Recent content by storkinsj

  • SNBForums Code of Conduct

    SNBForums is a community for everyone, no matter what their level of experience.

    Please be tolerant and patient of others, especially newcomers. We are all here to share and learn!

    The rules are simple: Be patient, be nice, be helpful or be gone!

  1. storkinsj

    hooking DNSMASQ requests

    Thanks for the tip on unbound. This seems to do exactly what I want: https://github.com/ohitz/unbound-domainfilter
  2. storkinsj

    hooking DNSMASQ requests

    Will definitely have a look thank you! DNSMASQ seems more like "busybox" than a focused dns server because of all that it does. Thanks for the resource.
  3. storkinsj

    hooking DNSMASQ requests

    Thanks- Yes I am focused on actual east-west/intranet traffic. So looking to block local host name resolution unless it's going to the blessed hosts. Of course in a guest network this is not an issue but assuming a network without perfect east/west firewalls configured. Really trying to hook...
  4. storkinsj

    hooking DNSMASQ requests

    I wish I could do this by domain. It's all one domain. I'll just have a list of hosts.
  5. storkinsj

    hooking DNSMASQ requests

    Hi All, This is a bit of a weird configuration and I am not sure if it can be done. Goal: -Part A: If a DNS request for a host matches a list of host names, pass request to upstream DNS server -Part B: If it doesn't match one of those host names, I want to send it to a sink-hole Part B is...
  6. storkinsj

    the website sent back unusual and incorrect credentials.

    https://support.google.com/chrome/thread/10551759/net-err-cert-invalid-website-sent-scrambled-credentials-self-signed-certificate?hl=en :-)
  7. storkinsj

    Should I be worried? (sha256 hash not matching)

    Hi All, Picture paints a thousand words. Why don't these match?
  8. storkinsj

    Diversion Diversion and a crashing dnsmasq

    Hi- I know this is an old thread but I just want to say Diversion will take your router out if you aren't careful. And it was behaving Very strangely. I had network up but DNS failures 2 days in a row in the morning. I assume maybe it was triggered by diversion updating its blacklist but it's...
  9. storkinsj

    AC87U Asus Merlin - Jumbo Frames and MTU

    cool. yes option shows up for me. not sure I have the use case yet but I will try to post back here once I’ve tried the experiment hopefully within the next few weeks
  10. storkinsj

    AC87U Asus Merlin - Jumbo Frames and MTU

    Hi sorry I was just hoping someone had an update. I am not solving yet but short-term-future-proofing. I am going to be running virtual networking in the house using NSX. So far I have not had to go outside my 10Gbe ethernet switch but I am adding a 3rd computer and in theory I would like the...
  11. storkinsj

    AC87U Asus Merlin - Jumbo Frames and MTU

    I would like to figure out if you got this one solved. I don't have the same router hardware but sort of need to make sure this works.
  12. storkinsj

    Dual wan port forwarding

    When you explained how you fixed this on the command line, I understood: Port forwarding is configured in the moment based on the WAN setup you have. In the user interface, I removed my port forwarding configuration, and readded it; the difference being that now I had a dual-wan setup. It worked.
  13. storkinsj

    Dual PPPoE Wan

    Yikes 7 years later and wishing this were possible. No?
  14. storkinsj

    DNS failing with heavy UDP traffic

    The problem is "officially solved" at this point with VPN inside the guest virtual machine. Without the tunnel, we were getting blocked by the number of outbound connections. Based on the number of connections out of "30,000" listed in the network status, I don't think this was the merlin...
  15. storkinsj

    DNS failing with heavy UDP traffic

    don’t get me wrong… wire guard is a potentially great solution to speed up the VPN … and I will pursue it through a provider. I think security wise ngrok is more seasoned but it is not the same type of system. I believe in closed source software and in fact I spent half of my life making it...
Top