Network inaccessible after system crash? RT-N16 + TomatoRAF

    Hi everyone,

    I'm currently having a weird issue where one of my hard wired desktops (win7) will freeze and this will also have the effect of taking the router offline. No one connected to the wireless or hard wired is able to access anything on the LAN or WAN. As soon as I reboot the crashed computer, everything works fine. I have been pulling my hair out figuring out how a system crash could bring down my network?

    I know a simple fix would be to fix the crashing issue, but it is related to a SSD driver/firmware thing, and OCZ is working on a fix but nothing has worked yet so I have to deal with it unfortunately.

    Router: RT-N16
    Build: TomatoRAF

    Anyone have any ideas where to start?
    I'm not a network guy-more of a PC guy. Is it possible the NIC card goes into promiscuous mode and
    starts spewing enough packets that ethernet collision detection stops working? Wild guess, of course.
    Mike, I have seen this happen several times with client machines that were infected with a mailer bug. The machines froze, but were still sending out thousands of smtp packets, took the routers down with not even a trace in the logs. This is known as a "connection storm".
    Oooh, good point Toastman. I remember when first learning that a NIC card in promiscuous
    mode can also create an (albeit milder) type of packet storm.

    What OS it the machine running? Have you considered booting with a clean, bootable antivirus CD
    of some sort, like Kaspersky or some version of Bart PE such as UBCD4 if it's Windows?
    We have no control over machines on my LANS. They are paying customers in large apartment blocks, they run what OS was stuffed on their machine when they bought it - mostly XP - and very few of them know what they are doing. Many of them have no antivirus program at all, others don't have it turned on. Every time a web site tells them to click on a link, they do what they are told :eek: so almost everyone has viruses here.

    I only get to see their machines if they bring them to me after I've cut off their internet access. But fixing their machines isn't our responsibility, of course. The router has to be able to withstand all of this abuse and remain up 24/7/365.
    Oh Toastman, I think we may have misunderstood each other. You know that my last reply
    was directed at the OP, right?I have no doubt that if practical/ethical, you'd clean up
    the machines on your networks in a second.

    Dang lack of non-verbal cues on the Web!


    Misunderstanding - no worries!!

    I'd prefer to kill the offenders, but apparently that's considered antisocial :eek:
    Win7 x64 fully patched + Microsoft Security Essentials. I'm a Network/Sysadmin so I kind of doubt its a virus/worm infection but it could be. I will try to boot into a PE environment and scan this weekend, and I guess it could be a broadcast storm or something, I will try to run wireshark on another computer as well.

    Thanks for the tips guys :) I was thinking it could be a packet storm but didn't think about a virus/worm/bug.
