Yes I looked into doing that too!

I tried with a Netgear GS110TP switch which has two SFP ports connected directly to the firewall and it works well. (But I would like the TV not to go through the firewall)

SO I told myself that I was going to install a new router…but finding one that supports my gigabyte connection is a hassle! There is the Ubiquiti Edge Router Lite which supports 1 million packets per second thanks to its hardware acceleration but as soon as you bridge two ports this deactivates the acceleration and in any case it does not do passthrough.

Then there is MikroTik-RB2011UIAS-2HND-IN which has a direct SFP port but the performance is poor…

in short, the purpose of this story is that it makes us buy gear while all they have to do is activate this option! (which, I repeat, was available BEFORE!)

Show original language (French)

What did you put as GBIC of the SFP port?

I use Cisco SG300-10PP switches at home which are also equipped with two SFP ports, but you still need to know the exact type of GBIC to put in them, not to mention that the price of these little adapters is not cheap!

Afterwards it would be enough to make a small VLAN which arrives on my Shuttle or runs my VM which acts as a firewall and that’s it!

Show original language (French)

I used the GBIC from the box, it is compatible with Netgear!

Afterwards, don’t forget to put option 60 when requesting a lease on Vlan10

send vendor-class-identifier “100008,0001,Debian”;

Show original language (French)

Thank you for this information, what is annoying is this “DHCP option 60”, after a quick consultation of my UTM interface, it does not seem possible to specify this option. I guess if this setting is omitted it doesn’t work?

Show original language (French)

I just found the answer on a forum, it seems that it is possible with this manipulation:

edit /var/chroot-dhcpc/etc/ you iface file
add the following line
send vendor-class-identifier VALUE IN HEX;

example:
send vendor-class-identifier 49:50:54:56:5f:52:47;

On the other hand, is the HEX value important? Yes or do you know how to find it?

Show original language (French)

For DHCP Option 60, I found the ID to use on a pfsense Firewall, I don’t know if that helps:

send dhcp-class-identifier “100008,0001,pfSense dhclient 2.1”;

Source: [https://www.skv-net.ch/user/blog1-s-master/entry15-swisscom-glasfaser-mein-ftth-tagebuch-5-update-10-01-2014/] (https://www.skv-net.ch/user/blog1-s-master/entry15-swisscom-glasfaser-mein-ftth-tagebuch-5-update-10-01-2014/)

Show original language (French)

This hexadecimal value is necessary for the All IP product from Swisscom.

The following line should be fine

send vendor-class-identifier 31:30:30:30:30:38:2C:30:30:30:31:2C:55:54:4D;

Show original language (French)
4 days later

Good morning,

I’ve also been sending messages to Swisscom for a while now to add this function to your box routers. Cablcom has this option, and I find it really unfortunate that you’re not doing anything about it.

I have a late Zyxel behind my Box and it’s just crap to do double Nat.

Anyway, I hope this comes to light.

My best regards

PS: This will also be a plus on a commercial level, more customers……….

Show original language (French)
6 days later
5 days later
14 days later

Same for me, I have an ipfire as a firewall proxy server with a virtual environment behind it containing, among other things, a DNS, a mail server. for my mail server, I do not have any prb to send mail to other domains, however to receive them same observation, reception is impossible. The dmz or port forwarding functions of the internet-box are not advanced enough to implement double nating rules. the passthrou would be a big plus.

Show original language (French)

In the end, it would be enough to remove the need to make a DHCP request with a specific Vendor ID… presto, VLAN10 and that’s it…

And for Swisscom, if the customer doesn’t use the provided modem, they don’t give support, that’s it.

Show original language (French)

Hello everyone, I am preparing for the ftth which will arrive at my home in a few months and I see that my concerns are also yours…

For the moment the solution I am aiming for is an SME subscription (are they going to do it to a private one) because the business router supports IP passthrough (with Voip and TV which remains on the router). Exactly what I’m looking for.

If we manage to get our hands on a large business center, could it operate on a line with a private subscription? Or, could Swisscom provide the large business center to private companies in return for something?

Gigius

Show original language (French)

Good morning,

Thank you for your response.

However, what is the current solution to resolve this problem that many people encounter?

Thank you in advance for your prompt response.

Show original language (French)

The solution would be for Swisscom to update the firmware and add the Bridge option, that’s all. It would also be good if someone from Swisscom paid attention to this subject.

Personally I have a mikrotik that nikel works, except for the Swisscom TV which I have not yet managed to configure.

Show original language (French)

Hello Soldier9945,

I really want to test your system which seems well within my budget! Can you recommend a good media converter to use with the GBIC present with the box?

behind my router is a Netgear WNDR3700 with OpenWRT for now, I hope that will be enough Happy smiley and do you know the IGMP settings to make?

Thank you for your help!

Show original language (French)