!tCyGickeVqkHsYjWnh:nixos.org

NixOS Networking

900 Members
on your Router! Declaratively manage your switching, routing, wireless, tunneling and more.265 Servers

Load older messages


SenderMessageTime
7 Feb 2026
@k900:0upti.meK900Starting to have a design formulating in my head23:03:55
@k900:0upti.meK900I think23:03:56
@k900:0upti.meK900Step 1, RFC42 the thing23:04:03
@k900:0upti.meK900 Step 2, services.miniupnpd.firewallIntegration or whatever, which requires filterForward and just makes it write to the nixos-fw table 23:04:39
@k900:0upti.meK900Step 3, probably turn that on by default?23:04:56
@zimward:zimward.moezimward joined the room.23:18:56
9 Feb 2026
@imincik:matrix.orgIvan Mincik (imincik) changed their profile picture.06:06:05
@amy:catgirl.cloudA. (they/them) changed their display name from Amy to A. (they/them).18:27:00
@jlamur:matrix.orgJules Lamur joined the room.19:42:45
@luizribeiro:matrix.org@luizribeiro:matrix.org left the room.21:32:22
10 Feb 2026
@autiboy:matrix.mautiweb.netAutiboy changed their profile picture.02:59:31
@autiboy:matrix.mautiweb.netAutiboy changed their profile picture.03:00:17
@mon:tchncs.depneumatic changed their display name from ribosomerocker to pneumatic.10:28:51
@acidbong:envs.netAcid Bong joined the room.12:09:45
@acidbong:envs.netAcid Bongwhy does Dnsmasq service add a user and a group, but not use them?12:36:02
@acidbong:envs.netAcid Bongoh, it uses a CLI argument, got it12:42:28
@nazarewk:matrix.orgkdn

got a weird issue after setting up VLANs over ~7 different devices: when connected through AP that has VLAN 3547 some (eg: facebook works, hacker news dont) of the SSL (HTTPS) handshakes keep timing out and are retried in a loop, connecting to the same switch over ethernet works just fine

there is basically: AP (EAP773) -> zyxel switch -> mikrotik switch -> openwrt router (LAN on 3547)

13:12:45
@nazarewk:matrix.orgkdnthe working/not working set of domains seem to be consistent across devices (laptop, phone etc.)13:13:23
@molly:matrix.flyingcircus.ioMolly Millerthat sounds like it could be an mtu problem13:14:53
@nazarewk:matrix.orgkdnI don't think I have modified it anywhere, should be default 1500 all the way13:16:26
@nazarewk:matrix.orgkdnis anything (VLANs?) in such setup chewing through MTU?13:16:58
@molly:matrix.flyingcircus.ioMolly Milleri don't think so, i haven't ever seen similar problems when working with vlans, but tls handshakes timing out weirdly is often a symptom of mtu problems13:21:46
@molly:matrix.flyingcircus.ioMolly Millerthe sites that do and don't work, are there any patterns to those that do or those that don't?13:22:23
@molly:matrix.flyingcircus.ioMolly Millerespecially IPv4/IPv613:22:26
@me:m4rc3l.deMarcel Otherwise you could trz to use traceroute (or tracepath) to check if there is a difference in the mtu to the target host. I always forget if traceroute or tracepath also determinates the mtu. 13:25:12
@nazarewk:matrix.orgkdnwill check, I could issue pings of specific sizes to pinpoint at which connection the issue occurs?13:26:47
@molly:matrix.flyingcircus.ioMolly Milleryes, that's an option13:30:16
@nazarewk:matrix.orgkdn so curl -v https:// works for facebook.com, doesn't for news.ycombinator.com & nc.nazarewk.pw (my Hetzner nextcloud) 13:32:48
@nazarewk:matrix.orgkdn ping -s XXXX nc.nazarewk.pw seems to work fine between 1200 and 1700 13:34:56
@nazarewk:matrix.orgkdn * ping -s XXXX nc.nazarewk.pw seems to work fine between 1200 and 1700 over IPv6, let's try other options 13:35:10

Show newer messages


Back to Room ListRoom Version: 6