首页 >>  正文

openwrt配置wan口

来源:baiyundou.net   日期:2024-09-25

作者:o0Mirage0o



前言

如今在IPv4地址资源严重不足的情况下,大家都处于大内网环境中,而且也不是人人都能申请公网IP,这便限制了我们很多乐趣。

好在,现在IPv6越来越普及,各大运营商都默认开通了IPv6,并且只要能分配到IPv6的设备,就是一个公网IP,既然是公网IP就可以通过外网直接访问,这样一来咱们必须得好好利用起来,不然开启了IPv6的意义何在?

具体来说,就是人没在家,可以通过外面的网络,直接访问到家中路由、NAS、Homeassistant等等设备,远程控制,岂不美哉。

先决条件(重要)

很多小伙伴会出现:开启了IPv6,但还是无法在外网通过IPv6地址访问家中设备的情况,这就是家里某个网关防火墙,或者端口转发的问题了。因此,布置并设置好家里的各个网关是很关键的。

下面,梳理一下几种常见家庭网络布局,并说说如何才能达到目的:

1、光猫拨号---硬路由做主路由;

2、光猫拨号---OpenWrt做主路由---硬路由做子路由;

    以上的情况都不推荐,因为这样,光猫其实也充当了路由器的作用,外部数据会先进入光猫再由光猫发给路由器。想要访问家中设备,需要光猫的防火墙放行IPv6入站请求,先不说很多光猫都不支持,就算能支持,到了主路由以后也需要主路由防火墙能放行IPv6入站请求。

3、光猫桥接---硬路由做主路由---OpenWrt做子路由或旁路由

    这种情况需要确保硬路由的防火墙能放行IPv6入站请求或者硬路由支持IPv6端口转发,否则依然无法通过公网IPv6访问到家中设备,现在市面上中高端路由器一般都默认关闭了IPv6防火墙,还是很容易就能实现咱的目的。

4、光猫桥接---OpenWrt做主路由---硬路由做中继只负责家中WIFI

    我家就是这样布置的,只需要配置OpenWrt就能达到目的。当然,OpenWrt作为主路由的情况下需要确保其不关机,不然你不在家的时候,你家里人用不了网。


综上所述,想实现通过IPv6访问家中设备,先决条件为以下几点:

  1. 光猫桥接,大部分光猫可以通过拨打宽带运营商电话,让客服远程修改桥接模式。

  2. 硬路由作为主路由的情况下,确保你的硬路由防火墙能放行IPv6入站请求,或者硬路由支持IPv6端口转发。

  3. OpenWrt作为主路由的情况下,需要将硬路由改为中继模式,并且关闭DHCP,不然会出现主路由下设备无法访问子路由下设备的情况。


本文将介绍OpenWrt作为主路由时,如何开启IPv6,并在开启后,通过两种方法实现外网访问家中设备。

开启IPv6

    接口 --- LAN


    接口 --- IPV6

   


    接口 --- WAN

当OpenWrt为子路由或旁路由时,不用配置WAN口,可以跳过本步骤。


    接口 --- WAN6

当OpenWrt为子路由或旁路由时,不用配置WAN6口,可以跳过本步骤。

    DHCP设置


    防火墙


通过以上配置,OpenWrt中已成功开启了IPv6,可以在网络---接口中查看:

上图可见,红框中分别是WAN6、LAN、IPV6这几个接口获取到的公网IPv6地址。

我一般使用IPV6接口获取到的地址来用。

电信ipv6是240e开头的。

移动ipv6是2409开头的。

联通ipv6是2408开头的。


电脑开启IPv6


通过IPv6地址访问OpenWrt

下面我们尝试使用IPv6地址直接访问试试看,在浏览器中打开:

注意,需要用中括号“[]”包裹住你的IPv6地址。

但是,各位请试试,在手机上关闭WIFI,使用移动网络,访问你的IPv6地址。。。极有可能是无法访问状态,不必担心,下面介绍两种解决方案。


一、配置防火墙(不推荐)

完成后记得重启OpenWrt。

通过配置防火墙的接受入站、以及接受转发即可实现通过公网IPv6访问了,但是这样设置的话会接收全部入站请求和转发,将你所有能获取到IPv6的设备全部暴露在公网,很不安全,所以不推荐。

二、通过软件Lucky配置端口转发

这款软件支持IPv6&4端口转发、IPv6&4 动态域名、自动配置防火墙规则、网络唤醒等服务,常用的工具可以在一个软件中实现,还是比较不错的。

当然,还可以通过ssh链接OpenWrt使用命令行编辑防火墙规则,这个对普通人不太友好,后面有需要的话再出一篇文章介绍。


效果

到这里,就完成了开启Ipv6并配置端口转发,成功从外网访问到家中设备。

可是还有问题,公网IPv6地址每隔一段时间或者重启路由器就会发生变化。一旦改变,我们又身在外面时,原来保存的地址也就无法访问了。

这时就需要使用ddns工具,实时的将我们的IPv6地址解析到域名。 然后我们直接访问域名就好。


DDNS绑定IPv6

首先需要有一个自己的域名,免费的域名挺多,但是会有一些限制,不介意的小伙伴的可以自己去申请。

或者在阿里云、腾讯云、新网、万网这些平台购买一个域名,并且备案。价格也不贵,最便宜的也才几块钱一年。但是需要注意的是购买域名的时候一定要确认你的域名是否支持备案!

下面以阿里云的域名为例:

获取accessKeyId和accesssKeySecret

先登录阿里云控制台,然后:

解析设置

设置ddns

设置完成后,通过域名访问试试:

这是路由器默认禁止80端口的访问,想要开启的话,

需要使用ssh登录OpenWrt,然后修改 vi /etc/config/uhttpd 文件,

将option rfc1918_filter 1改为option rfc1918_filter 0,保存后即可。

但是不推荐开启,个人比较倾向于使用别的端口进行转发。

对各个服务进行端口转发设置


最终效果


","force_purephv":"0","gnid":"992a626ef295910f9","img_data":[{"flag":2,"img":[{"desc":"","height":"806","title":"","url":"https://p0.ssl.img.360kuai.com/t01d8ab07cbbe9242de.jpg","width":"600"},{"desc":"","height":"557","title":"","url":"https://p0.ssl.img.360kuai.com/t01af81a291fdd0b9f0.jpg","width":"600"},{"desc":"","height":"698","title":"","url":"https://p0.ssl.img.360kuai.com/t01dd6e1e1c1334ce16.jpg","width":"600"},{"desc":"","height":"646","title":"","url":"https://p0.ssl.img.360kuai.com/t01962ca03788576722.jpg","width":"600"},{"desc":"","height":"512","title":"","url":"https://p0.ssl.img.360kuai.com/t0151ba7dcd85f899ab.jpg","width":"600"},{"desc":"","height":"561","title":"","url":"https://p0.ssl.img.360kuai.com/t017fff4c669c867090.jpg","width":"600"},{"desc":"","height":"445","title":"","url":"https://p0.ssl.img.360kuai.com/t010ffadf3b413ef3e8.jpg","width":"600"},{"desc":"","height":"545","title":"","url":"https://p0.ssl.img.360kuai.com/t0145796f18c5e46bd1.jpg","width":"600"},{"desc":"","height":"492","title":"","url":"https://p0.ssl.img.360kuai.com/t0130a97cd352c60603.jpg","width":"600"},{"desc":"","height":"644","title":"","url":"https://p0.ssl.img.360kuai.com/t019815814231cabd04.jpg","width":"600"},{"desc":"","height":"310","title":"","url":"https://p0.ssl.img.360kuai.com/t01077e179c915a1f86.jpg","width":"600"},{"desc":"","height":"487","title":"","url":"https://p0.ssl.img.360kuai.com/t01c464dd6d435bc82f.jpg","width":"600"},{"desc":"","height":"367","title":"","url":"https://p0.ssl.img.360kuai.com/t01b85f630c21464c9a.jpg","width":"600"},{"desc":"","height":"508","title":"","url":"https://p0.ssl.img.360kuai.com/t0139b86f56f4eb4224.jpg","width":"600"},{"desc":"","height":"360","title":"","url":"https://p0.ssl.img.360kuai.com/t011be81094cf73f7bb.jpg","width":"600"},{"desc":"","height":"489","title":"","url":"https://p0.ssl.img.360kuai.com/t012f21088e2ca3dcfe.jpg","width":"600"},{"desc":"","height":"695","title":"","url":"https://p0.ssl.img.360kuai.com/t01d54ae9aa26b3b44a.jpg","width":"600"},{"desc":"","height":"543","title":"","url":"https://p0.ssl.img.360kuai.com/t01655e7fefd0dd3c33.jpg","width":"600"},{"desc":"","height":"645","title":"","url":"https://p0.ssl.img.360kuai.com/t017be3d0f4f257c97d.jpg","width":"600"},{"desc":"","height":"1727","title":"","url":"https://p0.ssl.img.360kuai.com/t0189c94295b79577a3.jpg","width":"600"},{"desc":"","height":"637","title":"","url":"https://p0.ssl.img.360kuai.com/t01f7dac5c0f5a5c2be.jpg","width":"600"},{"desc":"","height":"319","title":"","url":"https://p0.ssl.img.360kuai.com/t01c2dfb61a12a32418.jpg","width":"600"},{"desc":"","height":"450","title":"","url":"https://p0.ssl.img.360kuai.com/t0143eae6c455a28fbd.jpg","width":"600"},{"desc":"","height":"352","title":"","url":"https://p0.ssl.img.360kuai.com/t0128522256eee26dd3.jpg","width":"600"},{"desc":"","height":"634","title":"","url":"https://p0.ssl.img.360kuai.com/t01ea3e7ee58377003b.jpg","width":"600"},{"desc":"","height":"248","title":"","url":"https://p0.ssl.img.360kuai.com/t01ea6e52015e885f41.jpg","width":"600"},{"desc":"","height":"586","title":"","url":"https://p0.ssl.img.360kuai.com/t0128ec85acb2ec0d27.jpg","width":"431"},{"desc":"","height":"597","title":"","url":"https://p0.ssl.img.360kuai.com/t013d9123778c7316b9.jpg","width":"422"},{"desc":"","height":"450","title":"","url":"https://p0.ssl.img.360kuai.com/t018d0215452047d585.jpg","width":"508"},{"desc":"","height":"402","title":"","url":"https://p0.ssl.img.360kuai.com/t01103f612a6d65bf5d.jpg","width":"600"},{"desc":"","height":"398","title":"","url":"https://p0.ssl.img.360kuai.com/t016ba64953745f07e9.jpg","width":"600"},{"desc":"","height":"345","title":"","url":"https://p0.ssl.img.360kuai.com/t01c65c55c911bfa8ad.jpg","width":"600"},{"desc":"","height":"342","title":"","url":"https://p0.ssl.img.360kuai.com/t01b53ac2f052942055.jpg","width":"600"},{"desc":"","height":"271","title":"","url":"https://p0.ssl.img.360kuai.com/t01563d6ce45dc4a50d.jpg","width":"600"},{"desc":"","height":"389","title":"","url":"https://p0.ssl.img.360kuai.com/t01d1f586ea49a199c9.jpg","width":"600"},{"desc":"","height":"638","title":"","url":"https://p0.ssl.img.360kuai.com/t01fedf5ee059f740bc.jpg","width":"600"},{"desc":"","height":"298","title":"","url":"https://p0.ssl.img.360kuai.com/t01548e971736f160f6.jpg","width":"600"},{"desc":"","height":"524","title":"","url":"https://p0.ssl.img.360kuai.com/t01f5d8dc8c81eee4b5.jpg","width":"600"},{"desc":"","height":"445","title":"","url":"https://p0.ssl.img.360kuai.com/t01f03cea59e6ca613d.jpg","width":"355"},{"desc":"","height":"393","title":"","url":"https://p0.ssl.img.360kuai.com/t01d2de2942134515e9.jpg","width":"600"},{"desc":"","height":"479","title":"","url":"https://p0.ssl.img.360kuai.com/t01d96b2297281bc9f9.jpg","width":"600"},{"desc":"","height":"485","title":"","url":"https://p0.ssl.img.360kuai.com/t01ee6f99424452b7fb.jpg","width":"508"},{"desc":"","height":"368","title":"","url":"https://p0.ssl.img.360kuai.com/t01d9d518945a758524.jpg","width":"600"},{"desc":"","height":"546","title":"","url":"https://p0.ssl.img.360kuai.com/t019d1c5ce2c3a0ecf3.jpg","width":"600"},{"desc":"","height":"784","title":"","url":"https://p0.ssl.img.360kuai.com/t015f49603553e84192.jpg","width":"600"},{"desc":"","height":"448","title":"","url":"https://p0.ssl.img.360kuai.com/t01e17f0b615bda889d.jpg","width":"600"},{"desc":"","height":"933","title":"","url":"https://p0.ssl.img.360kuai.com/t017c4ea15576316404.jpg","width":"600"},{"desc":"","height":"704","title":"","url":"https://p0.ssl.img.360kuai.com/t01019ff34897c1eac4.jpg","width":"600"},{"desc":"","height":"305","title":"","url":"https://p0.ssl.img.360kuai.com/t01e657bfe6907634d7.jpg","width":"592"},{"desc":"","height":"474","title":"","url":"https://p0.ssl.img.360kuai.com/t0151c97af948094a93.jpg","width":"476"},{"desc":"","height":"492","title":"","url":"https://p0.ssl.img.360kuai.com/t01d1b9c6e2850f4ba1.jpg","width":"600"},{"desc":"","height":"454","title":"","url":"https://p0.ssl.img.360kuai.com/t01304b351d269baa6a.jpg","width":"600"},{"desc":"","height":"435","title":"","url":"https://p0.ssl.img.360kuai.com/t019e7b93a048469608.jpg","width":"600"}]}],"original":0,"pat":"art_src_1,fts0,sts0","powerby":"hbase","pub_time":1677995957000,"pure":"","rawurl":"http://zm.news.so.com/a26c56549ad8bd989de1b0057c86f956","redirect":0,"rptid":"51d8ce5a0d7d85a9","rss_ext":[],"s":"t","src":"什么值得买","tag":[{"clk":"kdigital_1:子路","k":"子路","u":""},{"clk":"kdigital_1:路由器","k":"路由器","u":""}],"title":"【AIO】All in one 家庭服务中心 篇六:OpenWrt开启IPv6,并实现通过外网访问家庭服务中的NAS、HomeAssistant、OpenWRT等设备

阮桦颖2931如何用虚拟机构建OpenWRT软路由 -
宿卫俩13450515257 ______ 你好,在VMware上安装openwrt需要注意2点: 第一点:在创建虚拟机时vmware的版本不要太高,选择6.5-7.x即可,如图所示: linux内核版本选择2.6.x 第二点就是虚拟磁盘的类型,必需选择IDE,如图所示: 其他的虚拟机按照默认设置即可.telent连接进去 配置就行了 首先进入字符界面,然后输入 cd /etc/config 进入 /etc/config 目录 输入vi network,进行network文件配置 然后增加wan接口、如果你的wan是DHCP、则添加如下内容 config interface 'wan' option ifname 'eth0' option

阮桦颖2931WDR4300 刷了openwrt后 怎么设置 双wan口 我一个是 电信 一个是移动 这款支持 双wan吗 -
宿卫俩13450515257 ______ (一)首先在Network---Switch里面设置如下:左边的VLAN ID对应的就是“eth0.1、eth0.2、eth0.3...没有VLAN ID 3就自己添加,Port2对应WDR4310原本的物理WAN口接的移动20M光宽带,Port3是我自己设置的WAN2口(靠近WAN口的原有LAN口)接电信4M ADSL(注:电信线路可以多拨),Port5是接的下行千兆交换机,可以不理会 (二)再到Network---Interfaces里面add new interface--选择前面新建的VLAN ID 3也就是eth0.3 (三)其余的pppoe账号设置不需要我多说了吧

阮桦颖2931因单位的交换机使用的是捆绑IP,上网都要设置为静态IP,请教各位openwrt中的wan口的mac地址, -
宿卫俩13450515257 ______ 遇到了和你一样的问题,在网上搜索了半天,还真没有好的解答,只好自己潜心研究,终于搞定:1、进入WAN口的设置,将你需要的MAC地址填入“克隆MAC地址”栏中;2、填完你会发现在你截图的页面中,显示的还是00:00:00:00:00:00;3、进入WAN6口的设置,和WAN口设置相同,把同样的MAC地址填入“克隆MAC地址”栏;4、保存应用就行了!

阮桦颖2931openwrt接入点ap功能怎么用 -
宿卫俩13450515257 ______ 上层 DHCP 服务) –有线–> (openwrt) –无线–> (笔记本,手机) bridged AP 官方配置 wiki : http://wiki.openwrt.org/doc/recipes/bridgedap 配置网络 配置无线 关闭 dnsmasq home 针对家里的上层拨号路由器 (192.168.1.1) 配置: config ...

阮桦颖2931求教下 中继 并且多账号叠加,能否用openwrt实现 -
宿卫俩13450515257 ______ openwrt作中继还是满简单的,1.先设置wifi接口, ssid 无线频道,无线密码,加密方式跟源头路由一致, 接口从默认的lan改为wan,或创建一个新的,如wan1,接入方式改为sta(客户端)2.设置wan接口, 如果源路由提供dhcp,这里就用...

阮桦颖2931openwrt怎么设置才能使用IPV6 -
宿卫俩13450515257 ______ Ipv6的网络现在基本只有部分高校的教育网才能连接上的.其他的网络暂时还未普及,只有Ipv4.你的是学校的网络不?如果不是,那就没办法了…… 如果是,而且登不上的话,你试一下这个方法:按 win+R组合键,调出 ”运行 “对话框,输入”CMD“,再在弹出的对话框里面输入 "ipv6 install",然后按一下Enter键,看能不能加载Ipv6网络.还不行的话,你只能去你们的学校网络中心问一下,有没有开通Ipv6通道的网络了.当然,现在也有一些专门的把Ipv4转Ipv6的软件,你百度一下就有了.不过这些都不好用,我用过一个,速度太渣了,从此没用过.都是回学校才用v6的.good luck to you ~望采纳

阮桦颖2931openwrt的wan口ip设置怎么回事 -
宿卫俩13450515257 ______ 就是从你上级路由获得的ip地址

阮桦颖2931怎么判断路由器是否为openwrt系统 -
宿卫俩13450515257 ______ 可以到openwrt官网查询支持openwrt的路由器,OpenWrt 可以被描述为一个嵌入式的 Linux 发行版,(主流路由器固件有 dd-wrt,tomato,openwrt三类)而不是试图建立一个单一的、静态的系统.以TP-LINK WR703N 为例简单介绍一下刷openwrt...

阮桦颖2931如何提高openwrt的nat速度 -
宿卫俩13450515257 ______ MW4530R刷了TPLINK 4310的build 0809固件.测试了一下硬件NAT能带来多大的速度提升. 测试环境,两台配置一样的macbook pro 一台接在LAN口,一台接在WAN口. 手工配置好环境之后使用nc进行测试. 在LAN的机器上使用cat /dev/...

阮桦颖2931求助,OPENWRT如何在一级路由访问二级路由? -
宿卫俩13450515257 ______ 如果是openwrt官方的默认设置,用二级路由器访问一级路由器本来就可以如果要用二级路由器下的电脑访问一级路由器,要设置电脑的路由表从一级访问二级,要在二级路由器的防火墙设置里,允许二级路由器接收wan区域的入站数据(默认不允许)从外网访问二级,要设置客户端路由表,设置一级路由器允许wan区域到lan区域的转发,再加上上一行的设置A路由器LAN下的电脑如何访问B路由器LAN下的电脑,要设置B路由器允许wan区域到lan区域的转发,再加上端口转发的设置

(编辑:自媒体)
关于我们 | 客户服务 | 服务条款 | 联系我们 | 免责声明 | 网站地图 @ 白云都 2024