U running in AP mode with Merlin 386.14_2 f/w. Does anyone know of a way to get wireless MAC address filtering (whitelisting) enabled but only for specific SSID's? I want to have a LAN isolated SSID that I can use for 'quick-connect' without a password. My use...
Back
Top