Recent content by CoreDump7

  • SNBForums Code of Conduct

    SNBForums is a community for everyone, no matter what their level of experience.

    Please be tolerant and patient of others, especially newcomers. We are all here to share and learn!

    The rules are simple: Be patient, be nice, be helpful or be gone!

  1. C

    Issue with Parental Control - Time Scheduling

    Randomized MACs are good for the privacy of the owner of a roaming device, but I don't see any advantage for that behavior on my home network. It seems like more of a likely source of security problems. Here's a naive idea: Consumer router/base-stations are probably mostly run in two kinds of...
  2. C

    Why doesn't router enforce use of assigned LAN IPs?

    Well, I was about to answer "No, I'm not using AiMesh" but then I looked at the admin page, and things seem to have changed. I'm running the merlin 384.19 release from August. I have 3 ASUS router/basestations joined by an ethernet switch to cover a large house. Two of them are in access...
  3. C

    Why doesn't router enforce use of assigned LAN IPs?

    My assumption is that there's a local-IP + MAC table maintained by the mechanism doing NAT, and that the time schedule blocking feature is imperfectly integrated so that not enough checking is done when creating entries in this table. I've just started reading the asuswrt source code and have...
  4. C

    Why doesn't router enforce use of assigned LAN IPs?

    One way might be to use the DHCP server table of leased IPs and manually assigned IPs to validate IPs against MAC addrs at connection establishment time and reject NAT on any IP/MAC that's not declared there. I'm guessing there may be cases where this would cause problems, but maybe it's...
  5. C

    Why doesn't router enforce use of assigned LAN IPs?

    RT-AC68U: In debugging why time scheduling wasn't working for a device I discovered that a client device is not required to use the local IP assigned by the router (either via DHCP or manual registration), and instead if a client just starts using an unused IP in the correct subnet the router...
  6. C

    Issue with Parental Control - Time Scheduling

    I'd be happy if my kid was actually learning how routers work in detail, but I suspect this trick came either from aimlessly fiddling with the settings while blocked, or via the grapevine. I've played around with this a little more. Manually assigning an IP on the LAN > DHCP Server GUI page...
  7. C

    Issue with Parental Control - Time Scheduling

    I've now got a better idea what's going on. It looks like the parental control time scheduling is easily bypassed by explicitly assigning a non-leased IP address at the client. It appears that NAT works even on non-leased IPs while time scheduling blocking is based only on the DHCP server...
  8. C

    Issue with Parental Control - Time Scheduling

    The problem is back: a chromebook is subject to time scheduling, the client list shows it as blocked, but it's able to do some tasks and gets recorded at the router as using a lot of bandwidth. I'm attaching the client list entry and the daily traffic analysis. There's not much breakdown...
  9. C

    Issue with Parental Control - Time Scheduling

    @ColinTaylor : There is a device for which I am attempting to do time scheduling (i.e. block on schedule) under AIProtection. Previously (Sept 5 post, above) the admin interface indicated that time scheduling was applied and the device was blocked, but it was connecting to the WAN anyway, and...
  10. C

    Issue with Parental Control - Time Scheduling

    Thanks for the responses. It took me a while to fully follow up on this. Doing a factory reset via the single reset button on the back didn't fix it. Today I did a "hard factory reset" by holding down the WPS button on power up until the power light stops flashing. I expected the router to...
  11. C

    Issue with Parental Control - Time Scheduling

    I'm running 3.0.0.4.385.20630 (released 2020.8.14) on an RT-AC68U and I'm still seeing the problem, i.e. I have time scheduling enabled for a particular device (by MAC address) and NAT acceleration disabled, and the device continues to connect to the internet, even though the Network Map shows...
Top