NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.
VPN
87 TopicsFVS318v3 slow speeds as Router fast as Hub what settings can I change (internally on netgear)
My FVS 318 v3 is only 7 & 8 Mbps as a Router but it speeds up to (94 & 67 Mbps when modem cable is moved from WAN to a LAN port. what inside the Netgear is slowing down speed. No Port Fwrd, no Rules, no VPN, just basic AUTO setup.30Views0likes2CommentsVPN Access with users/passwords
Currently the VPN feature in Orbi, like all other nighthawk routers I have used in past only use certificate based authentication. Meaning authentication is only one-factor. As any security aficiando will tell you, you should always do two factor authentication. Can we get username/password's added to the VPN functionality in this router and the nighthawks? It is a simple mechanism to get two-factor auth. Or if we could hook up to SMS service that would also work :-) Don't want Russia hacking into my home network to steal all my kitten photos.11KViews4likes2CommentsSupport for Linux clients and OPENVPN on R7000 or any other Netgear router
Althought the R7000 router has support for MAC and Windows clients when using the Netgear R7000 OPENVPN built-in server, it does not support Linux as a client. See the following link: https://community.netgear.com/t5/Nighthawk-WiFi-Routers/R7000-VPN-Service-TAP-or-TUN/m-p/1002408#M20691 Currently I am running the latest "supported" firmware version: V1.0.4.30_1.1.67 as of Nov 10 2015 There is a great number of Linux users and not being able to take advantage of the OPENVPN server in the Router seems to be a big limitation/oversight. I personally purchased this router because of the fat that it had a built in OENVPN server, so that I could connect my Android and Linux devices to my network. As I discovered after purchasing the router neither of these platforms are supported. It seems that IOS and Android support is coming, but no plans to implement Linux. It may be possible to manually configure a Linux client if Netgear would publish how OPENVPN is implemented. I understand that this would not be "supported" by Netgear, but for those of us who have some technical skill we could possibly implement it and make it work for our needs. Providing information such as and not limited to the following would be very useful since OPENVPN is open source software: Tunnel Device (TUN/TAP) Protocol UDP/TCP) Port number (1194 -> official port, or another port defined by Netgear) Encryption cipher (None, blowfish, AES-512/256/192/128 CBC, etc....) Hash algorithm (SHA1/256/512,MD4/5,none, etc....) TLS Cipher (none, AES-128/256 SHA, etc...) LZO Compression (Adaptive, yes/No, none) Authority/ Password usage TLS Auth Key usage ? PKCS12 Key usage? Static Key usage? ns-cert-type server ? Is access limited to the local network, to access the internet only, or to both local and internet? etc..... This post is essentially to ask for Netgear to provide the following: Implement a Linux client file and instructions on how to implement it for the various distributions of Linux. Provide comprehensive documentation on how OPENVPN is implemented in the R7000 router or any other router that has an OPENVPN server built-in.95KViews13likes7CommentsL2TP AD integration and DH key length
L2TP with IPSEC is for sure easy to setup, but even more convenient would be to use Active Directory authentication, such as one for SSL VPN and admin role setup. Windows internal VPN client offers domain credentials as on option for authentication, that would ease the setup. Of course there would be need for group membership checking or explicitly define, which users are allowed to login. Also, DH should allow use of 2048-bit keys.15KViews1like1CommentEX7000 wont work with VPN
I'm using an Arris Surfboard modem with the EX7000 extender. My mobile device uses fSecure Freedome as a VPN. Everything works fine when I connect to the modem directly via Wi-Fi. When I connect thru the extender, the VPN icon appears on my device and I see a Wi-Fi connection icon on the phone. But as soon as I attempt to browse to a web site, the VPN icon disappears and the page won't load. If I turn off the VPN, I can browse thru the extender with no issues. So it seems there's some confusion as to how the extender views and handles my VPN traffic. I've reserved the MAC addresses of the extender in the router DHCP table. I do not have an ACL allow/deny list set up on the router. I redid all of the settings of the router and extender back to simple default settings in case I had screwed something up. Nothing seems to solve the problem. Additionally, the 2GHz extension works sometimes (albeit rarely) and will stop working later. The 5GHz seems to always have issues.Solved14KViews0likes18CommentsMD5-Signed Certificate Warning with OpenVPN on iOS
As of version 1.2.8 of the OpenVPN app on iOS, OpenVPN issues the following warning: > WARN TLS: received certificate signed with MD5. > Please inform your admin to upgrade to a > stronger algorithm. Support for MD5 will be > dropped at end of Apr 2018 The warning appears as a modal dialog that interrupts use of the device. If the device is unlocked after a short period of time with the VPN connected, there will typically be multiple modal dialogs. This is an extremely frustrating experience. There appears to be no way to disable this warning and nothing router owners can do. A similar issue arose earlier for Android users (https://community.netgear.com/t5/Nighthawk-WiFi-Routers/Netgear-R7000-and-OpenVPN-for-Android-App/m-p/1310857). It is still unresolved at the time of writing. Netgear needs to issue a firmware update that changes the certificate used for OpenVPN.Solved37KViews4likes108CommentsOpenVPN No server certificate verification method has been enabled.
Hi, I'm using a R7000 running V1.0.9.28_10.2.32. I just enabled VPN and tried to connect via a Windows 10 OpenVPN client but get the following errors in the VPN Windows Log I removed the normal messages at the start of the log but can provide them if required. Wed May 02 17:00:46 2018 us=65248 WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info. Wed May 02 17:00:46 2018 us=65248 OpenSSL: error:140AB18E:SSL routines:SSL_CTX_use_certificate:ca md too weak Wed May 02 17:00:46 2018 us=65248 MANAGEMENT: Client disconnected Wed May 02 17:00:46 2018 us=65248 Cannot load certificate file client.crt Wed May 02 17:00:46 2018 us=65248 Exiting due to fatal error This is using the downloaded configuration from my Netgear router's Advanced Setup VPN. I use a static IP provided by my ISP so don't need to provide a a Dynamic DNS setting. I've modified the client1 config accordingly with my external static IP. Looks to me as though the internal Netgear VPN Server's cert is somehow incorrect! Any ideas?Solved217KViews0likes7CommentsTrouble Setting Up Orbi VPN on Mac OSX
Hello - I tried searching for the answer but none of the search results seemed relevant. I must be missing a step somewhere. Here is what I did: Orbi WiFi has the basic installation complete and set up -- I can log into the orbilogin.com using the default username and password. I go to Orbi Advanced tab, Advanced Setup, DynamicDNS. I have successfully set up a NETGEAR DDNS account and activated it successfully on NOIP.com. As instructed by NOIP, I have download and successfully set up Dynamic Update Client for Mac. I can log into the NOIP dashboard and it shows my mynetgear hostname as active with no errors. Let's just call it MYHOSTNAME01 . MYNETGEAR . COM. I go back into my Orbi Advanced tab, Advanced Setup, DynamicDNS and click “Show Status” and the system shows that I am successfully configured/connected to MYHOSTNAME01 . MYNETGEAR . COM. I go to Orbi Advanced tab, Advanced Setup, VPN Service and click “Enable VPN Service” and keep the defaults for Advanced Configurations “TUN UDP port 12973” and “TAP UDP port 12974”, Clients will use this VPN set to “Auto”. I click apply and I download the FOR MACOSX configuration package. I install Tunnelblick on Mac OSX for Sierra OSX version (latest). I take the FOR MACOSX configuration package and paste the files in "~/Library/Application Support/Tunnelblick/Configurations”. At this point I then take the “client.conf” from the Orbilogin.com dashboard “FOR MACOSX” downloaded configuration package and drag and drop it onto Tunnelblick. I accept all the setup prompts in Tunnelblick and then Tunnelblick creates a “client.tblk” in the same location as all the FOR MACOSX files (again, ~/Library/Application Support/Tunnelblick/Configurations). I click “Connect” in Tunnelblick but no successful connection is made — Tunnelblick times out. I follow the Orbilogin.com instructions for FOR SMART PHONE and try to make a connection from my iPhone and it also times out using the OpenVPN Connect iPhone app. (the app correctly shows the configuration file indicating to connect to "MYHOSTNAME01 . MYNETGEAR . COM / smart_phone". So basically I am demonstrating that I tried installing and testing VPN connectivity to the Orbi VPN service from two different devices (my Mac and my iPhone - neither of which are currently connected to my Orbi WiFi home network). Am I missing a step? Help please.SolvedOrbi RBK50 VPN Win10
Salve Ho abilitato la VPN; inserito una url ddns; scaricato i file di configurazione; scaricato ed installato il client OpenVPN; decompresso il file di configurazione e copiati i file nella cartella "config" di OpenVPN; rinominato l'adattatore di rete in "NETGEAR-VPN"; ma quando tenteo la connessione, ricevo dal client: Enter Management Password: Sun May 06 12:46:13 2018 WARNING: No server certificate verification method has been enabled. See http://openvpn.net/howto.html#mitm for more info. Sun May 06 12:46:13 2018 OpenSSL: error:140AB18E:SSL routines:SSL_CTX_use_certificate:ca md too weak Sun May 06 12:46:13 2018 Cannot load certificate file client.crt Cosa ho sbagliato? Grazie6.1KViews0likes6Comments