Recent content by CoreDump7

  • ATTENTION! As of November 1, 2020, you are not able to reply to threads 6 months after the thread is opened if there are more than 500 posts in the thread.
    Threads will not be locked, so posts may still be edited by their authors.
    Just start a new thread on the topic to post if you get an error message when trying to reply to a thread.
  1. C

    Issue with Parental Control - Time Scheduling

    Randomized MACs are good for the privacy of the owner of a roaming device, but I don't see any advantage for that behavior on my home network. It seems like more of a likely source of security problems. Here's a naive idea: Consumer router/base-stations are probably mostly run in two kinds of...
  2. C

    Why doesn't router enforce use of assigned LAN IPs?

    Well, I was about to answer "No, I'm not using AiMesh" but then I looked at the admin page, and things seem to have changed. I'm running the merlin 384.19 release from August. I have 3 ASUS router/basestations joined by an ethernet switch to cover a large house. Two of them are in access...
  3. C

    Why doesn't router enforce use of assigned LAN IPs?

    My assumption is that there's a local-IP + MAC table maintained by the mechanism doing NAT, and that the time schedule blocking feature is imperfectly integrated so that not enough checking is done when creating entries in this table. I've just started reading the asuswrt source code and have...
  4. C

    Why doesn't router enforce use of assigned LAN IPs?

    One way might be to use the DHCP server table of leased IPs and manually assigned IPs to validate IPs against MAC addrs at connection establishment time and reject NAT on any IP/MAC that's not declared there. I'm guessing there may be cases where this would cause problems, but maybe it's...
  5. C

    Issue with Parental Control - Time Scheduling

    I'd be happy if my kid was actually learning how routers work in detail, but I suspect this trick came either from aimlessly fiddling with the settings while blocked, or via the grapevine. I've played around with this a little more. Manually assigning an IP on the LAN > DHCP Server GUI page...
  6. C

    Issue with Parental Control - Time Scheduling

    I've now got a better idea what's going on. It looks like the parental control time scheduling is easily bypassed by explicitly assigning a non-leased IP address at the client. It appears that NAT works even on non-leased IPs while time scheduling blocking is based only on the DHCP server...
Top