/me raises hand up to be guinea pig :D
I can surely help test the use cases that I currently use YazFi for (guest isolation, separate subnet etc., no VPN though).
I don't have ipv6 enabled.
Interesting results when I temporarily disable Skynet.
1) Ping from main wireless (10.100.100.x) to guest (10.100.2.x) > failed (this passed before)
2) Ping from main wired (10.100.100.x) to guest (10.100.2.x) > failed (this is unchanged)
3) Ping from guest...
Very interesting, I cannot ping guest (10.100.2.0) from wired only wireless, though both wired and wireless are on the same main subnet (10.100.100.0)
Wired (main network):
ping 10.100.2.75 (guest network)
iptables -t raw -S:
iptables -S:
Thank you!
If this helps, I tried pinging the IoT on guest network (10.100.2.0) from my laptop on the main network (10.100.100.0) and it went through.
laptop on main network, ifconfig:
ping 10.100.2.75 (guest iot) from 10.100.100.120:
More info on my setup. I run the following...
A bit more info that may help. Items in "<>" are redacted for obvious reasons. /jffs/scripts/YazFi status:
If I temporarily connect my laptop to guest network and try to ping one of the IOT devices:
ip of laptop on guest: 10.100.2.55, ifconfig:
Pinging from laptop to one of IOT devices -...
Sorry about not providing the router model beforehand. I'm running AC68U, Merlin 384_6 firmware. Only posting what's relevant, leaving out blank lines from config file. Only 1 2.4G guest network on subnet 10.100.2.0 for IoT devices. Router main network is on 10.100.100.0 subnet.
Config file...
This is about client isolation on guest network:
Sorry, I was away for a month. Yes, I can ping between 2 devices. I set CLIENTISOLATION=true in the new config file (updated to latest version as of today 2.3.8). Is there anything I should look for that I might've missed?
Thanks!
Thanks a lot for YazFi! This is a great addition to Merlin. I'd even go this far saying ASUS should integrate it in to their official firmware.
I have one request: Would it be possible to add "device isolation" as a feature for YazFi networks? IoT devices are usually one of the client set of...