Posted: Fri Feb 28, 2020 6:46 Post subject: Web Server Behind DD-WRT Behind FiOS Quantum Router
Hey all, I'm a huge fan of DD-WRT. I just spent the last 48 hours Googling what every setting is for. I have a bunch of questions and would be happy to receive any feedback.
Question #1:
I have a web server that's behind DD-WRT that's behind a FiOS Quantum Router. DD-WRT serves the internet over the WLANs just fine when the routing mode is set to Gateway. However, I could not figure out how to double port forward 443 and 80 with a double NATted set up. I read that I should be using the Router type routing mode. However, when I do that, the computers on the LAN/WLAN lose internet. I read that I'm supposed to use static routes but I'm unsure how to set that up. Can anyone provide guidance?
Note: I am open to installing nginx on the router and proxy the requests but I'm looking for the *right* way to do it.
Here's a diagram and some more information about what I'm trying to do:
Question #2:
I'd like to set up Plex Media Server on a server behind DD-WRT. I would also like to prevent guests on the FiOS Quantum router from accessing most of the DD-WRT network. However, I would like both networks to be able to access the Plex Media Server. How can I accomplish this?
Question #3:
I set up DNSCrypt using the DD-WRT GUI but when I go to this website: https://www.cloudflare.com/ssl/encrypted-sni/ it says that I failed the "Encrypted SNI" test. How can I start passing that test?
Question #4:
I have an Actiontec ONT to Ethernet adapter. I am open to getting rid of the FiOS Quantum router and just using DD-WRT for everything. However, my roomies have extenders because they like to use Ethernet. If I take this route, can the set top boxes and extenders still work?
Question #5:
I would like to share the Printer/Hard Drive attached via USB to the DD-WRT to the whole network (including the FiOS Quantum network). How can I do this?
Hey egc, I tried what you are saying but I was unable to access the server by going to abc.example.com even with double port forwarding on although all the clients had internet access. What am I missing here? Did you look at the diagram I made?
Joined: 18 Mar 2014 Posts: 12836 Location: Netherlands
Posted: Fri Feb 28, 2020 18:17 Post subject:
hillbillyhacker wrote:
Hey egc, I tried what you are saying but I was unable to access the server by going to abc.example.com even with double port forwarding on although all the clients had internet access. What am I missing here? Did you look at the diagram I made?
Take note that you are not using ports already in use like 80 or 443.
Use netstat -a to see if ports are open
Try to reach your server from the network of your provider like from laptop A
Joined: 08 May 2018 Posts: 14125 Location: Texas, USA
Posted: Fri Feb 28, 2020 18:29 Post subject:
egc wrote:
hillbillyhacker wrote:
Hey egc, I tried what you are saying but I was unable to access the server by going to abc.example.com even with double port forwarding on although all the clients had internet access. What am I missing here? Did you look at the diagram I made?
Take note that you are not using ports already in use like 80 or 443.
Use netstat -a to see if ports are open
Try to reach your server from the network of your provider like from laptop A
The server you are trying to reach also has its own firewall is this open?
Yes, you cannot use standard http or https ports to forward them to an internal server from the outside world, usually. The internal server itself can be running on ports 80 or 443, but your second forward should redirect the forwarded port number (i.e. 8080) to the internal server IP and port (80 or 443), if I remember right. I am wondering if assigning your internal server(s) to DMZ and using static IPs would be easier. _________________ "Life is but a fleeting moment, a vapor that vanishes quickly; All is vanity"
Contribute To DD-WRT Pogo - A minimal level of ability is expected and needed... DD-WRT Releases 2023 (PolitePol)
DD-WRT Releases 2023 (RSS Everything)
----------------------
Linux User #377467 counter.li.org / linuxcounter.net