Tom Diehl on 19 Dec 2017 10:36:49 -0800


[Date Prev] [Date Next] [Thread Prev] [Thread Next] [Date Index] [Thread Index]

Re: [PLUG] New Comcast wireless modem with old Buffalo wireless router


On Tue, 19 Dec 2017, Lee H. Marzke wrote:

Interesting,

I run my FiOS ONT Ethernet port directly to a managed Cisco switch access port, and vLAN tag it,  then
it goes over a vLAN trunk ( two SFP cables using LACP ) to a 2nd switch in my mobile rack running ESX.

I don't think using vLAN's over a trunk is a security problem, however just vLAN tagging
packets on the normal LAN that could be read by any PC would be.   In my case the FiOS WAN vLAN
only goes to an my backup physical EdgeRouter-X and via the trunk to ESX ( to the pfSense VM )

My pfSense router also has a IPv6 GIF tunnel to HE,  and I have an IPv6 webserver, and outbound IPv6.  This
is mostly for learning about IPv6, since Verizon doesn't offer native IPv6 yet.

FWIW, we have several business customers that use various routers (pfsense,
cisco, etc)for their data and the Actiontec router for TV only. We put a GB
switch between the ONT and the 2 routers. Assign 1 ip address to the Actiontec and
the rest to whatever router we are using for data. This gives us the best of
both worlds in that we do not have to rely on the Actiontec POS for security on
the data network and they still get their TV guide data.

The only reason you need the actiontec is for the TV guide data.
If you do not have FiOS Digital TV you do not need the VZ supplied router.

The down side is that you need multiple static ip addresses but in a business
situation that is not usually an issue.

Sometimes you have to call VZ to get them to turn the ethernet port on on the
ONT but it is a simple programming change on their end. Usually takes < 15
minutes once you actually get someone to answer the phone.

We have been using that setup for over 5 years without problems.

Regards,

--
Tom Diehl       tdiehl@rogueind.com      Spamtrap address mtd123@rogueind.com



Lee

----- Original Message -----
From: gary@duzan.org
To: "Philadelphia Linux User's Group Discussion List" <plug@lists.phillylinux.org>
Sent: Monday, December 18, 2017 8:00:30 PM
Subject: Re: [PLUG] New Comcast wireless modem with old Buffalo wireless router

=> "Lee H. Marzke" <lee@marzke.net> wrote:
=>
=> If your FIOS ONT unit has an Ethernet jack, then it is acting as a bridge
=> and it is
=> a regular Ethernet connection to Verizon so no special requirements exist.
=>
=> I run my FIOS WAN Ethernet connection to my pfSense Router and it works
=> just fine.   No need for
=> any special router from Verizon unless you are using their cable TV
=> option.  I also
=> had a Ubiquity EdgeRouter X connected to the ONT on a different public IP
=> and it worked fine.
=>
=> Have you not been able to get another router to work on your ONT ?
=>
=> Lee

  Yes, I did look into that, but I do have FiOS TV, so I need the MOCA
stuff to keep working. Interestingly, my FiOS Android app can no longer
access my DVR contents, and I suspect the "unsupported" router is to
blame. I'm not sure I want to know what stupid router tricks they are
pulling for that one.

  I also do the trick of having my own router behind theirs, though to
support my IPv6 tunnel broker connection I have a smart switch to put
the FiOS LAN on my main LAN as a tagged VLAN, and configured a VLAN on
my server to route IPv6. Probably not the most secure thing, I know,
but some extra work for any attacker.

                         Gary Duzan



___________________________________________________________________________
Philadelphia Linux Users Group         --        http://www.phillylinux.org
Announcements - http://lists.phillylinux.org/mailman/listinfo/plug-announce
General Discussion  --   http://lists.phillylinux.org/mailman/listinfo/plug


___________________________________________________________________________
Philadelphia Linux Users Group         --        http://www.phillylinux.org
Announcements - http://lists.phillylinux.org/mailman/listinfo/plug-announce
General Discussion  --   http://lists.phillylinux.org/mailman/listinfo/plug