First hour with my Turris Omnia :D DS-Lite Connection only ipv6 in ssh Shell

Hey everyone!
finaly my TO arrived and i am amazed like a child!
after setting the wan and lan up and klicking trough the menus trying to find how to activate and redirect https web access, i noticed some freqeuntly repeated System log messages.

why are they apearing?

2017-03-08T22:16:07+01:00 notice netifd[]: wan6 (2145): Command failed: Unknown error
2017-03-08T22:16:15+01:00 warning odhcpd[1715]: DHCPV6 SOLICIT IA_NA from xxxxxxx on br-lan: ok 2a02:xxx:xxx:xxxx::xxx/xxx xxxx:xxx:xxxx::xxx/xxx 
2017-03-08T22:16:39+01:00 notice netifd[]: wan6 (2145): Command failed: Unknown error
2017-03-08T22:17:01+01:00 info /usr/sbin/cron[3904]: (root) CMD (/usr/bin/rainbow_button_sync.sh)
2017-03-08T22:17:11+01:00 notice netifd[]: wan6 (2145): Command failed: Unknown error
2017-03-08T22:17:43+01:00 notice netifd[]: wan6 (2145): Command failed: Unknown error
2017-03-08T22:18:01+01:00 info /usr/sbin/cron[4423]: (root) CMD (/usr/bin/rainbow_button_sync.sh)
2017-03-08T22:18:01+01:00 info /usr/sbin/cron[4422]: (root) CMD (nethist_stats.lua)
2017-03-08T22:18:12+01:00 warning odhcpd[1715]: DHCPV6 SOLICIT IA_NA from xxxxxxx on br-lan: ok 2a02:xxx:xxx:xxxx::xxx/xxx xxxx:xxx:xxxx::xxx/xxx
2017-03-08T22:18:16+01:00 notice netifd[]: wan6 (2145): Command failed: Unknown error
2017-03-08T22:18:47+01:00 notice netifd[]: wan6 (2145): Command failed: Unknown error
2017-03-08T22:19:01+01:00 info /usr/sbin/cron[4977]: (root) CMD (/usr/bin/rainbow_button_sync.sh)
2017-03-08T22:19:17+01:00 notice netifd[]: wan6 (2145): Command failed: Unknown error
2017-03-08T22:19:48+01:00 notice netifd[]: wan6 (2145): Command failed: Unknown error
2017-03-08T22:20:01+01:00 info /usr/sbin/cron[5239]: (root) CMD (/usr/bin/watchdog.sh)
2017-03-08T22:20:01+01:00 info /usr/sbin/cron[5241]: (root) CMD (nethist_stats.lua)
2017-03-08T22:20:01+01:00 info /usr/sbin/cron[5242]: (root) CMD (/usr/bin/rainbow_button_sync.sh)
2017-03-08T22:20:01+01:00 info /usr/sbin/cron[5243]: (root) CMD (   /usr/bin/notifier)
2017-03-08T22:20:13+01:00 warning odhcpd[1715]: DHCPV6 SOLICIT IA_NA from xxxxxxx on br-lan: ok 2a02:xxx:xxx:xxxx::xxx/xxx xxxx:xxx:xxxx::xxx/xxx
2017-03-08T22:20:14+01:00 warning watchdog[]: Restarted resolver
2017-03-08T22:20:14+01:00 warning watchdog[]: Restarted nethist
2017-03-08T22:20:20+01:00 notice netifd[]: wan6 (2145): Command failed: Unknown error
2017-03-08T22:20:23+01:00 info kresd[5400]: [ ta ] key: 19036 state: Valid
2017-03-08T22:20:23+01:00 info kresd[5400]: [ ta ] next refresh: 68725500
2017-03-08T22:20:50+01:00 notice netifd[]: wan6 (2145): Command failed: Unknown error
2017-03-08T22:21:01+01:00 info /usr/sbin/cron[5850]: (root) CMD (/usr/bin/rainbow_button_sync.sh)
2017-03-08T22:21:22+01:00 notice netifd[]: wan6 (2145): Command failed: Unknown error
2017-03-08T22:21:52+01:00 notice netifd[]: wan6 (2145): Command failed: Unknown error
2017-03-08T22:22:01+01:00 info /usr/sbin/cron[6345]: (root) CMD (nethist_stats.lua)
2017-03-08T22:22:01+01:00 info /usr/sbin/cron[6346]: (root) CMD (/usr/bin/rainbow_button_sync.sh)
2017-03-08T22:22:09+01:00 warning odhcpd[1715]: DHCPV6 SOLICIT IA_NA from xxxxxxx on br-lan: ok 2a02:xxx:xxx:xxxx::xxx/xxx xxxx:xxx:xxxx::xxx/xxx
2017-03-08T22:22:22+01:00 notice netifd[]: wan6 (2145): Command failed: Unknown error
2017-03-08T22:22:54+01:00 notice netifd[]: wan6 (2145): Command failed: Unknown error
2017-03-08T22:23:01+01:00 info /usr/sbin/cron[6840]: (root) CMD (/usr/bin/rainbow_button_sync.sh)
2017-03-08T22:23:26+01:00 notice netifd[]: wan6 (2145): Command failed: Unknown error
2017-03-08T22:23:56+01:00 notice netifd[]: wan6 (2145): Command failed: Unknown error
2017-03-08T22:24:01+01:00 info /usr/sbin/cron[7334]: (root) CMD (nethist_stats.lua)
2017-03-08T22:24:01+01:00 info /usr/sbin/cron[7335]: (root) CMD (/usr/bin/rainbow_button_sync.sh)  

thanks for your help

next question:
where i can activate and control the https redirect?

:smiley:

Welcome to the club! =)
For the https redir see here -> LuCI & Foris should be HTTPS by default

1 Like

thanks so far! i got the redirect up an running

the syslog messages are still bothering me!
another problem seems that i cant access ipv4 addresses or resolv and dns adresse correctly from shell only ip6 ip adresses are pinged and traced without loss

internet seems to work fine at the LAN
any help would be awesoem here

another problem is that i cant open crontab -e ???

# crontab -e
crontabs: No such file or directory
crontabs: mkdir: File exists

Hi n1ete,
the problem is in cron.

To make that work again do - mkdir /etc/crontabs/ and then /etc/init.d/cron restart. This helped me…
Or you can see thread Turris OS 3.6 out now.

1 Like

I have the very same issue.

Can you post your /etc/config/network (remove your username and passwd) and /etc/config/firewall

I create a topic under Ds-lite / dslite IPv4 connection not working, IPv6 working fine - SW help - Turris forum

So this is my /etc/config/network

config interface 'loopback'
        option ifname 'lo'
        option proto 'static'
        option ipaddr '127.0.0.1'
        option netmask '255.0.0.0'

config globals 'globals'
        option ula_prefix 'XXXXXXXXXXXXX'

config interface 'lan'
        option ifname 'eth0 eth2'
        option force_link '1'
        option type 'bridge'
        option proto 'static'
        option netmask '255.255.255.0'
        option ip6assign '60'
        option ipaddr 'XXXXXXXX'

config interface 'wan6'
        option proto 'dhcpv6'
        option _orig_ifname '@wan'
        option _orig_bridge 'false'
        option ifname 'eth1'
        option reqaddress 'try'
        option reqprefix 'auto'

config switch
        option name 'switch0'
        option reset '1'
        option enable_vlan '1'

config switch_vlan
        option device 'switch0'
        option vlan '1'
        option ports '0 1 2 3 5'

config switch_vlan
        option device 'switch0'
        option vlan '2'
        option ports '4 6'

config interface 'XXXXXXXXXX'
        option proto 'dslite'

and here my config/firewall

config defaults
        option syn_flood '1'
        option input 'ACCEPT'
        option output 'ACCEPT'
        option forward 'REJECT'

config zone
        option name 'lan'
        list network 'lan'
        option input 'ACCEPT'
        option output 'ACCEPT'
        option forward 'ACCEPT'

config zone
        option name 'wan'
        list network 'wan'
        list network 'wan6'
        option input 'REJECT'
        option output 'ACCEPT'
        option forward 'REJECT'
        option masq '1'
        option mtu_fix '1'

config forwarding
        option src 'lan'
        option dest 'wan'

config rule
        option name 'Allow-DHCP-Renew'
        option src 'wan'
        option proto 'udp'
        option dest_port '68'
        option target 'ACCEPT'
        option family 'ipv4'

config rule
        option name 'Allow-Ping'
        option src 'wan'
        option proto 'icmp'
        option icmp_type 'echo-request'
        option family 'ipv4'
        option target 'ACCEPT'

config rule
        option name 'Allow-IGMP'
        option src 'wan'
        option proto 'igmp'
        option family 'ipv4'
        option target 'ACCEPT'
config rule
        option name 'Allow-DHCPv6'
        option src 'wan'
        option proto 'udp'
        option src_ip 'fe80::/10'
        option src_port '547'
        option dest_ip 'fe80::/10'
        option dest_port '546'
        option family 'ipv6'
        option target 'ACCEPT'

config rule
        option name 'Allow-MLD'
        option src 'wan'
        option proto 'icmp'
        option src_ip 'fe80::/10'
        list icmp_type '130/0'
        list icmp_type '131/0'
        list icmp_type '132/0'
        list icmp_type '143/0'
        option family 'ipv6'
        option target 'ACCEPT'
config rule
        option name 'Allow-ICMPv6-Input'
        option src 'wan'
        option proto 'icmp'
        list icmp_type 'echo-request'
        list icmp_type 'echo-reply'
        list icmp_type 'destination-unreachable'
        list icmp_type 'packet-too-big'
        option src_port '547'
        option dest_ip 'fe80::/10'
        option dest_port '546'
        option family 'ipv6'
        option target 'ACCEPT'

config rule
        option name 'Allow-MLD'
        option src 'wan'
        option proto 'icmp'
        option src_ip 'fe80::/10'
        list icmp_type '130/0'
        list icmp_type '131/0'
        list icmp_type '132/0'
        list icmp_type '143/0'
        option family 'ipv6'
        option target 'ACCEPT'

config rule
        option name 'Allow-ICMPv6-Input'
        option src 'wan'
        option proto 'icmp'
        list icmp_type 'echo-request'
        list icmp_type 'echo-reply'
        list icmp_type 'destination-unreachable'
        list icmp_type 'packet-too-big'
        list icmp_type 'time-exceeded'
        list icmp_type 'bad-header'
        list icmp_type 'unknown-header-type'
        list icmp_type 'router-solicitation'
        list icmp_type 'neighbour-solicitation'
        list icmp_type 'router-advertisement'
        list icmp_type 'neighbour-advertisement'
        option limit '1000/sec'
        option family 'ipv6'
        option target 'ACCEPT'

config rule
        option name 'Allow-ICMPv6-Forward'
        option src 'wan'
        option dest '*'
        option proto 'icmp'
        list icmp_type 'echo-request'
        list icmp_type 'echo-reply'
        list icmp_type 'destination-unreachable'
        list icmp_type 'packet-too-big'
        list icmp_type 'time-exceeded'
        list icmp_type 'bad-header'
        list icmp_type 'unknown-header-type'
        option limit '1000/sec'
        option family 'ipv6'
        option target 'ACCEPT'
config include
        option path '/etc/firewall.user'

config include
        option path '/usr/share/firewall/turris'
        option reload '1'

config include
        option path '/etc/firewall.d/with_reload/firewall.include.sh'
        option reload '1'

config include
        option path '/etc/firewall.d/without_reload/firewall.include.sh'
        option reload '0'

config rule
        option src 'wan'
        option dest 'lan'
        option proto 'esp'
        option target 'ACCEPT'

config rule
        option src 'wan'
        option dest 'lan'
        option dest_port '500'
        option proto 'udp'
        option target 'ACCEPT'
config include 'miniupnpd'
        option type 'script'
        option path '/usr/share/miniupnpd/firewall.include'
        option family 'any'
        option reload '1'

config zone
        option name 'newzone'
        option input 'ACCEPT'
        option forward 'REJECT'
        option network ' '
        option output 'ACCEPT'

Hope it helps to fix this bug… :smiley:

You need to set a peeraddress for ‘xxxxxx’ interface, otherwise you will never get a IPv4

This is/has to be given to you by your provider (at least in DE)

I am pretty sure that i am provided with an ipv4 address with this network config.
not at home to test it right now…
i saw your config aswell , should i use this as an template for my needs? My German ISP is atm Unitymedia…

You could, but as I said, mine does not work either, at least not reliably. It could also be my Huawei ONT but I can not say. The fritzbox I have works just fine with that one.

My provider is m-net

Are you provided with Credentials from your ISP?

Yes, you need to ask or check the web interface, but they are required by law to give them to you.

yeah, ok there are onkly credentials for the telephone part. every other aspect of the bandwith is provided by the DOCSIS 3.0 Specification

i would love to see a proper network configuration for that case!
My old Router was able to establish a connection by default, that wasnt the case with omnia, and in addition to that i still get this syslog messages… :frowning: