WRT54GC - cannot config the access restrictions

peterh337

Honorable
May 5, 2016
155
0
10,690
I have found this thread
http://www.tomshardware.co.uk/forum/170180-28-linksys-wrt54g-access-restriction-work
and I have basically the same issue. The answer provided doesn't make any sense to me.

On this config page
http://peter-ftp.co.uk/screenshots/2016-10-03-215034.jpg
2016-10-03-215034.jpg


I just cannot make the block list on the RHS to size itself to contain anything. It stays on zero size.

The buttons with the right chevrons do nothing.

All I am trying to do is define two blocks as shown, to block access to ports 111-442 and 442 upwards. The main purpose (I am using the box as a wifi access point, connected via ethernet) is to prevent guests staying with us browsing the internal LAN (network drives, etc) from their wifi connected clients. So I need to block the windows networking ports 137-139 AFAIK. But blocking the high ports is also desirable (gaming).

I did manage to make it work about 8 years ago but cannot find the backup of that config, and the box blew up so I bought another one on Ebay.

There must be some subtlety which enables the two blocks to be added into the RH box!

Also the Edit List button does nothing, on IE8, IE10, FF, Chrome, on winXP or win7! I have unblocked popups in the browser, since the config does use them in some places. Weird!
 
You generally can not place firewall rules between the lan and the wireless. The firewall generally only works between the lan/wireless and the wan.

This is a extremely old router. Still this used to be one of the more popular ones to run dd-wrt on. Be very careful there are many hardware revisions with the same model number.

DD-WRt has a number of ways to accomplish this but the simplest would be to run the wireless and lan as 2 differenet networks.
 

peterh337

Honorable
May 5, 2016
155
0
10,690
What I am doing did previously work. I had it working, well tested, on the previous WRT54GC.

The Q is: how does one enable that block feature, allowing the RH chevron key to work?

The other access restrictions (e.g. time of day) seem to work.

I can see that one cannot block stuff between the four ethernet ports and wifi because they are all on the same subnet inside the WRT. In that case how did I make it work previously? Did I connect the LAN to the "internet" port? In which case I must have configured the router differently, somehow... I cannot get it to do anything via the "internet" port which is presumably intended for an ADSL modem.

The basic config I am using is this:

2016-10-04-074402.jpg


I have tried the Static IP mode but the IP specified at the top doesn't seem to do anything...

Maybe a different box might work better? I have just not seen any. I have a number of Draytek 800 wifi APs kicking around but stopped using them when a wifi scanner discovered it was presenting a ghost "channel", with no security, apparently caused by a single space character being entered in one of the four SSID! But that box didn't have any port blocking either.
 

peterh337

Honorable
May 5, 2016
155
0
10,690
I am bumping this thread, in case anybody has come across this before. Online searches dig out quite a few unanswered threads.

One factor may be that a specific old version of IE browser may be needed, but I did try it with as far back as IE8.