access restriction - can't get it working
Moderator: Moderators
access restriction - can't get it working
Hi,
I'm trying to get an access restriction working without success.
I wanted to block internet access for the client with IP 10.0.0.199 from 21:00 to 23:00. You can see my config at the screenshots above.
This rule has set to active, but unfortunately with no effect. Maybe someone can give me a hint!?
thxs in advance,
lumin
I'm trying to get an access restriction working without success.
I wanted to block internet access for the client with IP 10.0.0.199 from 21:00 to 23:00. You can see my config at the screenshots above.
This rule has set to active, but unfortunately with no effect. Maybe someone can give me a hint!?
thxs in advance,
lumin
Re: access restriction - can't get it working
Following the scenario "No facebook during homework time" it should be working. The only difference is, that I didn't assign static IP, which I will do after a successful integration test.
http://www.gargoyle-router.com/wiki/dok ... _scenarios
http://www.gargoyle-router.com/wiki/dok ... _scenarios
Re: access restriction - can't get it working
Hi again,
I trying hard to get it working. Thus I tried to dive deeper and established a ssh connection to the router. It's not that easy to read iptables - L output, but I'm wondering about die rule set anyway. I can't find any connection to my GUI configured rule!? No IP (10.0.0.199) , no time….
Any inputs to get a step further?
thx! – lumin
I trying hard to get it working. Thus I tried to dive deeper and established a ssh connection to the router. It's not that easy to read iptables - L output, but I'm wondering about die rule set anyway. I can't find any connection to my GUI configured rule!? No IP (10.0.0.199) , no time….
Any inputs to get a step further?
thx! – lumin
Last edited by lumin on Thu Sep 17, 2015 3:24 am, edited 1 time in total.
Re: access restriction - can't get it working
Can you provide a screen shot of your config page at:
Gargoyle - Connection - DHCP
Gargoyle - Connection - DHCP
Can you help someone else get Gargoyle up and running?
TL-WDR3600 : Gargoyle 1.9.0 : NBN FixedWireless
TL-WR1043ND-V2 : Gargoyle 1.8.0 : 3G Huawei E160E
TL-WDR3600 : Gargoyle 1.9.0 : NBN FixedWireless
TL-WR1043ND-V2 : Gargoyle 1.8.0 : 3G Huawei E160E
Re: access restriction - can't get it working
hi nworbnhoj,
of course i can. I almost gave up hope getting any support here. thx you!
of course i can. I almost gave up hope getting any support here. thx you!
- Attachments
-
- 20150919 Bild 1.png (33.27 KiB) Viewed 5547 times
Re: access restriction - can't get it working
I just tested another scenario, which some other users reported as successful in older forum posts. First of all I added a restriction to block all traffic for all host. After that I added whitelist rule for my specific test host (10.0.0.199) to grant web access to a certain website (orf.at).
Again without results!
Please give me some hints!
Again without results!

Please give me some hints!
- Attachments
-
- 20150919 Bild 3.png (22.9 KiB) Viewed 5543 times
-
- 20150919 Bild 2.png (18.09 KiB) Viewed 5543 times
Re: access restriction - can't get it working
On your screenshot of:
Gargoyle - Connection - DHCP
you are set-up to assign a range of IP addresses 10.0.0.190 thru 10.0.0.199 automatically as hosts connect to the network. The IP address assigned to a particular host may well change from day to day - and 10.0.0.199 may not even be used unless you have 10 hosts connected to your network.
On your screen shot of:
Gargoyle - Firewall - Restrictions
You are restricting the host with IP address 10.0.0.199 but that IP address may not even be in assigned! You could apply the restriction to the whole DHCP range 10.0.0.190 thru 10.0.0.199, but that is probably not what you want.
Gargoyle - Connection - DHCP
you are set-up to assign a range of IP addresses 10.0.0.190 thru 10.0.0.199 automatically as hosts connect to the network. The IP address assigned to a particular host may well change from day to day - and 10.0.0.199 may not even be used unless you have 10 hosts connected to your network.
On your screen shot of:
Gargoyle - Firewall - Restrictions
You are restricting the host with IP address 10.0.0.199 but that IP address may not even be in assigned! You could apply the restriction to the whole DHCP range 10.0.0.190 thru 10.0.0.199, but that is probably not what you want.
You need to assign a static IP address (not in the range 10.0.0.190 thru 10.0.0.199) to the host that you want to restrict (say 10.0.0.150).lumin wrote:Following the scenario "No facebook during homework time" it should be working. The only difference is, that I didn't assign static IP, which I will do after a successful integration test.
Can you help someone else get Gargoyle up and running?
TL-WDR3600 : Gargoyle 1.9.0 : NBN FixedWireless
TL-WR1043ND-V2 : Gargoyle 1.8.0 : 3G Huawei E160E
TL-WDR3600 : Gargoyle 1.9.0 : NBN FixedWireless
TL-WR1043ND-V2 : Gargoyle 1.8.0 : 3G Huawei E160E
Re: access restriction - can't get it working
First of all, thank you for supporting me!
My restrictions respectively whitelist config. still don't work!:-/
That’s quite clear, thus I assigned a static IP to my "nexus" host (10.0.0.199), as shown on the DHCP screenshot. I also proofed this via 'Connected Hosts' site. It worked perfectly.nworbnhoj wrote:On your screenshot of:
Gargoyle - Connection - DHCP
you are set-up to assign a range of IP addresses 10.0.0.190 thru 10.0.0.199 automatically as hosts connect to the network. The IP address assigned to a particular host may well change from day to day - and 10.0.0.199 may not even be used unless you have 10 hosts connected to your network.
My restrictions respectively whitelist config. still don't work!:-/
Re: access restriction - can't get it working
My apologies - I could only see the top half of your screenshot (Gargoyle - Connection - DHCP) the first time.
Could you try assigning a static IP address outside (10.0.0.210) of the DHCP range (10.0.0.190 - 10.0.0.199)
(also the MAC address in the restriction rules is a little weird (I did not even know you could do that) I have only used IP addresses in these fields.
Could you try assigning a static IP address outside (10.0.0.210) of the DHCP range (10.0.0.190 - 10.0.0.199)
(also the MAC address in the restriction rules is a little weird (I did not even know you could do that) I have only used IP addresses in these fields.
Can you help someone else get Gargoyle up and running?
TL-WDR3600 : Gargoyle 1.9.0 : NBN FixedWireless
TL-WR1043ND-V2 : Gargoyle 1.8.0 : 3G Huawei E160E
TL-WDR3600 : Gargoyle 1.9.0 : NBN FixedWireless
TL-WR1043ND-V2 : Gargoyle 1.8.0 : 3G Huawei E160E
Re: access restriction - can't get it working
Obviously TL-WR841ND doesn't fit gargoyle's (v1.71) hardware requirements. mybe to less RAM. Since my last trial-and-error-session getting restrictions up and running it's extremely instable. Thus I can’t try your advice up to now. Now I’m trying to downgrade to Version 1.6x… 
