Aansluiten Ubiquiti Unifi-apparatuur + tv-ontvangers

Ik heb commando ‘mca-ctrl -t dump-cfg > config.gateway.json-compleet’ uitgevoerd (via PuTTY). Dit levert de volgende output op (deel 1):

{
        "firewall": {
                "all-ping": "enable",
                "broadcast-ping": "disable",
                "group": {
                        "address-group": {
                                "authorized_guests": {
                                        "description": "authorized guests MAC addresses"
                                },
                                "guest_allow_dns_servers": {
                                        "description": "allow dns servers for guests"
                                },
                                "guest_portal_address": {
                                        "description": "guest portal address"
                                },
                                "guest_pre_allow": {
                                        "description": "allow addresses for guests"
                                },
                                "guest_restricted": {
                                        "address": [
                                                "192.168.0.0/16",
                                                "10.0.0.0/8",
                                                "172.16.0.0/12"
                                        ],
                                        "description": "restricted addresses for guests"
                                },
                                "unifi_controller_addresses": {
                                        "description": "UniFi addresses"
                                }
                        },
                        "ipv6-network-group": {
                                "corporate_networkv6": {
                                        "description": "IPv6 corporate subnets"
                                },
                                "guest_networkv6": {
                                        "description": "IPv6 guest subnets"
                                }
                        },
                        "network-group": {
                                "captive_portal_subnets": {
                                        "description": "captive portal subnets"
                                },
                                "corporate_network": {
                                        "description": "corporate subnets",
                                        "network": [
                                                "10.20.10.0/24",
                                                "10.20.0.0/24"
                                        ]
                                },
                                "guest_network": {
                                        "description": "guest subnets",
                                        "network": [
                                                "10.20.20.0/24"
                                        ]
                                },
                                "remote_client_vpn_network": {
                                        "description": "remote client VPN subnets"
                                },
                                "remote_site_vpn_network": {
                                        "description": "remote site VPN subnets"
                                },
                                "remote_user_vpn_network": {
                                        "description": "Remote User VPN subnets"
                                }
                        },
                        "port-group": {
                                "guest_portal_ports": {
                                        "description": "guest portal ports"
                                },
                                "guest_portal_redirector_ports": {
                                        "description": "guest portal redirector ports",
                                        "port": [
                                                "39080",
                                                "39443"
                                        ]
                                },
                                "unifi_controller_ports-tcp": {
                                        "description": "unifi tcp ports",
                                        "port": [
                                                "8080"
                                        ]
                                },
                                "unifi_controller_ports-udp": {
                                        "description": "unifi udp ports",
                                        "port": [
                                                "3478"
                                        ]
                                }
                        }
                },
                "ip-src-route": "disable",
                "ipv6-name": {
                        "AUTHORIZED_GUESTSv6": {
                                "default-action": "drop",
                                "description": "authorization check packets from guest network"
                        },
                        "GUESTv6_IN": {
                                "default-action": "accept",
                                "description": "packets from guest network",
                                "rule": {
                                        "3001": {
                                                "action": "drop",
                                                "description": "drop packets to intranet",
                                                "destination": {
                                                        "group": {
                                                                "ipv6-network-group": "corporate_networkv6"
                                                        }
                                                }
                                        }
                                }
                        },
                        "GUESTv6_LOCAL": {
                                "default-action": "drop",
                                "description": "packets from guest network to gateway",
                                "rule": {
                                        "3001": {
                                                "action": "accept",
                                                "description": "allow DNS",
                                                "destination": {
                                                        "port": "53"
                                                },
                                                "protocol": "udp"
                                        },
                                        "3002": {
                                                "action": "accept",
                                                "description": "allow ICMP",
                                                "protocol": "icmp"
                                        }
                                }
                        },
                        "GUESTv6_OUT": {
                                "default-action": "accept",
                                "description": "packets forward to guest network"
                        },
                        "LANv6_IN": {
                                "default-action": "accept",
                                "description": "packets from intranet"
                        },
                        "LANv6_LOCAL": {
                                "default-action": "accept",
                                "description": "packets from intranet to gateway"
                        },
                        "LANv6_OUT": {
                                "default-action": "accept",
                                "description": "packets forward to intranet"
                        },
                        "WANv6_IN": {
                                "default-action": "drop",
                                "description": "packets from internet to intranet",
                                "rule": {
                                        "3001": {
                                                "action": "accept",
                                                "description": "allow established/related sessions",
                                                "state": {
                                                        "established": "enable",
                                                        "invalid": "disable",
                                                        "new": "disable",
                                                        "related": "enable"
                                                }
                                        },
                                        "3002": {
                                                "action": "drop",
                                                "description": "drop invalid state",
                                                "state": {
                                                        "established": "disable",
                                                        "invalid": "enable",
                                                        "new": "disable",
                                                        "related": "disable"
                                                }
                                        }
                                }
                        },
                        "WANv6_LOCAL": {
                                "default-action": "drop",
                                "description": "packets from internet to gateway",
                                "rule": {
                                        "3001": {
                                                "action": "accept",
                                                "description": "Allow neighbor advertisements",
                                                "icmpv6": {
                                                        "type": "neighbor-advertisement"
                                                },
                                                "protocol": "ipv6-icmp"
                                        },
                                        "3002": {
                                                "action": "accept",
                                                "description": "Allow neighbor solicitation",
                                                "icmpv6": {
                                                        "type": "neighbor-solicitation"
                                                },
                                                "protocol": "ipv6-icmp"
                                        },
                                        "3003": {
                                                "action": "accept",
                                                "description": "allow established/related sessions",
                                                "state": {
                                                        "established": "enable",
                                                        "invalid": "disable",
                                                        "new": "disable",
                                                        "related": "enable"
                                                }
                                        },
                                        "3004": {
                                                "action": "drop",
                                                "description": "drop invalid state",
                                                "state": {
                                                        "established": "disable",
                                                        "invalid": "enable",
                                                        "new": "disable",
                                                        "related": "disable"
                                                }
                                        }
                                }
                        },
                        "WANv6_OUT": {
                                "default-action": "accept",
                                "description": "packets to internet"
                        }
                },
                "ipv6-receive-redirects": "disable",
                "ipv6-src-route": "disable",
                "log-martians": "enable",
                "name": {
                        "AUTHORIZED_GUESTS": {
                                "default-action": "drop",
                                "description": "authorization check packets from guest network"
                        },
                        "GUEST_IN": {
                                "default-action": "accept",
                                "description": "packets from guest network",
                                "rule": {
                                        "3001": {
                                                "action": "accept",
                                                "description": "allow DNS packets to external name servers",
                                                "destination": {
                                                        "port": "53"
                                                },
                                                "protocol": "tcp_udp"
                                        },
                                        "3002": {
                                                "action": "accept",
                                                "description": "allow packets to captive portal",
                                                "destination": {
                                                        "group": {
                                                                "network-group": "captive_portal_subnets"
                                                        },
                                                        "port": "443"
                                                },
                                                "protocol": "tcp"
                                        },
                                        "3003": {
                                                "action": "accept",
                                                "description": "allow packets to allow subnets",
                                                "destination": {
                                                        "group": {
                                                                "address-group": "guest_pre_allow"
                                                        }
                                                }
                                        },
                                        "3004": {
                                                "action": "drop",
                                                "description": "drop packets to restricted subnets",
                                                "destination": {
                                                        "group": {
                                                                "address-group": "guest_restricted"
                                                        }
                                                }
                                        },
                                        "3005": {
                                                "action": "drop",
                                                "description": "drop packets to intranet",
                                                "destination": {
                                                        "group": {
                                                                "network-group": "corporate_network"
                                                        }
                                                }
                                        },
                                        "3006": {
                                                "action": "drop",
                                                "description": "drop packets to remote user",
                                                "destination": {
                                                        "group": {
                                                                "network-group": "remote_user_vpn_network"
                                                        }
                                                }
                                        },
                                        "3007": {
                                                "action": "drop",
                                                "description": "allow authorized and drop unauthorized",
                                                "destination": {
                                                        "group": {
                                                                "address-group": "authorized_guests"
                                                        }
                                                }
                                        },
                                        "6001": {
                                                "action": "accept",
                                                "description": "accounting defined network 10.20.20.0/24",
                                                "source": {
                                                        "address": "10.20.20.0/24"
                                                }
                                        }
                                }
                        },
                        "GUEST_LOCAL": {
                                "default-action": "drop",
                                "description": "packets from guest network to gateway",
                                "rule": {
                                        "3001": {
                                                "action": "accept",
                                                "description": "allow DNS",
                                                "destination": {
                                                        "port": "53"
                                                },
                                                "protocol": "tcp_udp"
                                        },
                                        "3002": {
                                                "action": "accept",
                                                "description": "allow ICMP",
                                                "protocol": "icmp"
                                        },
                                        "3003": {
                                                "action": "accept",
                                                "description": "allow to DHCP server",
                                                "destination": {
                                                        "port": "67"
                                                },
                                                "protocol": "udp",
                                                "source": {
                                                        "port": "68"
                                                }
                                        }
                                }
                        },
                        "GUEST_OUT": {
                                "default-action": "accept",
                                "description": "packets forward to guest network",
                                "rule": {
                                        "6001": {
                                                "action": "accept",
                                                "description": "accounting defined network 10.20.20.0/24",
                                                "destination": {
                                                        "address": "10.20.20.0/24"
                                                }
                                        }
                                }
                        },
                        "LAN_IN": {
                                "default-action": "accept",
                                "description": "packets from intranet",
                                "rule": {
                                        "6001": {
                                                "action": "accept",
                                                "description": "accounting defined network 10.20.10.0/24",
                                                "source": {
                                                        "address": "10.20.10.0/24"
                                                }
                                        },
                                        "6002": {
                                                "action": "accept",
                                                "description": "accounting defined network 10.20.0.0/24",
                                                "source": {
                                                        "address": "10.20.0.0/24"
                                                }
                                        }
                                }
                        },
                        "LAN_LOCAL": {
                                "default-action": "accept",
                                "description": "packets from intranet to gateway"
                        },
                        "LAN_OUT": {
                                "default-action": "accept",
                                "description": "packets forward to intranet",
                                "rule": {
                                        "6001": {
                                                "action": "accept",
                                                "description": "accounting defined network 10.20.10.0/24",
                                                "destination": {
                                                        "address": "10.20.10.0/24"
                                                }
                                        },
                                        "6002": {
                                                "action": "accept",
                                                "description": "accounting defined network 10.20.0.0/24",
                                                "destination": {
                                                        "address": "10.20.0.0/24"
                                                }
                                        }
                                }
                        },

Deel 2:

					   "WAN_IN": {
                                "default-action": "drop",
                                "description": "packets from internet to intranet",
                                "rule": {
                                        "3001": {
                                                "action": "accept",
                                                "description": "allow established/related sessions",
                                                "state": {
                                                        "established": "enable",
                                                        "invalid": "disable",
                                                        "new": "disable",
                                                        "related": "enable"
                                                }
                                        },
                                        "3002": {
                                                "action": "drop",
                                                "description": "drop invalid state",
                                                "state": {
                                                        "established": "disable",
                                                        "invalid": "enable",
                                                        "new": "disable",
                                                        "related": "disable"
                                                }
                                        },
                                        "3003": {
                                                "action": "accept",
                                                "description": "PortForward [KODI Living Toom]",
                                                "destination": {
                                                        "address": "10.20.0.15",
                                                        "port": "8080"
                                                },
                                                "protocol": "tcp_udp"
                                        },
                                        "3004": {
                                                "action": "accept",
                                                "description": "PortForward [KODI Bed Room]",
                                                "destination": {
                                                        "address": "10.20.0.52",
                                                        "port": "8181"
                                                },
                                                "protocol": "tcp_udp"
                                        },
                                        "3005": {
                                                "action": "accept",
                                                "description": "PortForward [Unifi Cloud Key]",
                                                "destination": {
                                                        "address": "10.20.0.241",
                                                        "port": "8443"
                                                },
                                                "protocol": "tcp_udp"
                                        },
                                        "3006": {
                                                "action": "accept",
                                                "description": "PortForward [Wouter-PC - Wake On LAN]",
                                                "destination": {
                                                        "address": "10.20.0.254",
                                                        "port": "9"
                                                },
                                                "protocol": "udp"
                                        },
                                        "3007": {
                                                "action": "accept",
                                                "description": "PortForward [DS416 - FTP]",
                                                "destination": {
                                                        "address": "10.20.0.32",
                                                        "port": "7776"
                                                },
                                                "protocol": "tcp_udp"
                                        },
                                        "3008": {
                                                "action": "accept",
                                                "description": "PortForward [DS416 - SFTP]",
                                                "destination": {
                                                        "address": "10.20.0.32",
                                                        "port": "7766"
                                                },
                                                "protocol": "tcp_udp"
                                        },
                                        "3009": {
                                                "action": "accept",
                                                "description": "PortForward [DS416 - Radarr]",
                                                "destination": {
                                                        "address": "10.20.0.32",
                                                        "port": "8310"
                                                },
                                                "protocol": "tcp_udp"
                                        },
                                        "3010": {
                                                "action": "accept",
                                                "description": "PortForward [DS416 - Sonarr]",
                                                "destination": {
                                                        "address": "10.20.0.32",
                                                        "port": "8989"
                                                },
                                                "protocol": "tcp_udp"
                                        },
                                        "3011": {
                                                "action": "accept",
                                                "description": "PortForward [DS416 - Wake on LAN]",
                                                "destination": {
                                                        "address": "10.20.0.32",
                                                        "port": "9"
                                                },
                                                "protocol": "udp"
                                        },
                                        "3012": {
                                                "action": "accept",
                                                "description": "PortForward [DS416 - SabNZB]",
                                                "destination": {
                                                        "address": "10.20.0.32",
                                                        "port": "8580"
                                                },
                                                "protocol": "tcp_udp"
                                        },
                                        "3013": {
                                                "action": "accept",
                                                "description": "PortForward [DS416 - Bazarr]",
                                                "destination": {
                                                        "address": "10.20.0.32",
                                                        "port": "6767"
                                                },
                                                "protocol": "tcp_udp"
                                        },
                                        "3014": {
                                                "action": "accept",
                                                "description": "PortForward [DS416 - QuickConnect]",
                                                "destination": {
                                                        "address": "10.20.0.32",
                                                        "port": "4000"
                                                },
                                                "protocol": "tcp_udp"
                                        }
                                }
                        },
                        "WAN_LOCAL": {
                                "default-action": "drop",
                                "description": "packets from internet to gateway",
                                "rule": {
                                        "3001": {
                                                "action": "accept",
                                                "description": "allow established/related sessions",
                                                "state": {
                                                        "established": "enable",
                                                        "invalid": "disable",
                                                        "new": "disable",
                                                        "related": "enable"
                                                }
                                        },
                                        "3002": {
                                                "action": "drop",
                                                "description": "drop invalid state",
                                                "state": {
                                                        "established": "disable",
                                                        "invalid": "enable",
                                                        "new": "disable",
                                                        "related": "disable"
                                                }
                                        }
                                }
                        },
                        "WAN_OUT": {
                                "default-action": "accept",
                                "description": "packets to internet"
                        }
                },
                "options": {
                        "mss-clamp": {
                                "interface-type": [
                                        "pppoe",
                                        "pptp",
                                        "vti"
                                ],
                                "mss": "1452"
                        },
                        "mss-clamp6": {
                                "interface-type": [
                                        "pppoe",
                                        "pptp"
                                ],
                                "mss": "1432"
                        }
                },
                "receive-redirects": "disable",
                "send-redirects": "enable",
                "source-validation": "strict",
                "syn-cookies": "enable"
        },
        "interfaces": {
                "ethernet": {
                        "eth0": {
                                "description": "WAN",
                                "duplex": "auto",
                                "speed": "auto",
                                "vif": {
                                        "34": {
                                                "address": [
                                                        "dhcp"
                                                ],
                                                "description": "WAN",
                                                "dhcp-options": {
                                                        "client-option": [
                                                                "retry 60;"
                                                        ],
                                                        "default-route": "update",
                                                        "default-route-distance": "1",
                                                        "name-server": "no-update"
                                                },
                                                "firewall": {
                                                        "in": {
                                                                "ipv6-name": "WANv6_IN",
                                                                "name": "WAN_IN"
                                                        },
                                                        "local": {
                                                                "ipv6-name": "WANv6_LOCAL",
                                                                "name": "WAN_LOCAL"
                                                        },
                                                        "out": {
                                                                "ipv6-name": "WANv6_OUT",
                                                                "name": "WAN_OUT"
                                                        }
                                                },
                                                "mac": "DC:15:C8:B6:CD:8D"
                                        },
                                        "4": {
                                                "address": [
                                                        "dhcp"
                                                ],
                                                "description": "eth0.4 - IPTV",
                                                "dhcp-options": {
                                                        "client-option": [
                                                                "send vendor-class-identifier "IPTV_RG";",
                                                                "request subnet-mask, routers, rfc3442-classless-static-routes;"
                                                        ],
                                                        "default-route": "no-update",
                                                        "default-route-distance": "220",
                                                        "name-server": "update"
                                                },
                                                "ip": {
                                                        "source-validation": "loose"
                                                },
                                                "mac": "DC:15:C8:B6:CD:7E"
                                        }
                                }
                        },
                        "eth1": {
                                "address": [
                                        "10.20.0.1/24"
                                ],
                                "description": "LAN",
                                "duplex": "auto",
                                "firewall": {
                                        "in": {
                                                "ipv6-name": "LANv6_IN",
                                                "name": "LAN_IN"
                                        },
                                        "local": {
                                                "ipv6-name": "LANv6_LOCAL",
                                                "name": "LAN_LOCAL"
                                        },
                                        "out": {
                                                "ipv6-name": "LANv6_OUT",
                                                "name": "LAN_OUT"
                                        }
                                },
                                "speed": "auto",
                                "vif": {
                                        "10": {
                                                "address": [
                                                        "10.20.10.1/24"
                                                ],
                                                "firewall": {
                                                        "in": {
                                                                "ipv6-name": "LANv6_IN",
                                                                "name": "LAN_IN"
                                                        },
                                                        "local": {
                                                                "ipv6-name": "LANv6_LOCAL",
                                                                "name": "LAN_LOCAL"
                                                        },
                                                        "out": {
                                                                "ipv6-name": "LANv6_OUT",
                                                                "name": "LAN_OUT"
                                                        }
                                                }
                                        },
                                        "20": {
                                                "address": [
                                                        "10.20.20.1/24"
                                                ],
                                                "firewall": {
                                                        "in": {
                                                                "ipv6-name": "GUESTv6_IN",
                                                                "name": "GUEST_IN"
                                                        },
                                                        "local": {
                                                                "ipv6-name": "GUESTv6_LOCAL",
                                                                "name": "GUEST_LOCAL"
                                                        },
                                                        "out": {
                                                                "ipv6-name": "GUESTv6_OUT",
                                                                "name": "GUEST_OUT"
                                                        }
                                                }
                                        }
                                }
                        },
                        "eth2": {
                                "disable": "''",
                                "duplex": "auto",
                                "speed": "auto"
                        }
                },
                "loopback": {
                        "lo": "''"
                }
        },
        "port-forward": {
                "auto-firewall": "enable",
                "hairpin-nat": "enable",
                "lan-interface": [
                        "eth1",
                        "eth1.10",
                        "eth1.20"
                ],
                "rule": {
                        [meerdere port forwarding regels weggehaald]
                },
                "wan-interface": "eth0.34"
        },
        "protocols": {
                "igmp-proxy": {
                        "interface": {
                                "eth0": {
                                        "role": "disabled",
                                        "threshold": "1"
                                },
                                "eth0.34": {
                                        "role": "disabled",
                                        "threshold": "1"
                                },
                                "eth0.4": {
                                        "alt-subnet": [
                                                "0.0.0.0/0"
                                        ],
                                        "role": "upstream",
                                        "threshold": "1"
                                },
                                "eth1": {
                                        "role": "downstream",
                                        "threshold": "1",
                                        "whitelist": [
                                                "239.0.0.0/16",
                                                "225.0.71.0/24",
                                                "224.0.0.0/16"
                                        ]
                                },
                                "eth1.10": {
                                        "role": "disabled",
                                        "threshold": "1"
                                },
                                "eth1.20": {
                                        "role": "disabled",
                                        "threshold": "1"
                                },
                                "eth2": {
                                        "role": "disabled",
                                        "threshold": "1"
                                }
                        }
                },
                "static": {
                        "interface-route": {
                                "0.0.0.0/0": {
                                        "next-hop-interface": {
                                                "eth0.34": "''"
                                        }
                                }
                        },
                        "route": {
                                "185.24.175.0/24": {
                                        "next-hop": {
                                                "10.10.48.1": "''"
                                        }
                                },
                                "185.41.48.0/24": {
                                        "next-hop": {
                                                "10.10.48.1": "''"
                                        }
                                }
                        }
                }
        },

Deel 3:

"service": {
                "dhcp-server": {
                        "disabled": "false",
                        "global-parameters": [
                                "class "denied" { match substring (hardware, 1, 6); deny booting; } subclass "denied" fc:ec:da:4d:36:9d; subclass "denied" fc:ec:da:4d:36:9e; subclass "denied" fc:ec:da:4d:36:9f;"
                        ],
                        "hostfile-update": "enable",
                        "shared-network-name": {
                                "net_LAN_1_eth1_10.20.0.0-24": {
                                        "authoritative": "enable",
                                        "description": "vlan1",
                                        "subnet": {
                                                "10.20.0.0/24": {
                                                        "default-router": "10.20.0.1",
                                                        "dns-server": [
                                                                "10.20.0.1"
                                                        ],
                                                        "domain-name": "localdomain",
                                                        "lease": "86400",
                                                        "start": {
                                                                "10.20.0.6": {
                                                                        "stop": "10.20.0.253"
                                                                }
                                                        },
                                                        "static-mapping": {
                                                                "00-11-32-68-6d-73": {
                                                                        "host-record": "disable",
                                                                        "ip-address": "10.20.0.32",
                                                                        "mac-address": "00:11:32:68:6d:73"
                                                                },
                                                                "00-17-88-62-fc-f8": {
                                                                        "host-record": "disable",
                                                                        "ip-address": "10.20.0.34",
                                                                        "mac-address": "00:17:88:62:fc:f8"
                                                                },
                                                                "84-25-19-60-b0-63": {
                                                                        "host-record": "disable",
                                                                        "ip-address": "10.20.0.31",
                                                                        "mac-address": "84:25:19:60:b0:63"
                                                                },
                                                                "a8-a1-59-1d-fe-0c": {
                                                                        "host-record": "disable",
                                                                        "ip-address": "10.20.0.30",
                                                                        "mac-address": "a8:a1:59:1d:fe:0c"
                                                                },
                                                                "b4-fb-e4-ce-9d-db": {
                                                                        "host-record": "disable",
                                                                        "ip-address": "10.20.0.241",
                                                                        "mac-address": "b4:fb:e4:ce:9d:db"
                                                                },
                                                                "b8-27-eb-80-5e-2e": {
                                                                        "host-record": "disable",
                                                                        "ip-address": "10.20.0.15",
                                                                        "mac-address": "b8:27:eb:80:5e:2e"
                                                                }
                                                        }
                                                }
                                        }
                                },
                                "net_LAN_2_Security_eth1_10.20.10.0-24": {
                                        "authoritative": "enable",
                                        "description": "vlan10",
                                        "subnet": {
                                                "10.20.10.0/24": {
                                                        "default-router": "10.20.10.1",
                                                        "dns-server": [
                                                                "10.20.10.1"
                                                        ],
                                                        "domain-name": "localdomain",
                                                        "lease": "86400",
                                                        "start": {
                                                                "10.20.10.6": {
                                                                        "stop": "10.20.10.253"
                                                                }
                                                        }
                                                }
                                        }
                                },
                                "net_LAN_3_Guest_eth1_10.20.20.0-24": {
                                        "authoritative": "enable",
                                        "description": "vlan20",
                                        "subnet": {
                                                "10.20.20.0/24": {
                                                        "default-router": "10.20.20.1",
                                                        "dns-server": [
                                                                "10.20.20.1"
                                                        ],
                                                        "domain-name": "localdomain",
                                                        "lease": "86400",
                                                        "start": {
                                                                "10.20.20.6": {
                                                                        "stop": "10.20.20.253"
                                                                }
                                                        }
                                                }
                                        }
                                }
                        },
                        "static-arp": "disable",
                        "use-dnsmasq": "disable"
                },
                "dns": {
                        "dynamic": {
                                "interface": {
                                        "eth0.34": {
                                                "service": {
                                                        "dyndns": {
                                                                "host-name": [
                                                                        "[weggehaald]"
                                                                ],
                                                                "login": "[weggehaald]",
                                                                "password": "[weggehaald]",
                                                                "server": "www.duckdns.org"
                                                        }
                                                }
                                        }
                                }
                        },
                        "forwarding": {
                                "cache-size": "10000",
                                "except-interface": [
                                        "eth0",
                                        "eth0.34",
                                        "eth0.4"
                                ],
                                "options": [
                                        "ptr-record=1.0.20.10.in-addr.arpa,Gateway-FuseBox",
                                        "all-servers",
                                        "cname=unifi.localdomain,unifi",
                                        "resolv-file=/etc/resolv.conf.dhclient-new-eth0.34",
                                        "server=1.1.1.1"
                                ]
                        }
                },
                "gui": {
                        "http-port": "[weggehaald]",
                        "https-port": "[weggehaald]",
                        "older-ciphers": "enable"
                },
                "lldp": {
                        "interface": {
                                "eth0": {
                                        "disable": "''"
                                }
                        }
                },
                "mdns": {
                        "reflector": "''"
                },
                "nat": {
                        "rule": {
                                "5001": {
                                        "description": "MASQ corporate_network to IPTV network",
                                        "log": "disable",
                                        "outbound-interface": "eth0.4",
                                        "protocol": "all",
                                        "type": "masquerade"
                                },
                                "6001": {
                                        "description": "MASQ corporate_network to WAN",
                                        "log": "disable",
                                        "outbound-interface": "eth0.34",
                                        "protocol": "all",
                                        "source": {
                                                "group": {
                                                        "network-group": "corporate_network"
                                                }
                                        },
                                        "type": "masquerade"
                                },
                                "6002": {
                                        "description": "MASQ remote_user_vpn_network to WAN",
                                        "log": "disable",
                                        "outbound-interface": "eth0.34",
                                        "protocol": "all",
                                        "source": {
                                                "group": {
                                                        "network-group": "remote_user_vpn_network"
                                                }
                                        },
                                        "type": "masquerade"
                                },
                                "6003": {
                                        "description": "MASQ guest_network to WAN",
                                        "log": "disable",
                                        "outbound-interface": "eth0.34",
                                        "protocol": "all",
                                        "source": {
                                                "group": {
                                                        "network-group": "guest_network"
                                                }
                                        },
                                        "type": "masquerade"
                                }
                        }
                },
                "ssh": {
                        "port": "[weggehaald]",
                        "protocol-version": "v2"
                },
                "upnp2": {
                        "listen-on": [
                                "eth1.20",
                                "eth1.10",
                                "eth1"
                        ],
                        "nat-pmp": "enable",
                        "secure-mode": "enable",
                        "wan": "eth0.34"
                }
        },
        "system": {
                "conntrack": {
                        "expect-table-size": "2048",
                        "hash-size": "32768",
                        "modules": {
                                "sip": {
                                        "disable": "''"
                                }
                        },
                        "table-size": "262144",
                        "timeout": {
                                "icmp": "30",
                                "other": "600",
                                "tcp": {
                                        "close": "10",
                                        "close-wait": "60",
                                        "established": "7440",
                                        "fin-wait": "120",
                                        "last-ack": "30",
                                        "syn-recv": "60",
                                        "syn-sent": "120",
                                        "time-wait": "120"
                                },
                                "udp": {
                                        "other": "30",
                                        "stream": "180"
                                }
                        }
                },
                "domain-name": "localdomain",
                "host-name": "Gateway-FuseBox",
                "ip": {
                        "override-hostname-ip": "10.20.0.1"
                },
                "login": {
                        "user": {
                                "Wouter": {
                                        "authentication": {
                                                "encrypted-password": "[weggehaald]"
                                        },
                                        "level": "admin"
                                }
                        }
                },
                "name-server": [
                        "127.0.0.1"
                ],
                "ntp": {
                        "server": {
                                "0.ubnt.pool.ntp.org": "''",
                                "1.ubnt.pool.ntp.org": "''",
                                "2.ubnt.pool.ntp.org": "''",
                                "3.ubnt.pool.ntp.org": "''"
                        }
                },
                "offload": {
                        "ipsec": "enable",
                        "ipv4": {
                                "forwarding": "enable",
                                "gre": "enable",
                                "pppoe": "enable",
                                "vlan": "enable"
                        },
                        "ipv6": {
                                "forwarding": "enable",
                                "vlan": "enable"
                        }
                },
                "static-host-mapping": {
                        "host-name": {
                                "setup.ubnt.com": {
                                        "alias": [
                                                "setup"
                                        ],
                                        "inet": [
                                                "10.20.0.1"
                                        ]
                                }
                        }
                },
                "syslog": {
                        "global": {
                                "facility": {
                                        "all": {
                                                "level": "notice"
                                        },
                                        "protocols": {
                                                "level": "debug"
                                        }
                                }
                        }
                },
                "time-zone": "Europe/Amsterdam",
                "traffic-analysis": {
                        "dpi": "enable",
                        "export": "disable"
                }
        }
}

Ik heb wat gevoelige informatie op verschillende plekken weggehaald; hier heb ik aangegeven dat gegevens zijn weggehaald. Reactie moest in meerdere delen i.v.m. het maximale aantal toegestane tekens per bericht.

Je moet op zoek gaan naar de commit errors.
Ik zie er een staan bij de VPN configuratie. “L2TP VPN configuration error: IPsec authentication mode not defined”
Waarschijnlijk heb je geen vpn geconfigureerd.
Oplossing is dus deze te verwijderen in de config. dus alles vanaf de , tot de laatste }

     ,
    "vpn":{  
        "ipsec":{  
            "auto-firewall-nat-exclude":"disable",
            "ipsec-interfaces":{  
                "interface":[  
                    "eth0.34"
                ]
            },
            "nat-traversal":"enable"
        },
        "l2tp":{  
            "remote-access":{  
                "dhcp-interface":"eth0.34"
            }
        }
    }

Wat je dan overhoud is:

{
	"interfaces": {
		"ethernet": {
			"eth0": {
				"description": "WAN",
				"duplex": "auto",
				"speed": "auto",
				"vif": {
					"4": {
						"address": [
							"dhcp"
						],
						"description": "eth0.4 - IPTV",
						"mac": "DC:15:C8:B6:CD:7E",
						"dhcp-options": {
							"client-option": [
								"send vendor-class-identifier "IPTV_RG";",
								"request subnet-mask, routers, rfc3442-classless-static-routes;"
							],
							"default-route": "no-update",
							"default-route-distance": "220",
							"name-server": "update"
						},
						"ip": {
							"source-validation": "loose"
						}
					},
					"34": {
						"mac": "DC:15:C8:B6:CD:8D"
					}
				}
			}
		}
	},
	"port-forward": {
		"auto-firewall": "enable",
		"wan-interface": "eth0.34"
	},
	"protocols": {
		"static": {
			"interface-route": {
				"0.0.0.0/0": {
					"next-hop-interface": {
						"eth0.34": "''"
					}
				}
			},
			"route": {
				"185.24.175.0/24": {
					"next-hop": {
						"10.10.48.1": "''"
					}
				},
				"185.41.48.0/24": {
					"next-hop": {
						"10.10.48.1": "''"
					}
				}
			}
		},
		"igmp-proxy": {
			"interface": {
				"eth1": {
					"role": "downstream",
					"threshold": "1",
					"whitelist": [
						"239.0.0.0/16",
						"225.0.71.0/24",
						"224.0.0.0/16"
					]
				},
				"eth0": {
					"role": "disabled",
					"threshold": "1"
				},
				"eth1.10": {
					"role": "disabled",
					"threshold": "1"
				},
				"eth1.20": {
					"role": "disabled",
					"threshold": "1"
				},
				"eth0.4": {
					"alt-subnet": [
						"0.0.0.0/0"
					],
					"role": "upstream",
					"threshold": "1"
				},
				"eth0.34": {
					"role": "disabled",
					"threshold": "1"
				},
				"eth2": {
					"role": "disabled",
					"threshold": "1"
				}
			}
		}
	},
	"service": {
		"lldp": {
			"interface": {
				"eth0": {
					"disable": "''"
				}
			}
		},
		"dns": {
			"forwarding": {
				"except-interface": [
					"eth0",
					"eth0.34",
					"eth0.4"
				]
			}
		},
		"nat": {
			"rule": {
				"5001": {
					"description": "MASQ corporate_network to IPTV network",
					"log": "disable",
					"outbound-interface": "eth0.4",
					"protocol": "all",
					"type": "masquerade"
				},
				"6001": {
					"description": "MASQ corporate_network to WAN",
					"log": "disable",
					"outbound-interface": "eth0.34",
					"protocol": "all",
					"source": {
						"group": {
							"network-group": "corporate_network"
						}
					},
					"type": "masquerade"
				},
				"6002": {
					"description": "MASQ remote_user_vpn_network to WAN",
					"log": "disable",
					"outbound-interface": "eth0.34",
					"protocol": "all",
					"source": {
						"group": {
							"network-group": "remote_user_vpn_network"
						}
					},
					"type": "masquerade"
				},
				"6003": {
					"description": "MASQ guest_network to WAN",
					"log": "disable",
					"outbound-interface": "eth0.34",
					"protocol": "all",
					"source": {
						"group": {
							"network-group": "guest_network"
						}
					},
					"type": "masquerade"
				}
			}
		}
	}
}

EDIT:

Ik zal de volgende keer vragen of men dit kan uitvoeren:

grep "commit error" /var/log/messages

:slight_smile:

1 like

Dankje, Reinier!

Ik ben nu in ieder geval één stap verder: de USG provisioned en staat daarna op status ‘Active’. De provisioning loop is doorbroken!

TV-ontvanger werkte nog niet.

Elders commando ‘netstat -rn’ gevonden; dat leverde deze informatie op:

image

Dubbelcheck met ‘show dhcp client leases interface eth0.4’:

image

Ik pas next hop in de JSON aan naar 10.10.44.1 (in plaats van 10.10.48.1) en ga kijken of de tv-ontvanger daarna werkt.

Edit: live tv werkt de eerste keer dat de Amino-ontvanger wordt opgestart. Zodra deze een keer wordt uitgeschakeld en weer opnieuw wordt opgestart, werkt deze niet meer. Beeld blijft zwart met af en toe een witte flits. Menu etc zijn niet te gebruiken.

Dat is denk ik een ander probleem. Menu’s zouden als de ontvanger eenmaal is opgestart zichtbaar moeten zijn. Ligt dit niet aan de tv? Mijn recieven doet er ook af en toe lang over om de juiste resolutie te kiezen. Ik vermoed dat dat bij jou de flits is?

Dit ligt niet aan de tv; die werkt prima. Ontvanger is dit pas gaan vertonen sinds ik met het modem bezig ben. Heb de ontvanger voor de zekerheid op een andere HDMI-ingang en met een andere kabel getest: zelfde resultaat.

Ik heb het geheel nu een aantal minuten ingeschakeld. De ‘witte flits’ die door beeld komt, lijkt scrambled tv-beeld te zijn. Dit komt echter maar kort voorbij.

Ik vind het ook vreemd dat bijv. menu’s van de tv-ontvanger niet kunnen worden geopend als hij in deze ‘modus’ zit.

Edit: als de ontvanger ingeschakeld is, geeft mijn tv zwart beeld met af en toe de scrambled tv-flits. Zodra ik de ontvanger uitschakel, gaat mijn tv naar z’n ‘No Signal’ fallback scherm. Dat het zwarte beeld + de flitsen van de ontvanger komen, is voor mij wel duidelijk.

Edit2: net de ontvanger een keer van het stroom gehaald en helemaal opnieuw gestart. Nu doet hij het goed; ook nadat hij een paar keer is uitgeschakeld met de afstandsbediening. Begin Gemist werkt niet; het benodigde commando daarvoor zal ik vandaag of morgen nog eens opnieuw doorvoeren. Moet dit na elke herstart/provision van de USG opnieuw gebeuren?

Ja maar daarvoor kun je een scriptje aanmaken. staat volgens mij in dezelfde link als waar de modprobe stond. ik heb “helaas” geen USG meer dus kan het niet meer controleren.
EDIT:
Om je op weg te helpen. het is de eerste post volgens mij: Uitzending gemist/Pauze TV

1 like

Update m.b.t. de tv-ontvanger: vanmorgen nog eens aangezet… en opnieuw hetzelfde probleem.

Beeld blijft zwart, menu’s openen niet en af en toe een flits scrambled tv-signaal tussendoor.

Ondanks dat het aannemelijk lijkt dat dit probleem losstaat van Internet-/netwerkverbinding van de ontvanger, vind ik het heel vreemd dat dit probleem zich pas is gaan voordoen sinds ik met de USG bezig ben. Toen de FRITZ!Box nog aangesloten was, heeft de tv-ontvanger deze kuren niet vertoond. Kan dit niet een probleem zijn dat optreedt omdat de ontvanger ‘het Internet niet op kan’?

Ik neem aan dat je de 10.10.48.1 nog hebt aangepast naar jou situatie? (10.10.44.1)
Daarnaast is het bij mij vaak fout gegaan. Maar nog nooit miste ik de menus en had ik flitsen.
De stream loopt niet maar de menus heb ik altijd gehad. Kan best dat jij een andere box hebt die anders reageerd. Als oud tweak ADSL/Fiber gebruiker heb ik de eerste versies van de boxjes (Amino Aria 610). Weet niet of de nieuwere boxen (als die er al zijn) anders werken.
Heb je de beeld instellingen gewijzigd van de Box ? Kabel gecontroleerd?
Om te controleren of iptv het goed doet zou je op de USG nog kunnen kijken of er IPTV verkeer langskomt. (ok al heb je geen beeld)

sudo tcpdump -i eth0.4

Je moet dan een heel veel regels voorbij zien komen van static.kpn.net (ja ook canaal digital gebruikt die ipadressen)

13:43:54.783889 IP static.kpn.net.49152 > 224.0.251.134.8268: UDP, length 1328
13:43:54.784695 IP static.kpn.net.49152 > 224.0.251.134.8268: UDP, length 1328
13:43:54.785563 IP static.kpn.net.49152 > 224.0.251.134.8268: UDP, length 1328
13:43:54.786405 IP static.kpn.net.49152 > 224.0.251.134.8268: UDP, length 1328
13:43:54.787259 IP static.kpn.net.49152 > 224.0.251.134.8268: UDP, length 1328
13:43:54.788122 IP static.kpn.net.49152 > 224.0.251.134.8268: UDP, length 1328
13:43:54.788975 IP static.kpn.net.49152 > 224.0.251.134.8268: UDP, length 1328
13:43:54.789830 IP static.kpn.net.49152 > 224.0.251.134.8268: UDP, length 1328
13:43:54.790687 IP static.kpn.net.49152 > 224.0.251.134.8268: UDP, length 1328

Ik heb 10.10.48.1 inderdaad aangepast naar 10.10.44.1.

Wij hebben de Amino Aria 710; wellicht dat deze anders reageert wanneer iets mis is dan de 610?

Rond 16:04 de tv-ontvanger ongeveer een minuut ingeschakeld. Onderstaande komt voorbij (via ‘sudo tcpdump -i eth0.4’):

16:03:58.754184 IP static.kpn.net.49152 > 224.0.251.124.8248: UDP, length 1328
16:03:58.755191 IP static.kpn.net.49152 > 224.0.251.124.8248: UDP, length 1328
16:03:59.047010 IP 10.10.45.96 > 224.0.251.124: igmp v2 report 224.0.251.124
16:04:05.886970 IP 10.10.45.96 > 224.0.251.124: igmp v2 report 224.0.251.124
16:04:12.236887 IP static.kpn.net.49152 > 224.0.251.124.8248: UDP, length 1328

Ik zie in dezelfde logging ook regels voor bijv. onze Chromecast en onze soundbar (met ingebouwde Chromecast Audio):

16:03:53.134341 IP 10.10.45.96.mdns > 224.0.0.251.mdns: 0*- [0q] 4/0/0 PTR JBL-Bar-9.1-860b582703cdcc922db05b513ad83975._googlecast._tcp.local., (Cache flush) A 10.20.0.41, (Cache flush) SRV 860b5827-03cd-cc92-2db0-5b513ad83975.local.:8009 0 0, (Cache flush) TXT "id=860b582703cdcc922db05b513ad83975" "cd=69EEC39EA4BBF72C1D5F0845D3387E95" "rm=" "ve=05" "md=JBL Bar 9.1" "ic=/setup/icon.png" "fn=Living Room speaker" "ca=198660" "st=0" "bs=FA8FCA5A31A6" "nf=1" "rs=" (357)
16:03:53.139951 IP 10.10.45.96.mdns > 224.0.0.251.mdns: 0*- [0q] 4/0/0 PTR Google-Home-Mini-d87551e598912e9c2b0085eb3b602319._googlecast._tcp.local., (Cache flush) A 10.20.0.57, (Cache flush) SRV d87551e5-9891-2e9c-2b00-85eb3b602319.local.:8009 0 0, (Cache flush) TXT "id=d87551e598912e9c2b0085eb3b602319" "cd=E174DCC6DFC5FB8DEFD5DE367593DA32" "rm=" "ve=05" "md=Google Home Mini" "ic=/setup/icon.png" "fn=Bedroom speaker" "ca=199172" "st=0" "bs=FA8FCA5F7E75" "nf=1" "rs=" (363)

Moet ik niet nog ergens instellen dat alleen een specifieke poort op de woonkamerswitch gebruik moet maken van eth0.4?

Maar als je de tv-ontvanger inschakeld en je hebt geen beeld. zie ja dan wel veel verkeer langskomen?
Om de netwerken beter te scheiden kun je een IPTV vlan aanmaken waar alleen de tv-ontvanger(s) in hangen. eth0.4 is alleen voor de USG. Als je een extra netwerk aanmaakt moet je dit ook weer goed overnemen in de config.json (downstream interface).

Oh en aan het ipadres “224.0.251.124” kun je zien dat je NED1 aan had staan.

Ik zie op het IPTV interface ook veel verkeer voorbijkomen van medetweakers. Google Cast devices. Sonos speakers, Onkyos, LG-TV’s, MacBooks etc.
Helaas filtert de USG dat verkeer niet (uitgaand).

Ik ga dit nog eens uitdraaien als we een keer weer geen beeld hebben.

Rond 16:00 (test 1) en nu (test 2) werkte alles opeens prima.

Ik hou je op de hoogte van de bevindingen!

Edit: het probleem deed zich net weer voor. Met behulp van ‘sudo tcpdump -i eth0.4’ blijkt dat gewoon ‘IP static.kpn.net.’-regels aanwezig zijn! En het betreffende adres verandert ook wanneer ik met de afstandsbediening van kanaal wissel. Dat probleem heb ik dus totaal in de verkeerde hoek gezocht.

HDMI-kabel heb ik al eerder vervangen (en op een andere HDMI-poort van de tv geprikt om dat ook maar direct uit te sluiten). De kabel heb ik net even uit de ontvanger gehaald en na een paar seconden weer ingeplugd. Resultaat: beeld (en geluid).

Ergens ontstaat dus een probleem tussen ontvanger en tv wat blijkbaar geheel toevallig niet is opgetreden voordat ik met het modem bezig ging. Misschien is dit topic niet de goede plek om dit te vragen, maar wat kan ik hier nog proberen behalve de nieuwe HDMI-kabel en andere HDMI-poort? Ik heb zojuist video-uitgangsmodus aangepast van 1080i naar 1080p60 om maar eens te proberen of dit verschil maakt.

Huidige status met tv-ontvanger: ongewijzigd. 1080p60 gaf hetzelfde probleem. Ik heb hier een nieuw topic voor geopend.

Inmiddels werkt Internet + TV (de sporadische opstartproblemen van de Amino-ontvanger even buiten beschouwing gelaten) hier goed. Hartstikke bedankt voor je hulp, @reinierh ! Jouw input was onmisbaar om het werkend te krijgen.

Hier een korte afsluitende post hoe alles werkend is gekregen:

  1. Het gebruikte .JSON-bestand:
{  
    "interfaces":{  
        "ethernet":{  
            "eth0":{
				"description": "WAN",
                "duplex": "auto",
                "speed": "auto",
                "vif":{  
                    "4":{  
                        "address":[  
                            "dhcp"
                        ],
                        "description":"eth0.4 - IPTV",
                        "mac":"DC:15:C8:B6:CD:7E",
                        "dhcp-options":{  
                            "client-option":[  
                                "send vendor-class-identifier "IPTV_RG";",
                                "request subnet-mask, routers, rfc3442-classless-static-routes;"
                            ],
                            "default-route":"no-update",
                            "default-route-distance":"220",
                            "name-server":"update"
                        },
                        "ip":{  
                            "source-validation":"loose"
                        }
                    },
                    "34":{  
                        "mac":"DC:15:C8:B6:CD:8D"
                    }
                }
            }
        }
    },
    "port-forward":{  
        "auto-firewall":"enable",
        "wan-interface":"eth0.34"
    },
    "protocols":{  
        "static":{  
            "interface-route":{  
                "0.0.0.0/0":{  
                    "next-hop-interface":{  
                        "eth0.34":"''"
                    }
                }
            },
            "route": {
                "185.24.175.0/24": {
                    "next-hop": {
                        "10.10.44.1": "''"
                    }
                },
                "185.41.48.0/24": {
                    "next-hop": {
                        "10.10.44.1": "''"
                    }
                }
            }
        },
        "igmp-proxy": {
            "interface": {
                "eth1": {
                    "role": "downstream",
                    "threshold": "1",
                    "whitelist": [
                        "239.0.0.0/16",
                        "225.0.71.0/24",
                        "224.0.0.0/16"
                    ]
                },
                "eth0": {
                    "role": "disabled",
                    "threshold": "1"
                },
				"eth1.10": {
                    "role": "disabled",
                    "threshold": "1"
                },
				"eth1.20": {
                    "role": "disabled",
                    "threshold": "1"
                },
                "eth0.4": {
                    "alt-subnet": [
                        "0.0.0.0/0"
                    ],
                    "role": "upstream",
                    "threshold": "1"
                },
                "eth0.34": {
                    "role": "disabled",
                    "threshold": "1"
                },
                "eth2": {
                    "role": "disabled",
                    "threshold": "1"
                }
            }
        }
    },
    "service":{  
        "lldp":{  
            "interface":{  
                "eth0":{  
                    "disable":"''"
                }
            }
        },
        "dns":{  
            "forwarding":{  
                "except-interface":[  
                    "eth0",
                    "eth0.34",
                    "eth0.4"
                ]
            }
        },
        "nat":{  
            "rule":{  
                "5001":{  
                    "description":"MASQ corporate_network to IPTV network",
                    "log":"disable",
                    "outbound-interface":"eth0.4",
                    "protocol":"all",
                    "type":"masquerade"
                },
                "6001":{  
                    "description":"MASQ corporate_network to WAN",
                    "log":"disable",
                    "outbound-interface":"eth0.34",
                    "protocol":"all",
                    "source":{  
                        "group":{  
                            "network-group":"corporate_network"
                        }
                    },
                    "type":"masquerade"
                },
                "6002":{  
                    "description":"MASQ remote_user_vpn_network to WAN",
                    "log":"disable",
                    "outbound-interface":"eth0.34",
                    "protocol":"all",
                    "source":{  
                        "group":{  
                            "network-group":"remote_user_vpn_network"
                        }
                    },
                    "type":"masquerade"
                },
                "6003":{  
                    "description":"MASQ guest_network to WAN",
                    "log":"disable",
                    "outbound-interface":"eth0.34",
                    "protocol":"all",
                    "source":{  
                        "group":{  
                            "network-group":"guest_network"
                        }
                    },
                    "type":"masquerade"
                }
            }
        }
    }
}

“mac”-velden onder “vif” (DC:15:C8:B6:CD:7E en DC:15:C8:B6:CD:8D) bevatten het MAC-adres van de FRITZ!Box (dat is het mac-adres onder “34”) en een MAC-adres wat hier iets van afwijkt onder “4”.

Beide “next-hop”-waardes zijn aangepast naar “10.10.44.1”. Deze waarde is gevonden en gecheckt door ‘netstat -rn’ en ‘show dhcp client leases interface eth0.4’ via PuTTy op de UniFi Security Gateway (dus niet op de Cloud Key) uit te voeren.

Onder “igmp-proxy” - “interface” zijn “eth1.10” en “eth1.20” toegevoegd omdat ik VLANs 10 en 20 gebruik in mijn netwerk.

  1. Uitzending Gemist werkend gekregen door ‘sudo modprobe nf_nat_rtsp’ via PuTTy op de USG uit te voeren (met dank aan @oliemark in een ander topic)

  2. Startup-script op de USG gemaakt zodat ‘sudo modprobe nf_nat_rtsp’ wordt uitgevoerd na een herstart van de USG. Hiervoor als volgt te werk gegaan (deels via PuTTY en deels via WinSCP):

  • Bestand ‘load_nat_rtsp_module.sh’ gemaakt in Notepad++ met één regel tekst:

#!/bin/sh modprobe nf_nat_rtsp

  • Nieuwe folder aanmaken (indien nog niet aanwezig) - PuTTy:
sudo mkdir /config/scripts/pre-config.d/
  • Dit bestand geüpload naar /config/scripts/pre-config.d/ - WinSCP.

  • Uitvoer-rechten toekennen aan het bestand - PuTTy:

sudo chmod +x /config/scripts/pre-config.d/load_nat_rtsp_module.sh
  • Na herstart van de USG gecheckt of alles draait - PuTTy:
lsmod | grep rtsp

Volgens mij heb ik alles dan in een notendop samengevat. Mocht ik nog wat zijn vergeten, hoor ik het wel!

Nogmaals voor alle input!

4 likes

Sinds eergister is bij mij de boel er mee opgehouden, ik heb het mac adres wel toegevoegd aan mijn config maar enkel mijn internet werkt en mijn tv staat nu op zwart.

Het programma overzicht doet het wel.

Ik zie dat het mac-adres op je IPTV-vlan gelijk is aan dat van je internet-vlan. Als je het mac van je IPTV-vlan met 1 verhoogt of verlaagt en vervolgens een nieuw DHCP-request doet (beter is ook eerst een DHCP release), zal het vast weer werken.

Hallo Johan, zie hieronder mijn mac A9 en A8 is anders in het MAC adres.
ook al via ssh sudo service dhcpd restart uitgevoerd.

        "vif": {
          "4": {
            "mac": "80:2A:A9:CD:AB:CD",
            "address": [
              "dhcp"
            ],
            "description": "eth0.4 - IPTV",
            "dhcp-options": {
              "client-option": [
                "send vendor-class-identifier "IPTV_RG";",
                "request subnet-mask, routers, rfc3442-classless-static-routes;"
              ],
              "default-route": "no-update",
              "default-route-distance": "210"
            }
          },
          "34": {
            "mac": "80:2A:A8:CD:AB:CD",
            "description": "eth0.34 - Internet",
            "address": [
              "dhcp"
            ],
            "dhcp-options": {
              "default-route-distance": "1",
              "default-route": "update",
              "name-server": "update"
            },
            "firewall": {
              "in": {
                "name": "WAN_IN"
              },
              "local": {
                "name": "WAN_LOCAL"
              },
              "out": {
                "name": "WAN_OUT"
              }
            }
          }
        }

met deze instellingen doe ik het nu maar mijn tv is nog steeds zwart.

EDIT: lijkt nu wel te werken :face_with_hand_over_mouth:

Toch niet, lijkt er nu op dat of wifi het doet of de tv :sweat_smile:

Nog steeds een probleem dat wanneer ik mijn tv kastje (amino box) aan zet het wifi netwerk ineens heel onstabiel wordt.