Recent content by glehel

  1. G

    Unbound unbound_manager (Manager/Installer utility for unbound - Recursive DNS Server)

    I redirected all traffic to a single vpn server (client 1). Accept DNS Configuration: disabled, Force Internet traffic through tunnel: yes. I redirected the unbound server to a query via vpn 1. The result is my dns and ip address are the same, no dns leaks, ad blocking works all over the...
  2. G

    Suricata Suricata - IDS on AsusWRT Merlin

    AX88U has improved the processing speed of the thread auto I set. This means: - Going to use 4 thread (s) - all 8 packet processing threads, 2 management threads initialized, engine started. increased memory usage but still have about 100 Mb free :) I couldn't check the blocking yet to make it...
  3. G

    Unbound unbound_manager (Manager/Installer utility for unbound - Recursive DNS Server)

    Is it possible to implement some ip addresses (192.168.1.107-108) from other dns servers on DOT which contains the parental control?
  4. G

    What are you running? DNSCrypt or Unbound?

    unbound + vpn tunnel dns inquiry
  5. G

    Suricata Suricata - IDS on AsusWRT Merlin

    you may ignore it yourself if another runmode is set. just a tip.
  6. G

    Suricata Suricata - IDS on AsusWRT Merlin

    i put the http.log and fast.log files in the syslog-ng conf file to check easily. For now, these two are in one but can be separated if needed. i configured the suricata config myself to delete the contents of http.log when it restarts because it already exists in another location. fast.log may...
  7. G

    Suricata Suricata - IDS on AsusWRT Merlin

    default setup and Suricata - IDS/IPS on AsusWRT Merlin setup same log. 18/5/2020 -- 20:26:05 - <Notice> - This is Suricata version 4.1.7 RELEASE 18/5/2020 -- 20:26:05 - <Info> - CPUs/cores online: 2 18/5/2020 -- 20:26:05 - <Info> - Found an MTU of 1500 for 'eth0' 18/5/2020 -- 20:26:05 - <Info>...
  8. G

    Suricata Suricata - IDS on AsusWRT Merlin

    the af-packet creates a software bridge between 2 interfaces if you have it then the IPS works. This should be thought of as how to accomplish this in the Asus router. I wanted to try nfq mode but it is not enabled in suricata. It must enable the compiler will work well if we can build the IP table.
  9. G

    DNS filtering not working

    why don't you try the AiProtection parental control menu, it worked fine for me.
  10. G

    Suricata Suricata - IDS on AsusWRT Merlin

    the interface is modified to br0 so that requests from vpn clients can be seen. many people use IPS lan. i set the ip address and it was successfully logged by suricata. but google.com remained available. interesting and I haven't realized yet that you don't see wired computer traffic ...
  11. G

    Suricata Suricata - IDS on AsusWRT Merlin

    but the current setting is not set based on these, so I guess it doesn't work properly.
  12. G

    Suricata Suricata - IDS on AsusWRT Merlin

    I have a question: why is AF_PACKET IPS mode right for us? Why not the Iptables configuration? https://suricata.readthedocs.io/en/suricata-5.0.3/setting-up-ipsinline-for-linux.html#settings-up-ips-at-layer-2
  13. G

    Suricata Suricata - IDS on AsusWRT Merlin

    # Linux high speed capture support af-packet: - interface: eth0 - interface: tun11 defrag: yes use-mmap: yes netmap: - interface: br0 testing, working!
  14. G

    Unbound unbound_manager (Manager/Installer utility for unbound - Recursive DNS Server)

    Thank You! I try! maybe another example from your rpzhost file?
  15. G

    Unbound unbound_manager (Manager/Installer utility for unbound - Recursive DNS Server)

    https://gitlab.com/my-privacy-dns/rpz-dns-firewall-tools/unbound/-/tree/master/nxdomain/mypdns from here i tried the raw link. Downloading sets but there is an error in the end. The other thing is sometimes the script when I refresh the list doesn't download only the first line. If I add the...
Top