1. This site uses cookies. By continuing to use this site, you are agreeing to our use of cookies. Learn More.

Tomato RAF Releases

Discussion in 'Tomato Firmware' started by Victek, Dec 28, 2012.

  1. spicoli

    spicoli LI Guru Member

    Any beta build under 8MB for my generic Belkin? I am eating tomato soup and drinking tomato juice for good luck.
     
  2. Victek

    Victek Network Guru Member

    What model?
     
  3. ilkevinli

    ilkevinli Network Guru Member

    Hi Vic,
    I know this was posted already but just letting you know I am also getting the iptables errors when settting up an access restriction rule on a Linksys 4200. 1.1f works fine. g through n give the error.
     
  4. Victek

    Victek Network Guru Member

    And this restriction rule is 'block internet access' also?
     
  5. ilkevinli

    ilkevinli Network Guru Member

    Yes. If you need access to my router, let me know and I'll send you the info.


     
  6. Victek

    Victek Network Guru Member

    Thanks, no need .. I'm fighting with this rule destroying the tc since some days ago ... it makes no sense to include one rule to block all internet access .. better unplug the cable .. LOL
     
  7. ilkevinli

    ilkevinli Network Guru Member

    The rule that I created was to block internet for the following IPs 192.168.0.112-192.168.0.254. So Ips .2 to .111 could still access the internet. That's why unpluging the cable wouldn't work ;)

    Like i said though, 1.1f works fine.



     
  8. gffmac

    gffmac Serious Server Member

    I use it to stop the kids using the net after bedtime :) wifi and wired ;)
     
  9. Elfew

    Elfew Addicted to LI Member


    Yeah, me too... I hope you find the problem Victek ;)
     
  10. gffmac

    gffmac Serious Server Member

    Just noticed tomato-K26USB-1.28.9013MIPSR2-RAF-V1.1o-RT-N53.trx 2013-May-17 is up for a lucky someone to test :)

    Might be best to give Vic a chance to announce it.
     
  11. philess

    philess Networkin' Nut Member

    He is gonna run out of characters to name it soon ;)
     
  12. AmyGrrl

    AmyGrrl LI Guru Member

    I just installed a 32GB Kingston Class 10 Micro SDHC. Write speed goes from 7-12 MB/s and the read speed is a very steady 15 MB/s. Very happy with that. I upgraded to 1.1n. Everything is running great. Now I just need to figure out how to change the label of sda1 if possible. So its easier to pick out the device when browsing the Network Shares.
     
  13. spicoli

    spicoli LI Guru Member

    I use Belkin Share, model number F7D7302.

    Thanks for the reply. Big fan for years. :D
     
  14. Victek

    Victek Network Guru Member

    Hehe, yes.. but I can implement double char, Elfew knows ;), no, final version fully funtional will appear before end of ABC.

    iptables-restore error solved, the origin was in the modification for string rules in access restriction. I will release a Beta but ... ;) before arriving the end of the ABC.

    @spicoli, go to try, available for you router version, no problem.
     
    4char, Elfew, philess and 2 others like this.
  15. philess

    philess Networkin' Nut Member

    Vic, what are your thought on integrating IPSec in your fw at some point?

    Would you do it at all? Maybe remove PPTP (insecure anyway) and add IPSec for it.
    I dont have any actual need for it personally, but i am curious if you have thought about it.
     
  16. Elfew

    Elfew Addicted to LI Member

    Philess - we had a discussion with Victek about IPsec and naming of beta builds two weeks before ;)

    About IPsec - why remove something from tomato? Just add an easy GUI for IPsec... I saw this feature in cisco fw. Victek told me that IPsec is not problem,but he has more important things in his todo list - bug fixing, nodog splash, working IPv6, voip server and sort out iptables...

    Ask Shibby about ipsec, maybe he has more time and he could make a GUI...
     
  17. philess

    philess Networkin' Nut Member

    No need to discuss naming beta builds, i was just making a joke because he was releasing them so often now :)
    I must have missed that discussion about IPSec in here then. But as i said, i was just curious about it for the
    Victek mod. I dont want to switch to shibby. I know there are a lot more important things to fix/add right now.
     
  18. Elfew

    Elfew Addicted to LI Member

    No, I didnt say - switch to Shibby mod - I just wrote ask Shibby - he could make a GUI for IPsec...
     
    philess likes this.
  19. Victek

    Victek Network Guru Member

    Yes, there are many things to fix, IPSEC will be added at the end.. when I perceive a 'nearly perfect' release version (with small digit for next beta?) .. Nice weekend for all, relax, it's a hobby.
     
    eviltone, Elfew and philess like this.
  20. macgyver

    macgyver Reformed Router Member

    Victek are u planning to update the openvpn to 2.3x before the end of the alphabet? Hope u have a good weekend!:)
     
  21. Victek

    Victek Network Guru Member

    We are planing a knockout that will astonish most of you ... can't say more by now cause the master project is not finalized yet ... but looks amazing...:)
     
  22. JugsteR

    JugsteR Serious Server Member

    Don't make promises you can't keep :) There are quite a few of us lurking in the far corners of the internet (albeit just an IP away). We are all watching with excitement!

    Signature? Signature!
     
  23. Victek

    Victek Network Guru Member

    As I said.. we are waiting third party development to be released, it's having some problems with copyright for GPL source ... so no promises ;)
     
  24. JugsteR

    JugsteR Serious Server Member

    <pure speculation >
    To my mind, that almost sound like dual wan. In which case I have two things to say: I sure hope it is true. Good luck!
    </pure speculation >

    Signature? Signature!
     
  25. Ric

    Ric Network Guru Member

    E4200 v1 w/Tomato Firmware v1.28.9013 MIPSR2-RAF-V1.1n K26 USB VLAN-VPN-NOCAT-NGINX

    IP Traffic Monitor cannot be fully configured. Will not allow entry for Included IPs, and when left blank, shows nothing on the real time display.
     
  26. Victek

    Victek Network Guru Member

    For sure last patches broke the service, I'm testing, thanks for the information.

    Edit, tested; it works ;) .. but please leave 3-4 minutes to create the files in the router....
     
  27. M0g13r

    M0g13r LI Guru Member


    its still the same :\
     
  28. Victek

    Victek Network Guru Member

    Are you talking about this value?
    { "pppoe_lei","0"},
    it's fixed... but may be you need to reset nvram to load new value... what version do you use?
     
  29. Kevin Darbyshire-Bryant

    Kevin Darbyshire-Bryant Networkin' Nut Member

    Vic,

    I think this is a really bad idea. It completely disables LCP-Echo detection of PPP link failure by default. PPP RFC says LCP Echo requests MUST be replied to, and hence can be used along with appropriate timeouts to determine if the link has otherwise failed. Tomato configures PPPd to do adaptive LCP echoes as well, in other words, it only sends echoes to check link state if the link is idle. The original default values LCP-echoed every 10 seconds with 5 contiguous timeouts indicating a link fail (ie a total of 60 seconds)

    I am yet to be convinced that disabling LCP-echo is a good, valid idea.
     
  30. M0g13r

    M0g13r LI Guru Member

    nope

    in Basic/Network
    under wan options if ... type pppoe

    Check interval set in wanoptions in /tmp/ppp the value holdoff and not the lcp-echo-interval that it should do
    the holdoff is the time pppd waits to redial and lcp-echo-interval is the connection check

    and please don't change only the description in the gui like toastman did ;)

    i have to set on every build lcp-echo-interval 30 in options or have disconnects when line is idle
    but not on my old WRT54GL with thor mod :\
     
  31. Kevin Darbyshire-Bryant

    Kevin Darbyshire-Bryant Networkin' Nut Member

    You've still failed to convince me. I've understood everything you've said, yes the gui sets a variable which is used as the holdoff value but was/is mis-labeled as 'check interval'. And yes I agree that you cannot change the lcp-echo-interval from the gui (but you *CAN* set nvram var pppoe_lei to the required value)

    I need to understand two things:

    1) why is setting the check interval from the GUI desirable?
    2) why should ppp LCP echo checks be disabled entirely?

    Disabling the checks by default is in my opinion a very bad idea.
     
  32. M0g13r

    M0g13r LI Guru Member

    1) it makes things easy ... if some one gets the echo failure in the log (like me) he can change the setting and look if the 10sec or what ever is to short/long

    2) normally it should not
     
  33. Elfew

    Elfew Addicted to LI Member

    I think we should test it before we change this function in code...

    Does anybody else have this problem, because it could cause your isp
     
  34. M0g13r

    M0g13r LI Guru Member

    no code change is needed ;)
    its not a big deal
     
  35. Victek

    Victek Network Guru Member

    Correct,
    Alles klar... understood, We have four main parameters here:

    holdoff:10 seconds
    lcp-echo-interval:10 seconds
    lcp-echo-failure: 5 seconds
    maxfail: 0

    Then I look at my reference source ;) .. and I check it:

    #debug
    holdoff: 0
    maxfail: 0
    lcp-echo-failure: 5
    lcp-echo-interval: 1

    Swapping (or may be I'll do other thing....), Thanks.

    edit.. and yes.. it's a critic deal cause we had no issues with pppoe users since longtime ago, but.. no problem, I'm flexible ...
     
  36. gffmac

    gffmac Serious Server Member

    Hows things going vic? Just interested in any info of progress, thanks for your work.
     
  37. Victek

    Victek Network Guru Member

    :) Very good, Thanks, finishing the definitive release for Friday this week.
     
  38. leshan

    leshan Network Guru Member

    Great news, Can't wait.
     
  39. Victek

    Victek Network Guru Member


    You have to ... ;)
     
  40. vlads

    vlads Serious Server Member

    @Victek - will there be an OpenVPN K26 build for 4MB routers with a maximum image size of 3866624 bytes or 3776KB?
     
  41. Victek

    Victek Network Guru Member

    No at the moment.. some posts before I said something about VPN, IPSEC ... we are waiting more info and we'll go with another solution.
     
  42. gffmac

    gffmac Serious Server Member

    ~ sits in the waiting area and reads the paper. :cool:
     
  43. Victek

    Victek Network Guru Member

    Good morning, Beta 1.28.9013 V1.1o available. Changelog.

    New:
    • Web Server partial working (Beta). Automatic Port swap for firewall not done yet.
    • Link Control Protocol additional settings available (PPPoE).
    • NTFS-3g version 2013.1.13
    • DNSmasq 2.67.
    • BusyBox 1.20.2
    • Dropbear 2013.58 updated
    • rp-pppoe version 3.11

    Please test pppoe available settings.
    Web Server, please test alternate path for web sources (use the path from USB menu to place your documents).

    Thanks!

    Direct link to files: http://victek.is-a-geek.com/9013.html
     
    gffmac, Elfew and philess like this.
  44. Lothar

    Lothar Reformed Router Member

    Victek,

    Any chance of adding rpcapd?
    A config gui isn't necessary.
     
  45. Victek

    Victek Network Guru Member

    ;) what router do you use?
     
  46. macgyver

    macgyver Reformed Router Member

    installed tomato-E3000USB-NVRAM60K-1.28.9013MIPSR2-RAF-V1.1o-VPN-NOCAT.bin result is no internet access but showing IP and DNS..reverted to "N" build for now
     
  47. gffmac

    gffmac Serious Server Member

    Same here on e3000 unfortunately.
     
  48. Victek

    Victek Network Guru Member

    Did you erased nvram?, if not please do so,unfortunately I don't have e3000 to test ...
    Thanks!
     
  49. gffmac

    gffmac Serious Server Member

    Yes erased on install and also tried from Administration/Configuration ->
    Restore Default Configuration (erase all)
     
  50. Victek

    Victek Network Guru Member

    Ok, I think I missed something for this model, please download new release, 'p' version ready,refresh browser and download. Feedback is appreciated.
     
    gffmac likes this.
  51. macgyver

    macgyver Reformed Router Member

    Router was cleared before/after flash and reconfigured from scratch...thanks viktek awaiting new build
    It seems like everything works until u go to surf the net....all config showing proper values external IP, DNS,etc just no traffic getting through cant ping from router either ;)
     
  52. M0g13r

    M0g13r LI Guru Member

    on RT-N66U everything looks fine ..... thanks for the pppoe stuff

    victek really nice work !
     
  53. gffmac

    gffmac Serious Server Member

    Well after flash internet is back up :) gotta go through setting everything back up but looks good.
     
  54. Lothar

    Lothar Reformed Router Member


    I'm using a ASUS RT-N66U.
    I've looked around a bit and I haven't found any binaries for rpcapd yet; but, I'll keep looking.
    There was a post in one of the threads here that had a zip file attached but I don't seem to have the permission required to download it....
     
  55. Victek

    Victek Network Guru Member

    PPPoE unleased to play with ... ;)

    @gffmac, thanks for the feedback ;)

    @lothar, tcpdump was included in previous releases .. but few reported (none) anything about it. I understand every person is a world but we try to make standard solutions....

    Thanks to all,
     
  56. macgyver

    macgyver Reformed Router Member

    Thanks for update Viktek tomato-E3000USB-NVRAM60K-1.28.9013MIPSR2-RAF-V1.1p-VPN-NOCAT.bin working fine so far ... about page still says build 'o' not affecting anything :D
     
  57. Victek

    Victek Network Guru Member

    Thanks, I'll update .. one letter less to the end ;)
     
  58. Victek

    Victek Network Guru Member

    But in the download link I advice ... 'Cisco - E3000 VLAN-VPN-NOCAT v.1.1p' .. one letter less to the end ;)
     
  59. dc361

    dc361 LI Guru Member

    The 'p' version seems to be working much better on my E3000 - Thanks Victek
     
  60. Victek

    Victek Network Guru Member

    Thanks, it's the goal, the last version should work better than the previous one.
     
    Elfew and dc361 like this.
  61. macgyver

    macgyver Reformed Router Member

    using DHCP on this test router...willl flash PPPoE on another one and see how that goes...thanks for all your work its always appreciated! :)
     
  62. Ric

    Ric Network Guru Member

    Tomato RAF Firmware v1.28.9013 MIPSR2-RAF-V1.1o K26 USB VLAN-VPN-NOCAT-NGINX
    E4200 v1 - Graph for Bandwidth and IP Traffic do not display. I can see the numbers enumerating on the Bandwidth screen, but only a gray background where the graph should be.

    - Also had to toy with the PPPoE settings a little in order to maintain ADSL connection. The below settings appear to work well with my service.

    Redial Period 10 (seconds)
    LCP Echo Interval 30 (seconds)
    LCP Echo Failure Threshold 4 (retries)
     
  63. Victek

    Victek Network Guru Member

    I can see in my routers,
    1st. Did you erased nvram?
    2nd. Did you wait 2-3 minutes (in case of iptraffic) to create file and resolve data?

    Thanks!, let's see other testers parameter for pppoe settings, then I can change the default values to match almost wide range.
     
  64. Ric

    Ric Network Guru Member

    Yes! During firmware update. May try and clear again.

    Yes. Firmware has been running since yesterday, still no graph display. On the Bandwidth screen, I can see the numbers enumerating and updating, just no graphic display.

     
  65. Victek

    Victek Network Guru Member

  66. Ric

    Ric Network Guru Member

    Okay! Just checked. All display fine in both Chrome & FireFox, just not in IE10. May be an IE10 issue.
     
  67. Victek

    Victek Network Guru Member

    Thanks, I was concerned about, Chrome captures. btw.. you had same problem 8 days ago ...give a try to Chrome ;)
     
  68. Edrikk

    Edrikk Network Guru Member

    Great job Vic!
    E3000 on PPPoE working great here! :)
    Great job!
     
  69. Victek

    Victek Network Guru Member

    Thanks Eddrikk, which settings did you applied? default? just to harmonize common settings...
     
  70. Edrikk

    Edrikk Network Guru Member

    Yes, just default. Nothing special, which I assume is 99% of the use-cases when it comes to PPPoE.
     
  71. Victek

    Victek Network Guru Member

    Well the settings I entered as default are a little aggressive for pppoe but if you succeeded then I'll not change. In reality these are the settings used by Openwrt.

    I received some e.mails from people intending to run the web server for many applications, jomla, wordpress... and asking technical information how to. I changed the structure for the NGINX configuration file and from the next version you are able to configure NGINX in the way you like, I just prepared a basic web server configuration with php, fastcgi installed and other parameters for NGINX can be customized using a Custom configuration window created in the same GUI interface page. I think is the best method to leave 'DIY' ;).

    New GUI... already done. http://goo.gl/l9EKq and now is light speed responsiveness after passed the Beta test.
     
  72. Elfew

    Elfew Addicted to LI Member

    Nice, really awesome work! So ppoe and webserver are fully working and include all functions which you want?

    I am 2 versions back, I was busy last week. I will flash new version tommorow, or I can wait for your next version with new GUI.

    What is next? Nodogsplash or VOIP?
     
  73. Victek

    Victek Network Guru Member

    Hi Elfew,
    I have to sort also the automatic switch of tomato gui port when web server is enabled, I'm little bit stacked in this let's say 'easy' maneuver but the Tomato ways sometimes are 'dark holes' ;). So, by now you need to enter the firewall rules in firewall scripts window. May be tomorrow will be a fresh day and I sort it.
    Yes, NGINX is now open, I created a basic configuration with php and fascgi and from the custom window you can go beyond ... until the CPU die ;).

    I go for Nodogsplash cause BW limiter upload is not responding with Nocatsplash enabled since one year ago after some changes in Tomato .....then the goal is to link the web server with the new Captive Portal (option) to create Intranet and password bridge to Internet, hundreds of requests from beer garden ;) ... hard job... let's see.
     
    radionerd likes this.
  74. Elfew

    Elfew Addicted to LI Member

    Hi, Victek ;) OK, thank you for info. I can wait, np.

    About Nodog, yes I know, you wrote me about these problems - BW limiting, https bug, outdated and discontinued project...
     
  75. barkmann

    barkmann Network Guru Member

    Hi Victek

    installed tomato-RT-N66-1.28.9013MIPSR2-RAF-V1.1o-VLAN-VPN-NOCAT-NGINX-64K this morning, PPPoE seems stable so far on default, (isp for anyone's interest is Internode AU) - thanks for your great efforts, appreciated!

    cheers
     
  76. Victek

    Victek Network Guru Member


    Thanks for the info... the release seems solid and stable, nevertheless I got one e.mail related to problems with igmp for iptv when creating various VLAN, any of you is having this issue ?
     
  77. macgyver

    macgyver Reformed Router Member

    Nothing to complain about here on E3000 after 48 hours no issues to report on 'P' build...PPPoE working fine for Bell DSL using default settings... no disconnections at all...VPN and WDS working awesome...great job thanks again!
     
  78. leshan

    leshan Network Guru Member

    tried to complie 'o' bulid source for E4200, no internet.
     
  79. Victek

    Victek Network Guru Member

    Yes, I modified some switches to compile it properly ... will create a new script for it ... meanwhile you can use Tomato RAF betas and feedback your thoughts ...;)
     
    Elfew likes this.
  80. leshan

    leshan Network Guru Member

    Looks like that I missed some posts,:)
     
  81. ilkevinli

    ilkevinli Network Guru Member

    I just had a rather strange bug. I upgraded my RT-66U router to version 1.1o when it was released and it has been working fine since. Today for some reason, every computer on the network couldn't load any webpages or anything else OUTSIDE the network. Everything worked inside (computers could see and access each other). I didn't make any changes from when it was working until this happened. I flashed back to 1.1f and everything is working again. Just an FYI.
     
  82. Victek

    Victek Network Guru Member

    Did you 'play' with web server? ;) or may be you can explain further 'some' reason?
    edit: There is a new patch for dnsmasq 2.67CS5 ... it may explain your event..
     
  83. ilkevinli

    ilkevinli Network Guru Member

    Nope. Didn't touch webserver at all. The weird thing was I was able to access the router from outside the network (from my work computer), but the computers couldn't load any webpages or access anything outside the network. Very strange.


    P.S. I reinstalled 1.10 and everything is working for now. I'll let you know if it happens again.
     
  84. Victek

    Victek Network Guru Member

    Ok, as usual.. new Beta (r) is compiling and will be released in few hours with next Changelog:

    _ dnsmasq RC2.67CS5 with patches from KDB and gui options for pace syslog messages.
    _ NGINX web server with Custom window to allow different settings for additional packages.
    _ VLAN's creation gui able to add VID's and swap WAN on the fly.
    _ PPP, PPP3G connections with ISP Concentrator Hub identification (Reverted from RAF 1.23 version).

    Again thanks to all for testing and the feedback I received, mostly by e.mail but with a bunch of explanations and suggestions.. thanks!
     
    Elfew, gffmac and radionerd like this.
  85. gffmac

    gffmac Serious Server Member

    Thanks Vic just noticed the new fw had been uploaded. I presume e3000 is not included in teh 'r' batch? Possibly due to the insufficient space for the webserver additions?
     
  86. Victek

    Victek Network Guru Member

    Well, yes, server can't fit in this model but I'll build a new version in the coming hours also for E3000 and RT-N53
     
  87. gffmac

    gffmac Serious Server Member

    Thanks Vic really appreciated!

    Just curious if anything could be sacrificed to allow space for the web server?
     
  88. noyp

    noyp Network Guru Member

    hi vic,
    any chance for E900, can i load the E2500,E3000 fw on it since they have the same flash size?

    thanks,
    noyp
     
  89. Victek

    Victek Network Guru Member

    You can... but E900 have 64K nvram, so, not included in the beta models but it will be covered at the final release, meanwhile you should use E3000 image.
     
  90. Victek

    Victek Network Guru Member


    Web server uses php, pcre and shared libraries (openssl, zlib...), php footprint uses 2.1MB, web server alone just 287KB, if I compile only web server without php will fit but the webserver will be just a static pages server... have to think about..;)
     
    gffmac likes this.
  91. gffmac

    gffmac Serious Server Member

    could php stuff load from usb?
     
  92. Elfew

    Elfew Addicted to LI Member

    Yes, why not? Add youtr own path
     
  93. macgyver

    macgyver Reformed Router Member

    Woke up today to find 5GHz band not transmitting on E3000 and also WDS link is down...never had this problem with other builds it was fine up to build "N" now on this build tomato-E3000USB-NVRAM60K-1.28.9013MIPSR2-RAF-V1.1p-VPN-NOCAT WDS link is down and had to click save on main config page for it to start working again...eagerly awaiting "R" build :D -edit- turns out the 2nd router lost power briefly but in previous build it would sync back up...after 1 hour link still down had to reboot to reconnect to main WDS router....doesnt explain the 5GHz radio cutting out on E3000 though...havent had that happen since I stopped using DDWRT :oops:
     
  94. Victek

    Victek Network Guru Member

    Changed parameter for APSD (Automatic Power Save Delivery) changed in release 'p' as I was 'thinking' green, back to 'coffee for all' in release 'r'.
    I got this issue from another E3000 user, but .. WDS don't recognize the effort.. ;), the beta 'r' for E3000 will include this change.

    Enter in terminal mode.
    write:
    nvram set wl_wme_apsd="off"
    nvram commit
    reboot

    and it should fix the issue, we aren't 'green' with the router... :(. If the clients are not APSD compliance then we must leave it always ON.

    Thanks!
     
  95. macgyver

    macgyver Reformed Router Member

    I remember back when the dropouts happened all the time it made me green but in a different way :mad::D I like to know that Im running at full power :cool:
    Are you planning on updating any K24 builds for routers with 4mb flash...wondering if there is something I can load on my WRT310Nv1 for testing WDS with more routers

    After applying those commands in telnet I see in Advanced section for 'wireless' 5GHz APSD mode is enabled but disabled on 2.4GHz...as far as I remember that was always disabled in previous builds and disabled before...and shouldnt "off" leave it disabled in GUI?...just noticed this now
     
  96. Victek

    Victek Network Guru Member

    Not at the moment, I'm working in K26 and checking drivers compatibility to upgrade kernel ....
     
    Marcel Tunks and Riddlah like this.
  97. Victek

    Victek Network Guru Member


    Disable also for 5GHz please in the GUI, I did for both bands but it's applicable after you make nvram erase... Thanks!
     
  98. M0g13r

    M0g13r LI Guru Member

    hi victek

    RT-N66U ... last r build ... connection pppoe

    ISP Hub ID is empty :\
     
  99. Victek

    Victek Network Guru Member

    Then your ISP provider is not sending any information ;) last build changed few minutes ago.. 'ra' with small fix due to APSD in WDS mode. When you see some text in this field it means that your ISP is multiplexing the main path over a number of users, it's usual in remote areas dsl connection, more information here: http://en.wikipedia.org/wiki/Concentrator
    It's an old feature I recovered by requests: http://www.linksysinfo.org/index.php?threads/tomato-nd-1-25-thor-mod-sdhc-snmp-vpn-usb.29344/
     
  100. M0g13r

    M0g13r LI Guru Member

    hm
    on wrt 54gl v1.1 with thor mod ... it shows isp concentrator id
     

Share This Page