Discussion in 'HyperWRT Firmware' started by Avenger20, Nov 3, 2004.

  Gheimposse

    Gheimposse Network Guru Member

    Hi Zaphod ... if you´re not against a Sveasoft firmware ... this offeres you the wds function as well as some other nth (nice to have) tools.
  zaphod

    zaphod Network Guru Member

    gheimposse, i know read my signature and you see i use WDS since i got 2 WRT54g ... .but want this feature in hyperWRT so i dont have to use sveasofts firmware which is to overloaded for me....
  Gheimposse

    Gheimposse Network Guru Member

    Ok ... so your more a fan from HyperWRT. 8)
    I have to say that "overloaded" is only a question of which features you really enable.
    For me the Sveasoft is very good (also I don´t like the 20$ support fee of them) cause of vlan function (I´ll need for my new appartement in february when I share one dsl with my hirer) as well as the 0-251mW tx power option (cause beeing in the 3rd floor this will help very much!).

    Only thing I´ll also need is the option to disable wifi devices the access to the webmenu.
    The current linksys firmware offers this option as well as HyperWRT 2.0b3 does it. Sveasot still does not offer this in Alchemy 6.0 RC5a. :(
    But having this option as well as a free configurable firewall page and a client-to-router vpn connection (more nice to have) I would be happy!

    But HyperWRT is also very nice cause of the startup and firewall script options ... and the reboot button and the quick enabled telnet is also very good.
  zaphod

    zaphod Network Guru Member

    if avenger add the WDS feature i will kick the alch.. firmware from my "undead" v1 ;-) (i name it so cause i have bricked it 2 times and only unbricked it with shorting some pins of the amd-flash... but not the mentioned one... i just tested for 2 hours... )

    i think you know how to write your own firewall script with iptables so i dont think that you really need the "extended-firewall-configuration-web-page" (what a word ;-)

    acting as a VPN-Server is a nice feature too but iam not sure if i would trust it.. for experimental use sure, but not for production-use....

    personally i have installed many fortigate-firewalls in the last months.. they got a nice feature which i miss in nearly all other firewalls at all...
    --> virus-scanning in any stream you want to (pop3, smtp, imap, http, https... )

    did you know any appliance which do this virus-scanning at user-defined streams???
  Gheimposse

    Gheimposse Network Guru Member

    Ok... hacking iptable-codes in the telnet or firewall script (if using HyperWRT) is a way ... but I´m too lazy to do such a workaround ... a easy webinterface is better ... takes less time. 8)

    Regarding local firewall (or did you meant system firewalls?) I can proudly say that I bough one firewall in my life which i still trust ... and this is the WRQ ATguard (@guard) which is the fundament of the "Symantec Internet Security" Firewall where Symantec bought the rights to implement the sources of WRQ.
    Since Symantec came up with this piece of grap WRQ didn´t any longer evaluated the good, old ATguard. I still use the last release 3.22.11 on my laptop.
    Does not offer any virus scanning but is a simple firewall including a very good cookie, activeX, refer, etc. blocking.

    If you mean a system firewall I can recommend the Astaro firewall.
    Astaro offers a huge package of options also http/pop3 virus scanner as wells as cobion filtering for subscriped, paying home suser for just 59€/year.
    Basic use (without http/pop3 and cobion but all the rest as IDS, VPN, L2TP, etc. pp) is still free.

    Right now I just running around in this forums asking each and everyone for some programming implement the free configurable firewall as well as a working vpn (vpn in alchemy seems not to work!) as well as a radius server to calm down my fears of beeing hacked even using a very cryptic non-standard passphrase as well as WPA encryption.
    But ... there seems to be no one beeing interested in implementing the goods of wifi-box and TinyPEAP with a strickt firewall option set in ONE firmware. *dispappointing*
    Any idea who can hack this when I offer him the sourcecode???

    If everything wont help I install a new Astaro Security Appliance with three lan cards ... one for dsl, one for lan1 (my appartement) and lan2 (for the appartment of my hirer) to be sure that I have my own lan and best security options ... the wrt54gs would be behind the ASL in this case.
    Not what I liked to have ... but a possible solution.
    There´s only one problem ... the dsl modem and all the other shit will be in the bedroom of my hirer (curious ... but that´s the fact) ... and I think my hirer wont be happy to hear the fans from the ASL while trying to sleep! *mega-LOL*
  tidal

    tidal Network Guru Member

    This should be easy Avenger...

    I would like more fields in the Filter by Keyword on Access Restriction. I can think of a bunch of words besides 6 that is given.

    thanks for the firmware... it's the best so far. I agree with you keeping it simple... some other firmwares are too bloated
  Birds

    Birds Network Guru Member

    WPA AES-CCMP 256 Hex key input


    Would it be possible to add the ability to directly enter a 256 bit Hex WPA key, in addition to having the ability to use a passphrase. Letting the user decided which way they want to enter the key?

    According to my PC's wireless client software, the PC and router are communicating using AES-CCMP for both the Pairwise and Group cipher. I really appreciate that level of encryption. Since the router and PC are capable of that level it would be neat to have a way to ensure that a true 256 bit key is being used.
  Gheimposse

    Gheimposse Network Guru Member

    Yea ... what´s about the 256bit key?
    I read that linksys itself offers upon this year 256bit support.
    When will it be implemented in the "hacked" firmwares like HyperWRT?
  Lord_KiRon

    Lord_KiRon Network Guru Member

    Hi guys,

    I have one very simple (from user side ;)) request :

    Can you add ability for DHCP server to assign speciffic IP address to speciffic MAC address.
    I have 2 reasons for it :

    1. I have a laptop that works DHCP (it used at 3 different locations with different subnet addresses so I can't use static IPs) .
    When I at home I would like it to always have same IP (because I am forwarding few ports to it) but as I already told before it need to be set by DHCP.

    2. I have KiSS DP-558 networked recorder and it not only have local FTP but can go to internet, however probably because of bug in it's firmware when entering static IP it does not use my provider's DNS but it works fine when DHCP used. But when I use DHCP I have to "scan" for it each time I connect to it by FTP.

    I know that MS ISA and D-Link DI-624 router have this functionality, so I would really like to see it on my WRT54G :)

    Btw: great firmware !
  GeneralTweety

    GeneralTweety Network Guru Member



    You did a really good job with this firmware.

    I have only problems with the

    Dyndns - Dynamic IP´s

    Because when I enter the Dyndns datas and I want to update the IP, the router still write the

    I am connecting to the internet via PPTP and the router doesn´t know the right IP Adress. He only knows the IP

    The firmware from sveasoft alchemy RC 6 can do this correct, but the features from the hyperwrt are better for me. So maybe you can take the correct code from DynDNS from the alchemy to implement it to the hyperwrt firmware.

    That would be great.

    Please give a short reply if this is in progress or not.

    Thx and best regards


    P.S. Only a wish from me no bug: A feature for the DHCP would be great that I can give some Mac Adresses a static IP Adress. That was the only good point from my old router (D-Link 604)
  kingdaveone

    kingdaveone Network Guru Member

    Static DHCP

    Hi, your firmware is great, but request is a static DHCP please....

    Thank you
  ottawa

    ottawa Guest

    Enable wireless on demand

    I'd like to have enable wireless access when a certain NIC is sending dhcp package.
  dev_star_x

    dev_star_x Guest

    My HyperWRT needs!!

    What I really would like to see in the new hyperwrt firmware:

    - dhpcd fixed ip based on MAC-address (especially for wallwatcher).
    - nice graphic way to configure the firewall.
    - DNS server on the router.
  fabjan

    fabjan Network Guru Member


    The only thing I would like is vi to edit the scripts I want to test.

  ambaba

    ambaba Guest


    please add an info about the current connection
    e.g. dial in time or connected since

  dopez

    dopez Guest

    what i'd really like to see if a bit more advanced firewall rules, like i want to forward from internet to my server on lan only from a specific ip-range, or allow pc's on my lan to only access certain ip ranges and specific ports on that range on internet, or would this be done easy with some iptable rules? (maybe some examples?)

    thanks so far for this firmware :)
  Asmodeus

    Asmodeus Network Guru Member

    in terms of keeping any updates simple, i'd like to see the wpa key release change from seconds to minutes or even hours and the possibility of entering '0' so you can keep it permanent... is that possible to do...?
  JasonM

    JasonM Network Guru Member

    This firmware is top notch!!

    It would be perfect if it had static DHCP allocation.

    What would it take to add DHCP reservations?

    Jason Martin
  psyxakias

    psyxakias Network Guru Member

    Indeed, that would be wonderful as I always like to see how long I've been connected to my ISP and how many bytes received/sent.
  3003

    3003 Network Guru Member

    There is a feature in the BEFSR-41 that would be nice to have in the WRT54GS. SNMP Forwarding, I'm not a programmer so have no idea of how much programming it would take to add it.
  mutrax

    mutrax Network Guru Member

    I miss port redirecting from wan to lan, and a descent overvieuw of what ports are open/closed, forwarded etc.... (I'm used to that with my old usr8054)
  mc5

    mc5 Guest

    great firmware thanks. is it possible to add more port forward port selections? thanks
  fixmacs

    fixmacs Network Guru Member

    Port Forwarding Tweak

    I just now noticed that the stock Linksys firmware does not permit port forwarding of the folloiwng type:

    External port 5901 forwarded to internal port 5900 (specific LAN IP)

    Port 5901---->Port 5900
    Port 5902---->Port 5900

    The stock port forwarding only permits the identical port to be forwarded to a specific LAN IP. Many other low-end routers (including the Apple AirPorts) have the more flexible routing to redirect WAN ports which I need for managing multiple computers via VNC remotely from Internet.

    Would you consider adding port forwarding port fields that permit an external port to be redirected to a different LAN port on the WRT?

    This is now a serious issue for me because remote administration is becoming a major part of my consulting to SOHO clients.

    Thanks for your consideration of this feature.

    Addendum January 31st:

    I am told by Linksys support that the feature I want is called "Port Translation." I am also told by them that the WRT54G hardware will not permit this functionality. I have deep doubts regarding the truth of this statement. It sounds more like a convenient way to send users away.
  mutrax

    mutrax Network Guru Member

    This I also miss in the firmware. it's very important these days that you can redirect external ports to other internal ports. :idea:
  swinn

    swinn Network Guru Member

    You can. Just have to do it in your firewall script using iptables. It would be easier though if it were a html form that made the script for you.

  LUI

    LUI Guest

    Hi experts.
    I’m a recent owner of LinkSys WRT54G wireless router, which services my household needs now.
    Everything is ok, except that because of the router I need to use dynamic NAT port mapping for my applications, which I use to communicate to the outside world. I use IStaticPortMappingCollection interface for dynamic NAT port mapping. Everything works fine – I can assign a map, forward an external address to a client over a firewall and eventually establish a channel. Excellent! Except one moment – for some reason operation of a port map addition to a port map collection takes ~3-4 seconds?!? If I need several channels (voice, video, data, etc) for one session, it grows into absolutely unacceptable 12-16 sec to establish a session!

    So, I’m curious – is that a specificity of my router or anything else?
    Have anyone experienced the same problem with WRT54G?
    Any explanations, comments, recommendations?
    I will appreciate it a lot if anyone will advise me with my concern.

    Thanks in advance.
  boiler

    boiler Network Guru Member

    A small feature request for HyperWRT. Is it possible to be able to see ALL the connected clients to the WRT, not just the DCHP clients and the Wireless Clients. I would like to know what is connected that has a static IP address.

    Thanks and Cheers
  dellsweig

    dellsweig Network Guru Member

  boiler

    boiler Network Guru Member

    Not really, but thanks anyway.

    I am aware of this page already. as well as the one that shows connected DCHP clients. What I would like to see is a summary of ALL connected clients including ones that have static IPs. I have a few PCs and another router behind my WRT54GS that all have static IPs. I haven't found a way to find out if they are connected unless I physically go and check on each machine.
    Is this possible?
  DallasFlier

    DallasFlier Network Guru Member

    Avenger, it would be great if you would expose the above screen in the GUI. I'd suggest a button on the Status-->Wireless page similar to the "DHCP Clients Table" button on the Status-->Local Network page.

    Thanks, and thanks for all your work on this - its great!
  fixmacs

    fixmacs Network Guru Member

    New Log Feature

    This is a useful feature. I have wanted a log of user logins, MAC address, and time. Our network has been experiencing disruptions such that I'd like to know if unauthorized users are logging in, either DHCP or static IP showing the date and time.
  ShadowDragon

    ShadowDragon Network Guru Member

    My wish, and my only problem with this router: Allow masquerading to always give WAN address rather than LAN either by toggle or default.
  Terence

    Terence Network Guru Member

    Static DHCP - the first thing on my wish list!!
  sbessel

    sbessel Guest

    Isn't this still available with UPnP? I know if I check Internet Connections, Properties, Settings, I can see a list of ports that are forwarded for different things, like netmeeting and such.

    I tried to add on of my own and it stuck, and I was able to see it from different machines, so the router took it... although it didn't actually work :roll: But my UPnP apps work just fine, remote desktop, and remote assistance invitations.

  MacOSX

    MacOSX Network Guru Member

    Hackers perfect Firmware

    It would be so great if you could put the following three network security tools into the next Hyperwrt Firmware. Then it would be the hackers best Router Firmware ever made.

    And I think it can be made cause all tools are very small. :D

    The tools are:
    NetCat - http://netcat.sourceforge.net/
    Snort - http://www.snort.org/
    nmap - http://www.insecure.org/nmap/

    Imagine the possibilities you have with these tools on the router.

    Please, please put it in the next firmware. 8)
  darkvater

    darkvater Network Guru Member

    I must say the firmware is just great! I was a bit scared at first cause the last time I upgraded a firmware (Alcatel Home ADSL modem), it broke and never worked again :(

    The more the merrier, so here are my requests:
    - Static DHCP. I am having a few laptops at home that are used in various places and running some services (webserver). Giving them static IP's is a lot of hassle since they move around a lot from here to work and vv
    - Explicit firewall rules to block some outgoing connections (as not all of us are iptables experts ;) ).
    - Perhaps this is not your job, but the webinterface has a LOT of HTML an W3C errors and looks at time kinda crappy in Opera :(. I think it's IE only.

    Keep up the great work!
  jpac

    jpac Guest


    great firmware, keep up the great job ! And all the enhancements mentioned above make sense. I have a WRT54GS with HyperWRT 2.0.

    At the moment there's no LOG of SPI Activities, I don't even know if the firewall is working or not ! I'd just like to have a log of SPI Firewall and system activities like :

    - System Activity
    - Debug Information:
    - Attacks
    - Dropped Packets
    - Notice

    Feb/16/2005 19:00:09 System Started
    Feb/16/2005 19:01:09 SSID=Test TX=Best Channel=6
    Feb/16/2005 19:02:09 DHCP Request 62.14.X
    Feb/16/2005 19:12:09 DHCP Request Success 62.14.X
    Feb/16/2005 19:22:19 Dropped Packet 62.14.X

    Thanks a lot in advance !
  d00mzday

    d00mzday Network Guru Member

    :D Not many great things come free these days but this firmware is one of them few things that do and it makes my wrt54gs v1 well worth the purchase. I am very happy and thankful for your work on it keep up the great work.

    My vote is for more ddns lots of dynamic users out there running servers my request is one for zoneedit.com which by the way is a great service aswell. Its currently a option in sveasoft but wanting to stick to hyperwrt simply because it works great and doesnt stray much from the original firmware.
  issup

    issup Guest

    I would like to have those:

    static DHCP
    PPTP server
    predefined server profiles

    change incoming WAN port numbers to different incoming LAN ports

    is it possible to buy those features? what would be the price?
    Isn't it possible to just take the source code from any other firmware that already includes this part and add it to the hyper wrt, which is a quite stable firmware?

    somehow i can not recommend anyone to use alchemy, DD-WRT or something like that: i always expirienced connection hang ups, unwanted reboots and so on.
  chiel1974

    chiel1974 Network Guru Member

    i would live ppoa support, since i would like to be able to logon into the network useing my wrt54gs to the dutch adsl service!
  Jumbo

    Jumbo Network Guru Member

    Static DHCP Pleaaaaaaaaaase !!!
  myda

    myda Network Guru Member

    i whant to have a subnet of
    that whoud be greate thanks
  myda

    myda Network Guru Member

    i we can select by port tiggering tcp oder udp ore they tow

    thanks david
  Macrus

    Macrus Network Guru Member

    pls add Client Mode
  Toxic

    Toxic Administrator Staff Member

    WDS settings in webpages.
  Angel

    Angel Network Guru Member

    What is the maximum you should set the transmission power at? Default is 50%...42mw.
  andresm30

    andresm30 Guest

    It would be interesting to have a configuration option to enable or disable access to the router configuration web page from internet. So the user has the possibility to say to the router to accept only configuration from the internal LAN.

    Maybe the option is there somewhere and I missed it.

    Couldn't be so hard. Just one iptable command.....maybe.

    Any opinions?

  RB480Ruger

    RB480Ruger Network Guru Member


    An improved QoS and static DHCP.

    Thank you.
  WayneBlack

    WayneBlack Guest

    Static DHCP another request PLEASE
  Toxic

    Toxic Administrator Staff Member

    my wishlist would be for:

    Static IP
    Simple WDS Interface.
    Better Status page/information (adding info from SysInfo.htm)

    (The fundamentals of keeping close to the linksys base code should however be kept)
  eponymous

    eponymous Network Guru Member

    1) Static DHCP (but you knew that one already)
    2) Port forwarding by MAC address instead of IP (is this even feasible? If it is I will remove my request for static DHCP. ;) )
    3) WDS setup in the web pages
    4) COPY the "Wireless Client MAC List" view from Wireless>Wireless MAC Filter>Edit MAC Filter List to Status>Wireless. It shouldn't be removed from where it is, I just think that's an awful lot of drill down when I just want to see what MACs are connected.
    5) This is probably too much work, but it would be nice if there was an additional column in the Status>Local Network>DHCP Clients Table that indicated if the client was connected wired/wireless (and this would obviate the need for #4)
  TheMunch8

    TheMunch8 Network Guru Member

    Static DHCP and QoS and I would love you.
  RasCas

    RasCas Network Guru Member

    two ips one for wlan an one for wired lan
    i would love this, possible?
  Macrus

    Macrus Network Guru Member

    pls add Channel 14
  alexwrt54gs

    alexwrt54gs Network Guru Member

    simple "Website Blocking by URL" import/export fun

    my wish would be a more simpler way of importing / exporting "Website Blocking by URL/keywords" to the router...

    or is this already possible?? :? :?:
  HillJack

    HillJack Network Guru Member

    How about increasing the size of the textfield boxes that appear in the popup for the startup and firewall scripts - a width of 55 is far to narrow, which results in every line wrapping and making it that much harder to read (or I guess if I can figure out how to edit files on the WRT I can do that myself :)
  digicipher

    digicipher Guest

    I second that with a ZoneEdit.com option.
  TerryH

    TerryH Network Guru Member

    Wlan deactivated -> green lamp should go off

    If the Wlan ist deactivated in the settings, the green lamp on the front side of the router should go off...
  nvpbrown

    nvpbrown Network Guru Member

    Working well for me so far. There are a total of three "special" features I want from my router:

    (1) WDS. The latest HyperWRT works great.

    (2) Static DHCP. I can't believe that no one has mentioned that yet. :) I have several systems that I lug around and move to different networks.

    (3) QoS control, three levels. I don't want any data traffic burying my VOIP phone. I don't want any BitTorrent, FTP, or other "bulk" traffic burying normal interactive traffic (mostly HTTP). Looks like the current interface provides "Hi" and "Lo" only.

    Sveasoft has both (2) and (3). If it only had an "Operate Reliably" check box...
  jmbach

    jmbach Network Guru Member

    Since this a wish list, I would like DHCP Passthrough from the WAN side to the LAN and WLAN side with no NAT.

    Thanks for sharing your hobby with us.
  bykte

    bykte Network Guru Member

    it would be nice if hyperwrt has a built in vpn connection.. that is you specify the VPN host login and pass, and it will connect to the VPN for you, instead of creating a new network connection through windows...
  TerryH

    TerryH Network Guru Member

    Problem with 100% Sip aware

    The actual firmware has problems with some VOIP-Providers (for example in Germany GMX.DE).
    It is said that the firmware isn't "100% Sip aware"

    If you try to register your information while dialing there's always the same error:

    "SIP/2.0 479 Please don't use private IP addresses"

    This problem shouldn't exist in Firmware Version 1.4.
    But with my WRT45G V2.2 I can't use this Firmware.
  cola99

    cola99 Network Guru Member

  64. hshh

    hshh

    Hi Avenger,

    Could you add IMQ and iptables mark feature support?
    I made a traffic shape script,and I need the IMQ and mark.
    my adsl is 576kbps/2Mbps


    $IPTABLES -t mangle -F
    $TC qdisc del dev ppp0 root
    $TC qdisc add dev ppp0 root handle 1: htb default 14
    $TC class add dev ppp0 parent 1: classid 1:1 htb rate 480kbit burst 6k prio 0
    $TC class add dev ppp0 parent 1:1 classid 1:11 htb rate 360kbit ceil 480kbit burst 6k prio 1
    $TC class add dev ppp0 parent 1:1 classid 1:12 htb rate 72kbit ceil 480kbit burst 6k prio 2
    $TC class add dev ppp0 parent 1:1 classid 1:13 htb rate 48kbit ceil 480kbit burst 6k prio 3
    $TC class add dev ppp0 parent 1:1 classid 1:14 htb rate 1kbit ceil 480kbit burst 6k prio 4
    $TC qdisc add dev ppp0 parent 1:11 handle 11: pfifo
    $TC qdisc add dev ppp0 parent 1:12 handle 12: sfq perturb 10
    $TC qdisc add dev ppp0 parent 1:13 handle 13: sfq perturb 10
    $TC qdisc add dev ppp0 parent 1:14 handle 14: sfq perturb 10
    $TC filter add dev ppp0 parent 1:0 protocol ip prio 1 handle 11 fw classid 1:11
    $TC filter add dev ppp0 parent 1:0 protocol ip prio 2 handle 12 fw classid 1:12
    $TC filter add dev ppp0 parent 1:0 protocol ip prio 3 handle 13 fw classid 1:13
    $TC filter add dev ppp0 parent 1:0 protocol ip prio 4 handle 14 fw classid 1:14
    $IPTABLES -t mangle -A OUTPUT -p tcp -m length --length :64 -j MARK --set-mark 11
    $IPTABLES -t mangle -A POSTROUTING -o ppp0 -p tcp -m tcp --tcp-flags SYN,RST,ACK SYN -j MARK --set-mark 11
    $IPTABLES -t mangle -A POSTROUTING -o ppp0 -p tcp -m tcp --tcp-flags SYN,RST,ACK SYN,ACK -j MARK --set-mark 11
    $IPTABLES -t mangle -A POSTROUTING -o ppp0 -p icmp -j MARK --set-mark 12
    $IPTABLES -t mangle -A POSTROUTING -o ppp0 -p udp -m udp --dport 53 -j MARK --set-mark 12
    $IPTABLES -t mangle -A POSTROUTING -o ppp0 -p tcp -m tcp --dport 22 -j MARK --set-mark 13
    $IPTABLES -t mangle -A POSTROUTING -o ppp0 -p tcp -m tcp --dport 1863 -j MARK --set-mark 13
    $IPTABLES -t mangle -A POSTROUTING -o ppp0 -m mark --mark 0 -j MARK --set-mark 14
    $IP link set imq0 up
    $TC qdisc del dev imq0 root
    $TC qdisc add dev imq0 handle 1: root htb default 24
    $TC class add dev imq0 parent 1: classid 1:1 htb rate 1900kbit burst 6k prio 0
    $TC class add dev imq0 parent 1:1 classid 1:21 htb rate 1450kbit ceil 1900kbit burst 6k prio 1
    $TC class add dev imq0 parent 1:1 classid 1:22 htb rate 1000kbit ceil 1900kbit burst 6k prio 2
    $TC class add dev imq0 parent 1:1 classid 1:23 htb rate 300kbit ceil 1900kbit burst 6k prio 3
    $TC class add dev imq0 parent 1:1 classid 1:24 htb rate 1kbit ceil 1900kbit burst 6k prio 4
    $TC qdisc add dev imq0 parent 1:21 handle 21: pfifo
    $TC qdisc add dev imq0 parent 1:22 handle 22: sfq perturb 10
    $TC qdisc add dev imq0 parent 1:23 handle 23: red limit 1000000 min 5000 max 100000 avpkt 100 burst 100
    $TC qdisc add dev imq0 parent 1:24 handle 24: red limit 500000 min 2500 max 50000 avpkt 100 burst 100
    $TC filter add dev imq0 parent 1:0 prio 1 protocol ip handle 21 fw flowid 1:21
    $TC filter add dev imq0 parent 1:0 prio 2 protocol ip handle 22 fw flowid 1:22
    $TC filter add dev imq0 parent 1:0 prio 3 protocol ip handle 23 fw flowid 1:23
    $TC filter add dev imq0 parent 1:0 prio 4 protocol ip handle 24 fw flowid 1:24
    $IPTABLES -t mangle -A INPUT -p tcp -m length --length :64 -j MARK --set-mark 21
    $IPTABLES -t mangle -A PREROUTING -i ppp0 -p tcp -m tcp --tcp-flags SYN,RST,ACK SYN,ACK -j MARK --set-mark 21
    $IPTABLES -t mangle -A PREROUTING -i ppp0 -p udp --sport 53 -j MARK --set-mark 22
    $IPTABLES -t mangle -A PREROUTING -i ppp0 -p tcp --sport 22 -j MARK --set-mark 22
    $IPTABLES -t mangle -A PREROUTING -i ppp0 -p tcp --sport 1863 -j MARK --set-mark 22
    $IPTABLES -t mangle -A PREROUTING -i ppp0 -p ! tcp -j MARK --set-mark 23
    $IPTABLES -t mangle -A PREROUTING -i ppp0 -m mark --mark 0 -j MARK --set-mark 24
    $IPTABLES -t mangle -A PREROUTING -i ppp0 -j IMQ
  Rooki

    Rooki Network Guru Member

    To Avanger.

    Thank you very much for this great firmware.

    I only miss:

    - Static DHCP
    - Blocking P2P

  wrt54gs

    wrt54gs Network Guru Member

    1. Static DHCP
    2. Client Mode
    3. friendly interface with WDS setup


    Can I ask a question When the new version will be released ?

    So long for it !
  stephbu

    stephbu Network Guru Member

    Avenger - first off you rock! HyperWRT 2.0 is the most stable home firmware that I think I've ever used.

    Some things that I'd feel are really useful:

    1) Wildcard Hostname support for DynDNS Daemon. Without it the Daemon is useless to me.
    2) SNMP. Party with my network monitoring software.

    I'd balance my desire for features against stability - never compromise the quality that you currently have.
  bigrig

    bigrig Network Guru Member

    Ditto! :blob:

  NetrixTardis

    NetrixTardis Network Guru Member

    -static DHCP
    (i'm trying to add SNMP myself, tho, having some issues)
  Guyfromhe

    Guyfromhe Network Guru Member

    we want toasterd!
  Thombo

    Thombo Guest

    Wake-On-LAN Support would be nice.
    Also SSH- and Proxy- Server
  mp3phish

    mp3phish Guest

    Wishlist items: nocat, statid DHCP, etc.

    Main items on wishlist:

    1) Static DHCP. Even if you force users to manually enter the MAC and IP of each static DHCP entry that is what would work best. It doesn't have to automatically assign them. just make a table you can enter the info into.

    2) nocatsplash. For anyone wanting to use this as a public hotspot, nocatsplash is probably the best way to go.

    3) preconfigured services filters so users on the open hotspot don't get you in trouble by downloading music off P2P and etc. If they want P2P access they can pay for their own connection IMO. So have an option to block Bittorrent, Gnutella, etc... similar to the preconfigured port forwarding settings.

    4) email traffic logs and bandwidth utilization to the admin
  Cyberian75

    Cyberian75 Network Guru Member

    I'd LOVE to see...

    1. Static DHCP by MAC Address
    2. Improved QoS
    3. SNMP Support

    PLEASE!!! :)
  Menkatek

    Menkatek Network Guru Member

    I've been using HyperWRT with the new WRT54G I got a week ago. So far, it's been fantastic and I'm looking forward to new releases. :)

    I have Verizon FIOS (15/2) and I chose HyperWRT because of the speed. However, I could really use an improved QoS function like in Satori/Alchemy. Unfortunately, Satori is also hindered by its poor performance. If HyperWRT had its own QoS, it would be the best of both worlds. Never would I need to flash again!

    Thanks again for your great firmware.
  r3ap3r

    r3ap3r Guest

    An automagic fix for thoise damned BitTorrent causing the 54GS to reboot issue. I've been poking around here seeing references to somehow overclocking it, but I don't know how to do that. The ideal would be a box in the firmware that says "Are you having trouble with reboots? Click here" Automagic.
  asmodemon

    asmodemon Network Guru Member

    one soft link plz

    /etc/networks -> /tmp/networks
  CAOgdin

    CAOgdin Network Guru Member

    What the heck is "Static" "Dynamic Host Contr

    Explain what you mean by "static DHCP". You can have static IP addresses, or have them dynamically assign them from a DHCP server (as built inot the WRT54G, but "Static Dynamic" is an oxymoron.

    Explain what you really want.
  MrMike

    MrMike Network Guru Member

    Re: What the heck is "Static" "Dynamic Host C

    Thats what its called. Have the router assign a static IP address to an attached device based up on the devices MAC address but allowing the attached device to keep dhcp enabled. Especially useful for laptops or devices that may move locations so you don't have to setup different network configs based upon where you are located. Just leave DHCP enabled on everything but for some devices give it a static IP in the router.

    I use it for my vonage box, squeezebox and linux box. Its really useful for my linux box because I use dyndns.org to assign dynamic domain name to it. Using the router to keep it at a set IP address then port forward specific services to the box. I don't have to adjust the router everytime the IP expires because its a statically assigned DHCP address.
  daff

    daff Guest

    Add another request to the set of requests for static DHCP in the HyperWRT firmware :)
  Tregge

    Tregge Network Guru Member

    1. Static DHCP
    2. BusyBox with working Telnet-Command.
  sumpwa

    sumpwa Network Guru Member

    CIDR support for the following ranges:
  Fishnet

    Fishnet Network Guru Member

    HyperWRT for the WRT54GX with the current features would be fantastic! :D
  mdburkey

    mdburkey Network Guru Member

    1) Static DHCP by MAC
    2) PPTP and/or IPSEC server in router
    3) PPTP and/or IPSEC client in router

    (i.e. ability to bond two routers together via VPN)
  n7uv

    n7uv Network Guru Member

    Wish list for HyperWRT

    how about

    1) the ability to run on the most recent WRT and WRT-GS since Linksys seems to come out with a new version every month?

    2) Bridge (WDS) mode (not repeater)

    3) Is there a way to modify the ACK timeout to allow 150km (500us delay) paths? (Yes, the radio waves can make it, but it's the ACK timeout that really gets you)
  wester

    wester Guest

    Static DHCP
    Local DNS (dnsmasq)
  Trollkarlen

    Trollkarlen Network Guru Member

    About static DHCP...


    Good news - you've got it already in the latest release :)
  zdvs1

    zdvs1 Network Guru Member

    Any progress on VPN server built into the box?
  vais

    vais Network Guru Member

    My 2 cents

    Ability to forward ports to "external" addresses as well ( not only 192.168.1.XXX )
    Ability to see the logged clients and the strength of their signals ( as in DD-WRT firmware wireless status )
  leonardoh

    leonardoh Network Guru Member

    Are there plans to include VPN server?
  ranpha

    ranpha Network Guru Member

    All I want from this firmware, is a better documentation.
  VladTepes77

    VladTepes77 Network Guru Member

    At this time I vote for WoL.
  p2dewit

    p2dewit Network Guru Member

    HyperWRT for WRT54GXv2 !
  vibe666

    vibe666 Network Guru Member

    another vote for a WyperWRT firmware for the WRT54GX (v1 for me, but I guess v2 would be good too!). I used to have a wrt54g but it died (beyond recovery surprisingly) and I ordered the WRT54GX before realising there wasn't a version of HyperWRT for it and now my worst fears are realised. My P2P is killing my router every 2 hours (to the point where I need to reboot) and QoS is non-existent. this startup script fixed my p2p problems (i think it was the "ip_conntrack_max" lines that did it)

    maybe you could add that in as an option ofr people who use p2p software. just a little checkbox for "fix p2p issues" which would add that line to the startup script with a little message fater to tell you to reboot the router for the changes to take effect.


    thanks anyway, you saved my skin with my wrt54g, so here's hoping you have the time to want to do the same with the wrt54gx.

    you're doing a great job anyway guys, keep up the great work, it's very much appreciated. :thumbup:
  dani24zg

    dani24zg Network Guru Member

    - DYDNS
  taichi

    taichi Network Guru Member

    great firmware!

    1. Wake-On-LAN
    2. SSH
  iamqwerty

    iamqwerty Network Guru Member

    Wake-On-LAN implemented

    Hi taichi

    I have implemented Wake-On-Lan in with the tofu 9 code.
    You can download the firmware here: Firmware + Source

    Hopefully tofu will include WOL in his next releases
  snwbdr

    snwbdr Network Guru Member

  NateHoy

    NateHoy Network Guru Member

    Memory usage display

    I don't know much about the hardware or this firmware, so maybe I'm smoking something, but here goes:

    I'd absolutely love a screen in the Web interface that details used and free memory, and gives as much information as possible about what features are using what memory at the time.

    HyperWRT Tofu 10 is doing absolute wonders in the 16MB limited memory of my WRT54G, and he (and all those who wrote the firmware code he based his version on, right back to Linksys) are to be commended for their fine work.

    But it IS only 16MB, and some sort of "if I turn off this feature, I can free up approximately this much memory" display would be great. Yes, I can turn off a feature and do a cat /proc/meminfo to find free memory, but that's, like, work. And I'm, like, lazy. ;)

    Lazy and VERY grateful for the excellent work. It still amazes me what these guys can turn a $50 router into. Astonishing.
  reopeadres

    reopeadres Network Guru Member

    Be able to forword all packets for the internet to a certan computer on the lan side

  montyshaw

    montyshaw Network Guru Member

    Support 16 MACs on the QOS page. I have a large family, and a number of computers plus Tivos and 8 isn't enough.

