• April 21, 2025, 01:04:46 AM
  • Welcome, Guest
Please login or register.

Login with username, password and session length
Advanced search  

News:

This Forum Beta is ONLY for registered owners of D-Link products in the USA for which we have created boards at this time.

Author Topic: 1.30NA final/beta access control  (Read 9921 times)

Xinot

  • Level 3 Member
  • ***
  • Posts: 135
1.30NA final/beta access control
« on: April 22, 2009, 01:37:13 PM »

Did try this feature and made rule for 2 PCs. Blocked google and facebook for test and this rules worked in wired PC but not in wireless. Why is this?

Access control:
Enable access control -> add policy -> schedule always -> added PC's -> apply web filter + block some access -> web access logging on -> save

Website filter:
google.com
facebook.com

I did try to make this rules before too, and then it worked like hell. It blocked all access to network and didnt get to wan side even after i removed all rules and disabled access control. Had to reset router and make everything again to get it work again.
 :-\
Logged
A3 1.3zzz

EddieZ

  • Level 10 Member
  • *****
  • Posts: 2494
Re: 1.30NA final/beta access control
« Reply #1 on: April 22, 2009, 02:19:20 PM »

Rebooting is sometimes a wise thing to do, even when the router does not think so  ;D
Logged
DIR-655 H/W: A2 FW: 1.33

lotacus

  • Level 4 Member
  • ****
  • Posts: 450
Re: 1.30NA final/beta access control
« Reply #2 on: April 22, 2009, 05:07:35 PM »

No insult intended but you will want to make sure that the wireless NICs have the same IP address. Sometime though this will cause an IP conflict with the ethernet connections even though they are not connected. Best thing to do is reserve four IP adresses, one for each interface and don't forget to add the other two in the access rule for a total of four. So four reserved ips and four ips in the ACL.
Logged

Xinot

  • Level 3 Member
  • ***
  • Posts: 135
Re: 1.30NA final/beta access control
« Reply #3 on: April 23, 2009, 01:01:35 AM »

Rebooting is sometimes a wise thing to do, even when the router does not think so  ;D

Beboot was done of course between everything i did. Every PC have their own reserved IP. No go.
Logged
A3 1.3zzz

lotacus

  • Level 4 Member
  • ****
  • Posts: 450
Re: 1.30NA final/beta access control
« Reply #4 on: April 23, 2009, 11:38:04 AM »

Strange issue. Unfortunatly I'm not about to upgrade the firmware to see if I can reproduce it. Of course unless if dlink sends me 3 gateways 1 per hardware revision
Logged

Xinot

  • Level 3 Member
  • ***
  • Posts: 135
Re: 1.30NA final/beta access control
« Reply #5 on: April 23, 2009, 03:56:21 PM »

Strange issue. Unfortunatly I'm not about to upgrade the firmware to see if I can reproduce it. Of course unless if dlink sends me 3 gateways 1 per hardware revision

And of course i forget to tell i have Revision A3...  ;D
I test some more when i have some time to do it.
Logged
A3 1.3zzz

Geraner

  • Level 2 Member
  • **
  • Posts: 75
Re: 1.30NA final/beta access control
« Reply #6 on: May 26, 2009, 08:42:22 AM »

Same issue as I have in Firmware 1.31
http://forums.dlink.com/index.php?topic=5660.0
Logged
DIR-825 - HW: B1 - Firmware: 2.05WW Build05 Beta01
DNS-323 - HW: B1- Firmware: 1.08 Beta build 05

Xinot

  • Level 3 Member
  • ***
  • Posts: 135
Re: 1.30NA final/beta access control
« Reply #7 on: May 27, 2009, 04:46:41 PM »

Tested this again with 1.31 and its BS.
Access control with website filter is messed up. With ALLOW ONLY i have no blocked access, and same thing with DENY ONLY, but with DENY setting theres log full of this:

>>LOGAUDIT.Info<<<110> D-Link Systems DIR-655 System Log: Blocked incoming TCP packet from xx.xxx.xx.xx:80 to xx.xxx.xxx.xxx:54576 as FIN:ACK received but there is no active connection

Sometimes it just start block all access and theres this in log:

>>LOGAUDIT.Info<<<110> D-Link Systems DIR-655 System Log: Blocked outgoing ICMP packet (ICMP type 3) from 192.168.0.110 to 193.210.19.19 (My primary DNS)

 :-\

Access control, DNS, Port forwarding, Shareport, ... and without possibility to go back...
Logged
A3 1.3zzz

Xinot

  • Level 3 Member
  • ***
  • Posts: 135
Re: 1.30NA final/beta access control
« Reply #8 on: May 27, 2009, 05:04:19 PM »

Weird thing is that after i clear website filter page + remove & turn off access control and save & reboot i get this blocked incoming TCP / FIN:ACK entries in log until i go to website filter page again and just press save settings button again (no reboot). After this theres Stored configuration to non-volatile memory in log and no more FIN:ACK entries.

Some settings saving problems etc.?

edit: False alarm maybe because FIN:ACK entries started again when i started utorrent... Weird too i think.
« Last Edit: May 28, 2009, 01:41:03 AM by Xinot »
Logged
A3 1.3zzz

Geraner

  • Level 2 Member
  • **
  • Posts: 75
Re: 1.30NA final/beta access control
« Reply #9 on: June 05, 2009, 04:05:08 AM »

Problem has been solved for me, with Firmware 1.31NA Beta01  ;D
Thanks
Logged
DIR-825 - HW: B1 - Firmware: 2.05WW Build05 Beta01
DNS-323 - HW: B1- Firmware: 1.08 Beta build 05