× NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.
× Introducing the new Orbi 770 Series Mesh System. To learn more click here.
Orbi WiFi 7 RBE973
Reply

iptables rules

jsmy
Aspirant

iptables rules

I have been using a similar process to what is outlined on this post to modify some iptables rules:

https://community.netgear.com/t5/Orbi/Static-Routing-and-NAT-iptables/td-p/1270184

 

With one of the last firmware updates I can no longer get the iptables changes to take effect.  When I delete a rule, within seconds it comes back.  When I add a rule, within seconds it is gone.

 

Does anyone know what is making these chnages revert?

 

Had latest firmware when I noticed the issue and now I am trying to slowing back-rev one update at a time to find out where this broke.

 

Would love to know what service to turn off or what config to change to make my own rules stick again.

 

Thanks!

 

 

Model: RBR50|Orbi AC3000 Tri-band WiFi Router
Message 1 of 3
CrimpOn
Guru

Re: iptables rules


@jsmy wrote:

I have been using a similar process to what is outlined on this post to modify some iptables rules:

https://community.netgear.com/t5/Orbi/Static-Routing-and-NAT-iptables/td-p/1270184

 

With one of the last firmware updates I can no longer get the iptables changes to take effect.  When I delete a rule, within seconds it comes back.  When I add a rule, within seconds it is gone.


Since you are willing to hack the Orbi firmware, you might consider flashing Voxel's firmware for the RBR50:

http://www.voxel-firmware.com/Downloads/Voxel/html/orbi.html 

Scroll to the bottom to find his Change Log.

If you download the most recent version and unpack it, there is a file QuickStart.txt.  Open it and search for "iptables".  This firmware includes a method for including your own iptables rules.

 

Testing Voxel firmware is not terribly difficult.  Save a copy of the current configuration, perform a Manual Update using Voxel's "img" file.  My memory is a bit dim, but I probably did a Factory Reset after installing Voxel and during the setup said to "Reload previous configuration."  If it turns out the Voxel firmware is not suitable, just "go back" (which it sounds like you have ample experience with).

 

I sort of like that this firmware has options to obliterate things like Disney Circle, Armor, Samba, etc.  Includes SSH in addition to telnet.

 

Message 2 of 3
jsmy
Aspirant

Re: iptables rules

Thanks for the info... I tried the firmware you suggested and it did not solve the problem.  It took doing a factory reset, then configuring everything manually. There was something busted in the old config and if I used a backup config file the problem would show up again.  After resetting to factory and manually configuring everything (painful), it works as it should again and I can modify iptables rules!

Message 3 of 3
Discussion stats
  • 2 replies
  • 1821 views
  • 0 kudos
  • 2 in conversation
Announcements

Orbi 770 Series