OpenWrt Community question: What do you want to see in OpenWrt?
forum.openwrt.org
forum.openwrt.org
The fact that OpenWRT can’t do this is why I don’t use it any more. Otherwise I rather like OpenWRT.
There’s an open-source implementation of a WiFi alliance spec for Multi-AP called prpl that’s even based on OpenWRT. I’m sure it’s a mess and supports all manner of undesirable crap, but the good parts could be a good place to start.
https://openwrt.org/docs/guide-user/network/wifi/roaming
Follow the usteer path.
Those docs convince me that someone has tried this and written some software, not that it’s anything like fully supported. Also, the same setup should get 802.11r, not just k and v.
DAWN wasn't flawless out of box about choosing bands, and would sometimes trash a bit... but it generally worked great for the 3x r7800's I had. And it would generally help band steer people to 5ghz in useful ways.
Usteer has everyone packed onto 2.4GHz. With very rare exception. It just doesn't seem to bandsteer well at all, in my view.
Agreed that this should be a top priority, so so much. Bandsteer and multi-AP are very similar problem-sets; even if users only have a single AP they need good steering to have a good experience. DAWN has started making that a reality (well before usteer) and continues to be the only viable open source option for people right now.
It works remarkably well in our thick-walled multi-storey house.
1. It’s a bit orthogonal. APs that support mesh aren’t actually taking their excellent 802.11r/k/v network and making the APs themselves use it by mesh magic. They’re doing something else behind the scenes to arrange for wireless uplink. You can set up OpenWRT to do WDS (I think) and get it to have a wireless uplink. It will be mildly annoying to set up, it will be more manual than it deserves to be, and it won’t help get the actual multi-AP SSID to work any better.
2. I said that I, personally, didn’t care so much. I’ve set up several wireless networks, and I’ve almost never wanted a wireless uplink. I like wires!
OpenWRT probably should have better out of the box support for “mesh,” but IMO that’s a different feature request. I do find it rather annoying that AP makers tend to conflate “mesh” meaning wireless uplink and “mesh” meaning you can use more than one AP, it works well to do so, and it’s not unnecessarily painful to do so.
I'd also like to see the Wiki examples supported by complete configurations. A lot of the routing examples don't show enough of what's actually required to make them work. Perhaps create complete configurations that can be applied to a virtualized OpenWRT instance?
Leave it to poor saps on a Wiki to do it for them...
Raxda has tried to support some but they use a shitty old u-boot Linero tree like many of these joke boards.
Hello. Please upsteam your work and get rid of the 2017 Uboot tree. Geez
Then I had to join a vlan for my new ISP. That was a tough one! Evenings of reading threads and going through documentation and there was no clear answer. In the end I asked an LLM and the instructions were so easy, it made me wonder how I missed it.
So I would join some other calls in here for common setups.
Automatic firmware updates would be my vote if i could vote.
I wish they had add "next gen firewall" to the list. Go compete with palo, fortinet, or sonicwall. Be able to have threatfeeds blocking. Having those extra features would be huge.
I'd still prefer to manually click to initiate the update on my schedule, but the process could be more streamlined.
Be aware if you're on snapshot, that the packaging situation is iffy right now. opkg is being replaced with apk, and there's some rough edges. I had a sysupgrade build that ended up with neither package manager, and the automatic tool doesn't currently work for doing new builds from an apk system.
My wishlist item would be less churn or at least replacements should integrate as well as the old version.
No nftables?
Just recenty I wanted to quickly create guest wifi on AP. After following a long guide from the official wiki, it didn't work. I probably missed something and could make it work, if I would invest some more time. But instead, I just enabled a hotspot on my phone.
Both AP and router are on OpenWRT.
Pretty much anything other than the most very basic configuration is unduly difficult.
While it's certainly nice to have every conceivable setting availble to you, only a fraction of a percent of people even know what they're all for or how to apply them.
What OpenWRT needs most of all is for anyone to be able to walk up and find the button that does what they want. Even for technically advanced users and career programmers, OpenWRT is obtuse and confusing. You have to spend hours researching how to do anything even slightly more complex than attaching an AP to a LAN bridge.
Things like Unifi, Eero, and Mikrotik kind of obviate the need for custom firmware with bad UI. It's not 2006 anymore with Linksys WRT54GLs. Guest networks, meshing, tunnels, routing protocols, basic traffic shaping and policing -- these are all point and click or even automatic in these ecosystems to varying degrees, all for less effort than I think you'd spend on a WRT setup.
Maybe their future is in low cost embedded boards and not home prosumer gear?
That's one thing that ubiquiti and the like do very well.
Combine that with the openwrt wiki/databases and you can support a LOT of different hardware with different capabilities relatively easily.
OpenWRT absolutely blows PFsense/OPNsense out the water in my experience. I don't need a bajillion different configuration options, I just want a tiny PC that can route packets effectively and maybe do a bit of port forwarding. But won't keel over and die when I download lots of "Linux ISO's" on my fiber internet connection
I dropped PFsense after the Wireguard debacle where they tried to force broken code into the FreeBSD kernel [1] OPNsense meanwhile ate its own EFI boot partition after a system upgrade and rendered itself unbootable. Not great!
OpenWRT on x64 feels more like a "test system" than something to run in production. Being able to upgrade-in-place until recently was "just dd the disk image to your target boot drive!" instead of having some way to properly install or upgrade the system
Despite this it also still limits itself to about 100MB for the rootfs partition. The SSD I've installed is some junk 60GB no-name brand, so I guess I'm safe as long as it can do wear-levelling. But when OpenWRT themselves have devices with gigabytes of eMMC flash supported it feels a bit restrictive for a default.
Due to being optimized for routers with tiny flash and memory everything is broken up into as many tiny pieces as possible as well. Want to run hostapd? There's about 4 different options for which hostapd you want. Want a web UI? Well install LuCI via opkg/apk. Nothing comes "batteries included" so much as it comes "individual lego pieces"
I love OpenWRT. It's built like an absolute tank and yet is simple enough to make even the most in-depth changes absolutely easy. If they were willing to push upward into more standard x86 kit they'd give PFsense and its contemporaries a serious challenge. SmoothWall, IPCop and all the others have long since died out for "free Linux router/firewall appliance"
[1] https://arstechnica.com/gadgets/2021/03/buffer-overruns-lice...
I'll second that, maybe not for the same reasons.
I have numerous static binaries built for x86-64 that I would like to be able to use on new OpwenWRT installs. Because the OpenWRT x86-64 support is lacking I only use it on MIPS and cross-compile or, if it is a tiny program, compile natively on the router (slow). And I stick to NetBSD for x86 routers.
No one gives a single shit what language the thing is written in. What users care about is how monstrously complex and difficult it is to use OpenWRT.
Anything more complex than changing SSID and password requires trawling through two different outdated wikis and years-old forum posts. That's if your search engine can even find something other than thousands of people asking the same question over the years.
OpenWRT needs to be usable and approachable. Any random person off the street should be able to walk up and configure their network. Even for highly technical users it's a struggle to do anything.
It does not matter one single bit whether there's rust in the codebase if it's never run because no one can figure out how to use it.
Rust is not a feature. It's an implementation detail that absolutely no one cares about and does not affect the user in any way. I'm really sick of this shit.
"Helpful" forum posts mostly suggested to "use Wireguard" with a notion that IPSec is an archaic protocol that is not worth anyone's time to support, and the user is dumber for trying to use it.
Hardly.
2. Easy tailscale support. If my router goes wonky, I really want to be able to get to it, and there’s no guarantee that I can connect directly through my upstreams.
I bought an OpenWRT-supported router with an idea to upgrade from my older dd-wrt router.
I wanted to set up wireguard but saw the page about it and got scared, so for the moment I'm still using the old router.
It seems built not even for normal nerds, but for network professional nerds.
Things that should not require configuring are Basic Common Criteria, WHONIX settings,
Configurable everything.
For now, I am cobbling something akin beyond Debian APT configuration:
https://github.com/egberts/easy-admin
Warning: Bash programming.
I routinely uninstall this combo and replace with "ohdcpd"
I prefer authoritative DNS operated by me over recursive resolvers operated by third parties so I prefer something like nsd (compiled with --enable-root-server) as opposed to dnsmasq
Personally, I have no need for IPv6 on the LAN but there is no "odhcpd-ipv4only" package
If you for some reason absolutely need to manage it remotely, that's why we have VPNs and SSH keys.
What am I missing?
https://forum.openwrt.org/t/community-question-what-do-you-w...
wrt3200acm
[0] https://www.reddit.com/r/LinksysOfficial/comments/142mnnr/er...
1. Updates, every single router manufacturer abandons their routers within a few years, so you either keep buying new ones when the updates stop or you use open source firmware that extends that life until it's obsolete.
2. OpenWRT (and the others) expose all the features you need where manufacturers often simplify this or charge you extra for them. The hardware becomes use to utilise as you please.
I wish Netgear and others directly supported open source firmware like they did in the past.