Re: [AFMUG] HTTPS redirect

2019-09-12 Thread Steve Jones
at one point in the past it was required if a copper line ran to a house, it had to have dialtone with 911 capability. thats why i pull them off houses and coil them on the pole. I dont know if its still the case, or if it was local ordinance, but my buddies landlord got in trouble for cutting the

Re: [AFMUG] HTTPS redirect

2019-09-12 Thread Chuck McCown
Right. But if there is dial tone it has to be able to dial 0 and 911. Sent from my iPhone > On Sep 12, 2019, at 12:47 PM, Adam Moffett wrote: > > Surely at some point the phone line gets physically disconnected. When > there's no dial tone they couldn't expect 911 to work..right? > >> O

Re: [AFMUG] HTTPS redirect

2019-09-12 Thread Chuck McCown
That’s the rule in Utah. Sent from my iPhone > On Sep 12, 2019, at 12:41 PM, Sean Heskett wrote: > > i believe e911 rules require that they are able to dial 911 even if they are > delinquent - but i'm not completely sure, that's what the trainer at a > mikrotik class told me when this same qu

Re: [AFMUG] HTTPS redirect

2019-09-12 Thread Adam Moffett
Surely at some point the phone line gets physically disconnected. When there's no dial tone they couldn't expect 911 to work..right? On 9/12/2019 2:41 PM, Sean Heskett wrote: i believe e911 rules require that they are able to dial 911 even if they are delinquent - but i'm not completely sur

Re: [AFMUG] HTTPS redirect

2019-09-12 Thread Sean Heskett
i believe e911 rules require that they are able to dial 911 even if they are delinquent - but i'm not completely sure, that's what the trainer at a mikrotik class told me when this same question came up in class. -sean On Wed, Sep 11, 2019 at 4:35 PM Jason McKemie < j.mcke...@veloxinetbroadband.

Re: [AFMUG] HTTPS redirect

2019-09-11 Thread Ken Hohhof
If you bridge the ATA ahead of the CPE router on its own private IP, VoIP will not be affected. From: AF On Behalf Of Jason McKemie Sent: Wednesday, September 11, 2019 5:35 PM To: AnimalFarm Microwave Users Group Subject: Re: [AFMUG] HTTPS redirect Is shutting someone off not an option

Re: [AFMUG] HTTPS redirect

2019-09-11 Thread Jason McKemie
Is shutting someone off not an option if you offer VoIP? On Wednesday, September 11, 2019, Sean Heskett wrote: > have to do a DNS hijack but if you offer VoIP then you need to worry about > 911 calls still going thru etc. > > On Tue, Sep 10, 2019 at 4:06 PM Adam Moffett wrote: > >> I already kn

Re: [AFMUG] HTTPS redirect

2019-09-11 Thread Sean Heskett
have to do a DNS hijack but if you offer VoIP then you need to worry about 911 calls still going thru etc. On Tue, Sep 10, 2019 at 4:06 PM Adam Moffett wrote: > I already know the answer I think, but if you're redirection non-pay > customers to a web page what do you do with (the majority) who h

Re: [AFMUG] HTTPS redirect

2019-09-10 Thread Ken Hohhof
(Celerity Networks) Sent: Tuesday, September 10, 2019 10:03 PM To: Adam Moffett Cc: AnimalFarm Microwave Users Group Subject: Re: [AFMUG] HTTPS redirect It seemed it had to do all sites because they were never trying to do a lookup for those test sites - the ones the OS was looking up had to

Re: [AFMUG] HTTPS redirect

2019-09-10 Thread Jesse Dupont (Celerity Networks)
It seemed it had to do all sites because they were never trying to do a lookup for those test sites - the ones the OS was looking up had to be returned as the captive portal. I agree - once they paid, they really need to reboot their router. I did the same thing - set TTL to 1, but until the rou

Re: [AFMUG] HTTPS redirect

2019-09-10 Thread Ken Hohhof
wait for them to call. I’m always amazed if we have an outage, how many people call to pay their bill. From: AF On Behalf Of Adam Moffett Sent: Tuesday, September 10, 2019 8:31 PM To: AnimalFarm Microwave Users Group Subject: Re: [AFMUG] HTTPS redirect Ok, This is not bad at all

Re: [AFMUG] HTTPS redirect

2019-09-10 Thread Adam Moffett
Ok, This is not bad at all, but only works with WiFi.I'm on ethernet in the lab and I was sitting here beating my head like an idiot wondering why it didn't work.  Just something to keep in mind.  This is probably what I'll end up doing though.  I appreciate the tip. On 9/10/2019 7:04

Re: [AFMUG] HTTPS redirect

2019-09-10 Thread Steve Jones
I have mediacom cable at home. Don't know what the delinquency page looks like but they inject a usage banner somehow. And once when I got dmca flagged there was an injected banner and failed ip redirect. As I understood it when I asked around before, functional banner injection is an expensive bac

Re: [AFMUG] HTTPS redirect

2019-09-10 Thread Adam Moffett
I toyed with mangling DNS, but the issue was after they paid they still have cached results pointing to the wrong IP.  Even when my fake results had a TTL of 1 minute the client seemed to keep them longer than that. Is it sufficient to make DNS entries for the captive portal test sites or do y

Re: [AFMUG] HTTPS redirect

2019-09-10 Thread Jesse DuPont
Redirecting HTTPS, as you know, doesn't work because of the certificate. Even using your own certificate won't work because you can't get a trusted certificate issues that is valid for all domain names. The only think you can do is redirect them BEFORE they try to do