Cant ping or SSH into my raspberry pi


Recommended Posts

I have just changed my router recently from a sky stock model, to a TP link VR2800. All devices on my network appear to have adjusted ok to the new router with the exception of my raspberry pi. I am not sure if what it is doing now is correct behaviour, but its certainly different to what it was previously. Let me explain.

 

My raspberry pi is a dedicated torrent downloading device, hardwired, which I have given a static IP to .37.  I have Open VPN installed with a connection to IPVanish. I have Transmission installed to download my favourite linux distros, and I can remotely access the device from my phone as I have forwarded port 9092 to 192.169.0.37 (raspberry pi address).  This setup has been working flawlessly on my old router \nd my now new router. Howver,  I can now no longer SSH in to it, nor ping it.

 

I can see the raspberry pi on my router dashboard with the right IP address assigned, but I am unable to ping the device from either my laptop or my phone. Would the VPN on the raspberry pi prevent me pinging?

My torrent box actually seems to be working as expected, however, my issue is I cannot now SSH into it in anyway shape or form. I don’t even get to the username and password. its like SSH has been disabled by PI, but when  I checked, its still on. I am still finding my feet with my router, but is it possible that the new router is blocking me from SSH? Or is it possible that the VPN is blocking me SSH in to it? I never had an issue with SSH like this on my old router.

 

Any help would be gratefully received.

 

Thanks.

Hi mate. Well, I think I did! But let me see if I can do what you suggest. The /24 is a submask of 255.255.255.0, right? My router is definitely 192.168.0.1 as it was before. 

 

 

Now, I'm running retropie so it will boot straight into that splashscreen. You wouldn't know how I could do as you suggest, would you? 

Here is the thing - your router has ZERO do to with you access it from another machine on the same network..   ZERO!!  Firewall running on pi?

 

Example

your router is 192.168.0.1/24

so you have 2 machines on this network

192.168.0.42/24

and say

192.168.0.37/24

 

When .42 wants to talk to .37 your router could BE OFF!!  Has nothing to do with the conversation..

 

Are your clients both wired or wireless?  Your new router might have say AP isolation on, which prevents wireless from talking to wired, or wireless devices talking from talking to each other, etc.  When you ping the pi IP from your client, do you even get back its mac address?  Look in your clients arp table.

 

edit:  Well you can not turn if off if also your switch or providing wifi ;)  But you get my meaning I hope.

can you try from something wired, is your wifi set to "guest" mode they also would not be able to access wired devices.

 

I would think you should be able to plug your laptop into a wire.

If you set the IP static on the Pi, have you checked that the .37 IP address doesn't fall into the DHCP scope used by the new router? It might have handed out that IP address to another client on the network causing a conflict

My DHCP starts from 0.100 up to 0.254 and my pi is static on 0.37. 

 

I'm now starting to wonder if I was only able to ssh the pi previously with its VPN enabled because of the sky DNS issue I was having. Like a by chance scrnerio. Maybe, as Budman says, this is now expected behavior. 

 

My thoughts today are:

 

Wondering if its possible to run the VPN on the router instead of the pi, removing it completely from the pi. In my head (not sure if this is even possible) could I configure the routers VPN to operate for either a set range of local IPs, say 0.30 to 0.40,or allow it be active for a specific subnet only, 1.0 to 1.254? Then change the static ip of router to 1.37? I don't particularly want the rest of my devices /traffic to sit behind a vpn. 

 

Also Budman. No difference hardwiring the laptop. Still cannot ping. Should have mentioned, i also have a NAS with a static ip of 0.26 which doesn't currently give me any issue. Pingable from both wired and wireless devices. 

Well turn off the vpn on you pi, can you now get to it?

 

What router do you have - you can for sure run vpn on router and then just policy route what devices on your network you want to use the vpn..  This is clicky cickity on say pfsense.

Seems like a logical thing to do, and I would have done that earlier however I currently not sure I can. The VPN starts automatically with a script when ever the pi it boots up., therfore I'd have done this via an ssh command previously. I think I will need to reimage the raw retropie OS on to its sd card, and then ssh back in all my code with the exception of the VPN. Not a huge task but will take me a few hours in-between family life. 

 

It's a TP link Archer vr2800. Would welcome your thoughts on the art of the possible regards the VPN implementation on this device. My VPN provider is Ipvanish

 

Thanks mate 

That is gateway device is it not?  Ie modem/router combo - I doubt it has such functionality, and you prob can not run 3rd party firmware that would support it.

 

Can you not console in to the pi, or just use a keyboard and mouse to interact with it to turn off the vpn?  Maybe it block it from access vpn, or disconnect it from the internet network for a while to disable the script?

Nope not if you want to policy route some clients behind to a vpn service.  Can you not just fire up a different router?  You have anything you can run pfsense on, or box you can setup VMs on that could be your router?

 

Also that they still over a PPTP as vpn server is scary!  That has not been secure in over 5 years for sure..   prob more like 7, 2012 is when it came apart I do believe..

 

From that interface sure looks like you can put it into bridge mode and just run a router behind it.

  On 19/09/2019 at 13:35, rageagainstmachine said:

Would I not therfore be better just returning it and buying a cheaper modem, and separate router? What parts can you recommend mate. Its needs to be capable of MER (option 61), for sky 

 

 

Expand  

yes. for this and a few other reasons I always recommend having the router separate from the modem.

 

Main reasons are:

  1. Combos tend to be more locked down as you've noticed
  2. Combos don't get as frequent updates and can easily be left unpatched when a security flaw is found
  3. Combos tend to have more of a bottleneck as well compared to separating them

Get a basic modem that's compatible with your service provider and a router capable of using OpenWRT and your possibilities will be almost endless :)

Asus routers are also great as there is an extended firmware based on the official one called Merlin and it adds a bunch of useful features and bug fixes while keeping the native interface.

  On 19/09/2019 at 13:44, Brandon H said:

Get a basic modem that's compatible with your service provider and a router capable of using OpenWRT

Expand  

What about a Netgear DM200 Modem with an Asus RT-AC86U router?

on a little research it looks like the ASUS routers support VPN but only OpenVPN; if that protocol works for your VPN then that router should work splendidly for you with the Merlin OS

https://www.asuswrt-merlin.net/about

 

it looks like the newer Asus routers don't support full 3rd party firmwares like OpenWRT though so if OpenVPN doesn't work for you you may want to look into another router brand like Netgear

 

for a similar price it looks like the Netgear Nighthawk X6 has good OpenWRT support :)

 

https://www.amazon.com/R8000-100NAS-Nighthawk-Tri-Band-Ethernet-Compatible/dp/B00KWHMR6G/ref=sr_1_3?keywords=netgear%2Br8000&qid=1568906256&s=gateway&sr=8-3&th=1

https://openwrt.org/toh/hwdata/netgear/netgear_r8000

I would not suggest any of those soho routers, even if they support 3rd party to be honest... Get a real router, and then AP.. Yeah its even more separation.

 

Something like the sg1100 would be an entry level router.. $179 (price went up)

https://www.netgate.com/solutions/pfsense/sg-1100.html

 

Then a real AP, say uap-ac-lite or pro 80$ for the lite.

 

Then switch that can do vlans, say $40...

 

Now your talking $300...   But there would be pretty much nothing you couldn't do.

  • Like 2
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Posts

    • These SSDs from Crucial, SanDisk, and Western Digital are selling at great prices by Fiza Ali Amazon US is currently offering a wide range of solid‑state drives at attractive prices, covering both internal and portable options to meet diverse storage needs. So, whether you're looking to expand your laptop's storage, speed up your desktop, or carry large files on the move, these discounts make it easier to secure reliable SSD technology without exceeding your budget. The 1TB Crucial BX500 is a 2.5‑inch SATA III solid‑state drive offering a maximum interface speed of 6Gb/s. In terms of performance, the drive achieves sequential read speeds of up to 540MB/s and sequential write speeds of up to 500MB/s. It is rated for an endurance of 360TB total bytes written (TBW). 1TB Crucial BX500 Internal SSD: $56.99 (Amazon US) - 40% off The 2TB Crucial P3 Plus is an NVMe SSD in the M.2 2280 form factor, utilising a PCIe Gen 4 ×4 interface. It delivers sequential read speeds of up to 5,000MB/s and sequential write speeds of up to 4,200MB/s. Rated for 440TBW, it offers durable performance for everyday and professional use alike. 2TB Crucial P3 Plus NVMe SSD: $113.99 (Amazon US) The 4TB Crucial X10 portable SSD features a USB 3.2 Gen 2x2 interface, supporting data transfer speeds of up to 20Gb/s. The drive delivers sequential read speeds of up to 2,100MB/s, making it suitable for tasks such as video editing, file transfers, and system backups. 4TB Crucial X10 Portable SSD: $246.99 (Amazon US) - 38% off The 2TB SanDisk Extreme Portable SSD comes equipped with a USB 3.2 Gen 2 interface (backwards compatible with USB 3.0 and USB 2.0). It delivers sequential read speeds of up to 1 000 MB/s, promising rapid file transfers and game loading times. Designed, tested, and approved for use with PlayStation 5 consoles, this rugged SSD lets you archive and restore game libraries rapidly. It is IP55‑rated for water and dust resistance as well. 2TB SanDisk Extreme Portable SSD: $178.01 (Amazon US) - 26% off The 1TB Western Digital Blue SA510 SSD connects via SATA III (6Gb/s). It delivers sequential read speeds of up to 560MB/s and write speeds up to 520MB/s, with random performance rated at 90,000 IOPS for reads and 82,000 IOPS for writes. Built on WD’s 3D NAND technology, it carries a 400TBW endurance rating and is backed by a five‑year limited warranty. Finally, it operates safely between 0°C and 70°C (–55°C to 85°C when powered down). 1TB Western Digital WD Blue SA510 Internal SSD: $63.17 (Amazon US) - 26% off This Amazon deal is US-specific and not available in other regions unless specified. If you don't like it or want to look at more options, check out the Amazon US deals page here. Get Prime (SNAP), Prime Video, Audible Plus or Kindle / Music Unlimited. Free for 30 days. You can also check out other SSD deals here. For hard disk drives, you can head over to our HDD deals section to see if anything from there matches your requirements. Make sure you also browse through Amazon US, Amazon UK, and Newegg US to find some other great tech deals. As an Amazon Associate, we earn from qualifying purchases.
    • Look at the fingers especially round the cups, you’d think A needs to add the I together
    • There are too many people doing nothing and just cruising at MS because of how the previous culture was (rest and vest).
    • AMD Ryzen AM4 16-core 5900XT processor has never been priced cheaper by Sayan Sen While AMD's newest processor platform with DDR5 and PCIe 5.0 goodness is AM5, the preceding Socket AM4 continues to be a great option for gamers shopping on a lower budget. One of the most powerful AM4 desktop chips, the 16-core Ryzen 9 5900XT, is currently priced at the lowest ever at just $230 (purchase links down below). The Ryzen 7 5900XT is based on the Zen 3 architecture supports DDR4, PCIe Gen4, and offers very good performance in both gaming and productivity. While users may not expect the same level of gaming throughput or latency improvement as the 5800X3D, it is certainly possible that titles that utilize more than 16 threads will favor the 5900XT over the 5800X3D. And the 5900XT has plenty of L3 cache as well at 64 MB. So while not 3D stacked V-cache, it should still be a decent gaming chip. And all that cache as well as cores/threads will be excellent for non-gaming tasks of course. The CPU has a base clock of 3.3 GHz and boosts up to 4.8. It has a TDP of 105 watts so the available power envelope certainly helps with that. It can tolerate temperatures of up to 90 °C and there is no boxed cooler with it. So you need an aftermarket one, ideally a 280 mm or 360 mm AIO liquid cooler or an excellent air cooler. Also since this is a 16-core 105-watt chip, make sure to run it on an AM4 board that has good quality VRM and cooling with lots of power (ideally an X570 motherboard). Another consideration is that it does not have integrated graphics so you need a separate dedicated GPU for display out. Get the AMD Ryzen 9 5900XT at the links below: AMD Ryzen 9 5900XT - No Integrated Graphics Desktop CPU Processor - 100-100001581WOF: $229.99 (Amazon US) || : $279.00 (Newegg US + Corsair 32GB DDR4-3200 RAM) This Amazon deal is US-specific and not available in other regions unless specified. If you don't like it or want to look at more options, check out the Amazon US deals page here. Get Prime (SNAP), Prime Video, Audible Plus or Kindle / Music Unlimited. Free for 30 days. As an Amazon Associate, we earn from qualifying purchases.
  • Recent Achievements

    • Week One Done
      Wayne Robinson earned a badge
      Week One Done
    • One Month Later
      Karan Khanna earned a badge
      One Month Later
    • Week One Done
      Karan Khanna earned a badge
      Week One Done
    • First Post
      MikeK13 earned a badge
      First Post
    • Week One Done
      OHI Accounting earned a badge
      Week One Done
  • Popular Contributors

    1. 1
      +primortal
      681
    2. 2
      ATLien_0
      275
    3. 3
      Michael Scrip
      207
    4. 4
      +FloatingFatMan
      172
    5. 5
      Steven P.
      143
  • Tell a friend

    Love Neowin? Tell a friend!