This shows you the differences between two versions of the page.
Both sides previous revisionPrevious revisionNext revision | Previous revision | ||
advanced-firewall [2023/05/28 04:35] – [Firewall] -formatting hogwild | advanced-firewall [2023/05/28 05:39] (current) – [Multicast] -condense, list/explain additional features of new IGMPv2 messages hogwild | ||
---|---|---|---|
Line 12: | Line 12: | ||
**Limit communication to: **This specifies the maximum number of requests per second to which the Firewall will reply. Setting a limit number is recommended to prevent DDoS attacks.\\ | **Limit communication to: **This specifies the maximum number of requests per second to which the Firewall will reply. Setting a limit number is recommended to prevent DDoS attacks.\\ | ||
- | **Enable TCP SYN cookies: | + | \\ |
+ | |||
+ | **Enable TCP SYN cookies: | ||
**Enable DCSP Fix: **Checking this enables a workaround for packet marking, a well-known issue related to DSCP when connected to Comcast. | **Enable DCSP Fix: **Checking this enables a workaround for packet marking, a well-known issue related to DSCP when connected to Comcast. | ||
Line 48: | Line 50: | ||
* LAN0 - Checking this means the LAN0 bridge will participate in IGMP proxy. | * LAN0 - Checking this means the LAN0 bridge will participate in IGMP proxy. | ||
* LAN1 - Checking this means the LAN1 bridge will participate in IGMP proxy. | * LAN1 - Checking this means the LAN1 bridge will participate in IGMP proxy. | ||
- | * LAN2 - Checking this means the LAN2 bridge will participate in IGMP proxy/ | + | * LAN2 - Checking this means the LAN2 bridge will participate in IGMP proxy. |
* LAN3 - Checking this means the LAN3 bridge will participate in IGMP proxy. | * LAN3 - Checking this means the LAN3 bridge will participate in IGMP proxy. | ||
Line 71: | Line 73: | ||
**Udpxy port**- This specifies the port on which you can recive Udpxy information from your router.\\ | **Udpxy port**- This specifies the port on which you can recive Udpxy information from your router.\\ | ||
- | **Efficient Multicast Forwarding (IGMP Snooping) -** IGMP snooping | + | **Efficient Multicast Forwarding (IGMP Snooping) -** IGMP snooping |
+ | |||
+ | However, caution is advised. IGMP Snooping can interfere with proper functioning of UPnP or DLNA. This can make Multicast configuration errors or deficiencies appear | ||
+ | |||
+ | A common symptom of this is a network host (say, a Smart TV) which appears after it's powered on, but then " | ||
+ | |||
+ | **Force IGMPv2** - IGMPv2 enhances IGMP with additional messages/ | ||
+ | |||
+ | Other features of IGMPv2 include: | ||
+ | |||
+ | Group specific membership query. The router can now send a membership query for a specific group address. When the router receives a leave group message, it will use this query to check if there are still any hosts interested | ||
- | therefore, multicast network misconfiguration or other deficiencies can appear as UPnP issues rather than underlying network issues. If IGMP snooping is enabled on a switch, or more commonly a wireless router/ | + | MRT (Maximum Response Time) field. This new field in query messages specifies how much time hosts have to respond to the query. |
- | **Force IGMPv2** - IGMPv2 enhances the IGMP communication supporting additional messages/ | + | Querier election process. When two routers are connected |