My router arrived just before Thanksgiving so I had a few days to get to know it. I’ve been reading the challenges people had on this forum but decided to dive straight in. I’ve been using OpenWRT for many years so have no issues with LuCI, UCI or generally directly editing the config files. I also had a mature, working setup on my WRT1900AC and suffered the early days of OpenWRT on that device too. I was an early backer of this device and appear to be one of the last to recieve the device. I guess that’s because I checked the 2GB option.
In the hope that the last couple of days can help both Turris get their act together and others get their routers configred to their liking, here’s what I did:
Basic Config:
-
Wireless - off ( I’m running this as a pure wired device since it sits in a 19" rack in the basement )
-
VLANs: wifi (eth2/Port4) , DMZ(eth0.4/port 1) , Lan (eth0.3/port0), each with DHCP ranges, all based on 192.168.YY.XX / 24. I left the original vlan configs alone and set the two new ones with untagged on egress and tagged at the CPU. These feed into an external managed switch and any trunking is done at the managed switch.
-
OpenVPN using a previous config
-
mSata installed in the ‘CPU PCI slot’. Mounted as /mnt/sda1 (though also automounts for some reason - need to fix that). This needed to be an ext4 fs rather than xfs but I think this is more of an OpenWRT issue than Turris’
-
DHCP and DNS being served through dnsmasq ( I’m too lazy to go reconfigure kresd etc right now and had a whole bunch of static IP addresses served to known devices in my house)
-
installed a UART->USB serial connector (not the ‘hacker pack’)
-
Firewall: Because of the VLANs, NAT setups and years of firewall tweaking, I copied over the config from the previous router, edited a few settings and use that to kick start the firewall on the Omnia.
I disabled:
- unbound, kresd - these were conflicting with port 53 and blocking dnsmasq starting. Disabling them within the startup config didn’t seem to make a difference so I deleted the init files ( See above about being lazy )
- auto updater - seems that there are too many issues right now so that’ll stay off until I see positive news on the forum.
- Wifi - see above. I left the cards in but they’re not in use. No antenna on the unit either.
I added:
- snmpd - all devices in my house are monitored
- vnstat to log network traffic ( overkill since nagios does this for me but hey, the router has the power)
- collectd ( but I can’t get this to work)
- DDNS-scripts and configured them to use my DDNS provider. I probably had to add bind and tools to make these work due to compilation options for BusyBox.
I modified:
- Other than the disables above, I changed the wondershaper settings to meet the cable speeds (200d/10u), DNS forwarding (8.8.8.8)
- LED settings - Power to red, all indicators to green, heartbeat on USR1. It looks like PCI3 automatically gets set to blink on access with the mSata installed.
- Changed network listening addresses for sshd and httpd to keep them ‘inside’ rather than listening on all addresses.
After all that, what am I seeing?
- A fast router that is delivering the same speeds to the outside world as my WRT1900AC. Some might ask why I bothered changing given the similarities in hardware… I like to tweak and hack and I liked the metal case
- Stability - router so far has been great. I know it’s a couple of days but with the traffic that goes through it, it’s proving solid.
- Secure - portscans show it blocking external traffic as I’d expect
- Temp: a toasty 70 degrees celcius ( the rack is about 18 celcius ambient and the Omnia sits on a metal tray though those rubber feet will likely keep it insulated).
In reading this it becomes clear why there’s a polarized crowd on the forum, I got everything set up to my liking by basically turning off most of the Turris ‘value add’ and going back to my true OpenWRT roots which isn’t what we all hoped for. That however, is the beauty of the hardware. Once any necessary drivers are upstreamed, I’ll prob flash the device with a custom build.
Do I like the hardware so far? Yes. Am I blown away with Turris’ value add? Nope.
Hope this helps someone.