<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>subiectul Re: Despre DNS-urile Orange Romania din Internet fix</title>
    <link>https://comunitate.orange.ro/t5/internet-fix/despre-dns-urile-orange-romania/m-p/208002#M7056</link>
    <description>&lt;P&gt;Da, da, da. fix ca în exemplele testate de mine mai sus.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Poți testa și singur și să ne arăți rezultate diferite față de ce am obtinut eu.&lt;/P&gt;&lt;P&gt;Până atunci rămân invalide conform propriilor teste făcute publice.&lt;span class="lia-unicode-emoji" title=":mâna_victoriei:"&gt;✌️&lt;/span&gt;&lt;/P&gt;</description>
    <pubDate>Mon, 12 Jan 2026 09:47:29 GMT</pubDate>
    <dc:creator>Viper</dc:creator>
    <dc:date>2026-01-12T09:47:29Z</dc:date>
    <item>
      <title>Despre DNS-urile Orange Romania</title>
      <link>https://comunitate.orange.ro/t5/internet-fix/despre-dns-urile-orange-romania/m-p/207425#M6986</link>
      <description>&lt;P&gt;Salutare,&lt;/P&gt;&lt;P&gt;Latența și variațiile de ping din rețeaua fixă Orange Romania sunt cauzate de faptul că serverele DNS nu sunt optimizate și nu beneficiază de infrastructură modernizată:&lt;/P&gt;&lt;P&gt;- au&amp;nbsp;&lt;STRONG&gt;load mare&lt;/STRONG&gt;,&amp;nbsp;&lt;/P&gt;&lt;P&gt;- au&amp;nbsp;&lt;STRONG&gt;cache lent&lt;/STRONG&gt;,&amp;nbsp;&lt;/P&gt;&lt;P&gt;- au&amp;nbsp;&lt;STRONG&gt;latenta variabila&lt;/STRONG&gt;,&amp;nbsp;&lt;/P&gt;&lt;P&gt;- &lt;STRONG&gt;nu au servere locale suficiente&lt;/STRONG&gt; sau prea putine,&lt;/P&gt;&lt;P&gt;- folosesc &lt;STRONG&gt;noduri vechi&lt;/STRONG&gt;,&lt;/P&gt;&lt;P&gt;- folosesc &lt;STRONG&gt;hardware vechi&lt;/STRONG&gt; (servere vechi, cpu slab, caching lent, load balancing primitiv),&lt;/P&gt;&lt;P&gt;-&amp;nbsp;&lt;STRONG&gt;raspund lent&lt;/STRONG&gt; la domenii noi,&amp;nbsp;&lt;/P&gt;&lt;P&gt;-&amp;nbsp;&lt;STRONG&gt;TTL&lt;/STRONG&gt;-uri &lt;STRONG&gt;prost&lt;/STRONG&gt; &lt;STRONG&gt;gestionate&lt;/STRONG&gt;.&lt;/P&gt;&lt;P&gt;Ce ar putea Orange Romania sa imbunatateasca?&lt;/P&gt;&lt;P&gt;-&amp;nbsp;&lt;STRONG&gt;10–20 noduri&lt;/STRONG&gt; per DNS,&amp;nbsp;&lt;/P&gt;&lt;P&gt;- &lt;STRONG&gt;mai multe servere locale&lt;/STRONG&gt;,&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;-&amp;nbsp;&lt;STRONG&gt;hardware modern (Unbound, Knot Resolver, PowerDNS Recursor, servere cu SSD NVMe, load balancing inteligent)&lt;/STRONG&gt;,&amp;nbsp;&lt;/P&gt;&lt;P&gt;- nu ar strica implementarea &lt;STRONG&gt;Anycast&lt;/STRONG&gt;,&amp;nbsp;&lt;/P&gt;&lt;P&gt;- sa &lt;STRONG&gt;optimizeze rutarea interna&lt;/STRONG&gt; (peering).&amp;nbsp;&lt;/P&gt;&lt;P&gt;Daca vreti schimbari, scrieti-le sau alegeti alt operator. Desi au trecut aproape 7 ani de cand au preluat serviciul fix de internet de la Telekom - ori nu primesc sesizari, ori merg pe stilul romanesc...&amp;nbsp;&lt;A href="https://www.youtube.com/watch?v=94EfbIIHLpk&amp;amp;t=22s" target="_blank" rel="noopener"&gt;https://www.youtube.com/watch?v=94EfbIIHLpk&amp;amp;t=22s&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Conform comunicatelor ANCOM, realitatea este cea de mai jos.&lt;/P&gt;&lt;P&gt;19.12.2025:&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Internet fix 2025&amp;nbsp;&lt;/STRONG&gt;-&amp;nbsp;&lt;SPAN&gt;Digi 73%, Orange 15%, Vodafone 10%&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;17.12.2024:&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Internet fix 2024&amp;nbsp;&lt;/STRONG&gt;-&lt;SPAN&gt;&amp;nbsp;Digi 71%, Orange 17%, Vodafone 11%&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;19.12.2023:&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&lt;STRONG&gt;Internet fix 2023&lt;/STRONG&gt; - RCS&amp;amp;RDS 69%, Orange 18%, Vodafone 11%&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;Spune-mi in ce localitate te afli si unde a fugit Orange de tine &lt;A href="https://dnscheck.tools" target="_blank" rel="noopener"&gt;https://dnscheck.tools&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://speed.cloudflare.com" target="_blank" rel="noopener"&gt;https://speed.cloudflare.com&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 07 Jan 2026 22:11:41 GMT</pubDate>
      <guid>https://comunitate.orange.ro/t5/internet-fix/despre-dns-urile-orange-romania/m-p/207425#M6986</guid>
      <dc:creator>Fost Membru</dc:creator>
      <dc:date>2026-01-07T22:11:41Z</dc:date>
    </item>
    <item>
      <title>Re: Despre DNS-urile Orange Romania</title>
      <link>https://comunitate.orange.ro/t5/internet-fix/despre-dns-urile-orange-romania/m-p/207437#M6988</link>
      <description>&lt;P&gt;Ah si...cred ca modul bridge de la Orange este de fapt &lt;STRONG&gt;pseudo-bridge&lt;/STRONG&gt;.&lt;/P&gt;&lt;P&gt;In cazul unui &lt;STRONG&gt;full bridge&lt;/STRONG&gt;, ONT-ul (ZTE F6600R cazul meu) ar trebui sa fie doar un convertor optic → ethernet, a&lt;SPAN&gt;sta ar inseamna sa:&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;- nu trimita IPv6,&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;- nu ofere DHCP,&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;- nu rescrie portul 53,&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;- nu aibe firewall activ,&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;- nu faca NAT,&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;- nu trimita RA (Router Advertisements),&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;- nu faca DNS proxy,&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;- nu mai trimita absolut nimic in rețea, in afara de &lt;STRONG&gt;pachetele brute&lt;/STRONG&gt; de internet.&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Avantaje &lt;STRONG&gt;full bridge&lt;/STRONG&gt;:&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;-&amp;nbsp;DNS-ul nu mai trece prin Orange,&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;-&amp;nbsp;IPv6 nu mai apare daca tu nu il activezi,&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;-&amp;nbsp;routerul personal nu mai primeste RA false,&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;-&amp;nbsp;latenta in jocuri scade,&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;-&amp;nbsp;rezolvarea DNS devine instant,&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;-&amp;nbsp;&lt;STRONG&gt;routerul tau devine singurul care decide tot&lt;/STRONG&gt;.&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 06 Jan 2026 12:22:47 GMT</pubDate>
      <guid>https://comunitate.orange.ro/t5/internet-fix/despre-dns-urile-orange-romania/m-p/207437#M6988</guid>
      <dc:creator>Fost Membru</dc:creator>
      <dc:date>2026-01-06T12:22:47Z</dc:date>
    </item>
    <item>
      <title>Re: Despre DNS-urile Orange Romania</title>
      <link>https://comunitate.orange.ro/t5/internet-fix/despre-dns-urile-orange-romania/m-p/207449#M6991</link>
      <description>&lt;P&gt;Daca aveti router Asus si suporta comenzi ssh, va las mai jos cateva folosite de mine pe Asus AX59U:&lt;/P&gt;&lt;P&gt;1) Activati SSH din interfata routerului (Administrare - Sistem - setati port 22)&lt;/P&gt;&lt;P&gt;2) Deschideti CMD - Run as administrator&amp;nbsp;&lt;/P&gt;&lt;P&gt;3) ssh user_router@ip_router (Exemplu: &lt;STRONG&gt;ssh &lt;A href="mailto:admin@192.168.50.1" target="_self"&gt;admin@192.168.50.1&lt;/A&gt;&amp;nbsp;&lt;/STRONG&gt;)&lt;/P&gt;&lt;P&gt;4) parola_router&lt;/P&gt;&lt;P&gt;----------------------------------------------------------------&lt;/P&gt;&lt;P&gt;Loopback (obligatoriu mod bridge)&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;nvram set iptables -A INPUT -i lo -j ACCEPT&amp;nbsp;&lt;/STRONG&gt;&lt;BR /&gt;&lt;STRONG&gt;nvram set iptables -A OUTPUT -o lo -j ACCEPT&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;UDP - jocuri/VoIP/streaming (latenta mica)&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;nvram set iptables -A INPUT -p udp -m conntrack --ctstate NEW,ESTABLISHED,RELATED -j ACCEPT&amp;nbsp;&lt;BR /&gt;nvram set iptables -A OUTPUT -p udp -m conntrack --ctstate NEW,ESTABLISHED,RELATED -j ACCEPT&amp;nbsp;&lt;BR /&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;ICMP (ping stabil)&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;nvram set iptables -A INPUT -p icmp -j ACCEPT&amp;nbsp;&lt;BR /&gt;nvram set iptables -A OUTPUT -p icmp -j ACCEPT&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;Aceleasi si pt. IPv6. Eu am IPv6 dezactivat, deci nu le folosesc - dar le-am setat in cazul in care ma razgandesc&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;nvram set ip6tables -A INPUT -i lo -j ACCEPT&amp;nbsp;&lt;/STRONG&gt;&lt;BR /&gt;&lt;STRONG&gt;nvram set ip6tables -A OUTPUT -o lo -j ACCEPT&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;nvram set ip6tables -A INPUT -p udp -m conntrack --ctstate NEW,ESTABLISHED,RELATED -j ACCEPT&amp;nbsp;&lt;/STRONG&gt;&lt;BR /&gt;&lt;STRONG&gt;nv ram set ip6tables -A OUTPUT -p udp -m conntrack --ctstate NEW,ESTABLISHED,RELATED -j ACCEPT&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;nvram set ip6tables -A INPUT -p icmpv6 -j ACCEPT&amp;nbsp;&lt;/STRONG&gt;&lt;BR /&gt;&lt;STRONG&gt;nv ram set ip6tables -A OUTPUT -p icmpv6 -j ACCEPT&amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;Dezactivare DNS filter (Optional)&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;nvram set dnsfilter_enable=0&lt;BR /&gt;nvram set dnsfilter_mode=0&lt;BR /&gt;nvram set dnsfilter_rulelist=""&lt;BR /&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;Finalul, salveaza comenzile executate&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;nvram commit&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;reboot&lt;/STRONG&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 06 Jan 2026 16:23:41 GMT</pubDate>
      <guid>https://comunitate.orange.ro/t5/internet-fix/despre-dns-urile-orange-romania/m-p/207449#M6991</guid>
      <dc:creator>Fost Membru</dc:creator>
      <dc:date>2026-01-06T16:23:41Z</dc:date>
    </item>
    <item>
      <title>Re: Despre DNS-urile Orange Romania</title>
      <link>https://comunitate.orange.ro/t5/internet-fix/despre-dns-urile-orange-romania/m-p/207877#M7031</link>
      <description>&lt;P&gt;Nu am idee de unde ai inventat acele comenzi, desi daca o parte din ele ar face ce crezi tu ca ar face ar fi grav, &lt;STRONG&gt;din fericire pentru cititorii acestui forum acele comenzi sunt invalide&lt;/STRONG&gt; (mai putin cele cu dnsfilter, commit si reboot). Cat despre postarea initiala din acest topic, multe presupuneri. Revin si eu in cateva zile cu un subiect conex (ca proaspat abonat al serviciului de internet fix prin fibra) dupa ce se mai rezolva o problema.&amp;nbsp;&lt;/P&gt;&lt;P&gt;ps: `&lt;STRONG&gt;nvram set key=value&lt;/STRONG&gt;` este sintaxa corecta, practic daca prin absurd ar functiona ai rescrie continutul cheii `iptables` respectiv `ip6tables` cu fiecare comanda data si s-ar salva doar ultima, poti verifica cu `&lt;STRONG&gt;nvram show&lt;/STRONG&gt;`.&lt;/P&gt;&lt;P&gt;Spor!&lt;/P&gt;</description>
      <pubDate>Fri, 09 Jan 2026 23:01:07 GMT</pubDate>
      <guid>https://comunitate.orange.ro/t5/internet-fix/despre-dns-urile-orange-romania/m-p/207877#M7031</guid>
      <dc:creator>Viper</dc:creator>
      <dc:date>2026-01-09T23:01:07Z</dc:date>
    </item>
    <item>
      <title>Re: Despre DNS-urile Orange Romania</title>
      <link>https://comunitate.orange.ro/t5/internet-fix/despre-dns-urile-orange-romania/m-p/207879#M7032</link>
      <description>&lt;P&gt;Opa, un angajat undercover încercând să spele rușinea internetului de duzină de la Orange 🤫 Comenzile sunt valide si rulează perfect pe Asus...în cazul meu Asus Ax59u. Mai multe comenzi valide aici &lt;A href="https://wlog.ro/windows.php" target="_blank"&gt;https://wlog.ro/windows.php&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Sat, 10 Jan 2026 00:06:07 GMT</pubDate>
      <guid>https://comunitate.orange.ro/t5/internet-fix/despre-dns-urile-orange-romania/m-p/207879#M7032</guid>
      <dc:creator>Fost Membru</dc:creator>
      <dc:date>2026-01-10T00:06:07Z</dc:date>
    </item>
    <item>
      <title>Re: Despre DNS-urile Orange Romania</title>
      <link>https://comunitate.orange.ro/t5/internet-fix/despre-dns-urile-orange-romania/m-p/207976#M7046</link>
      <description>&lt;P&gt;Ok, hai "sa spal rusinea internetului de duzina Orange" chiar daca nu sunt angajat undercover si sa testez eu acele comenzi despre care mi-am permis sa mentionez ca sunt invalide (desi prima parte din aceasta fraza n-are absolut nicio legatura cu aceste comenzi, dar dintr-un motiv necunoscut tu ai gasit o legatura de ai tinut sa mentionezi acest aspect, poate pentru ca am zis ca sunt multe presupuneri in postarea initiala?).&lt;/P&gt;&lt;P&gt;Pe un router proaspat resetat, verificam regulile existente din iptables respectiv ip6tables:&lt;/P&gt;&lt;PRE&gt;admin@RT-ASUS:/# iptables -S&lt;BR /&gt;-P INPUT DROP&lt;BR /&gt;-P FORWARD DROP&lt;BR /&gt;-P OUTPUT ACCEPT&lt;BR /&gt;-N ACCESS_RESTRICTION&lt;BR /&gt;-N PTCSRVLAN&lt;BR /&gt;-N PTCSRVWAN&lt;BR /&gt;-N logaccept&lt;BR /&gt;-N logdrop&lt;BR /&gt;-A INPUT -m state --state RELATED,ESTABLISHED -j ACCEPT&lt;BR /&gt;-A INPUT -m state --state INVALID -j DROP&lt;BR /&gt;-A INPUT ! -i br0 -j PTCSRVWAN&lt;BR /&gt;-A INPUT -i br0 -j PTCSRVLAN&lt;BR /&gt;-A INPUT -i br0 -m state --state NEW -j ACCEPT&lt;BR /&gt;-A INPUT -i lo -m state --state NEW -j ACCEPT&lt;BR /&gt;-A FORWARD -m state --state RELATED,ESTABLISHED -j ACCEPT&lt;BR /&gt;-A FORWARD -i br0 -o br0 -j ACCEPT&lt;BR /&gt;-A FORWARD -i lo -o lo -j ACCEPT&lt;BR /&gt;-A logaccept -m state --state NEW -j LOG --log-prefix "ACCEPT " --log-tcp-sequence --log-tcp-options --log-ip-options&lt;BR /&gt;-A logaccept -j ACCEPT&lt;BR /&gt;-A logdrop -m state --state NEW -j LOG --log-prefix "DROP " --log-tcp-sequence --log-tcp-options --log-ip-options&lt;BR /&gt;-A logdrop -j DROP&lt;/PRE&gt;&lt;PRE&gt;admin@RT-ASUS:/# ip6tables -S&lt;BR /&gt;-P INPUT DROP&lt;BR /&gt;-P FORWARD DROP&lt;BR /&gt;-P OUTPUT DROP&lt;BR /&gt;-N logaccept&lt;BR /&gt;-N logdrop&lt;BR /&gt;-A logaccept -m state --state NEW -j LOG --log-prefix "ACCEPT " --log-tcp-sequence --log-tcp-options --log-ip-options&lt;BR /&gt;-A logaccept -j ACCEPT&lt;BR /&gt;-A logdrop -m state --state NEW -j LOG --log-prefix "DROP " --log-tcp-sequence --log-tcp-options --log-ip-options&lt;BR /&gt;-A logdrop -j DROP&lt;/PRE&gt;&lt;P&gt;&amp;nbsp;Verificam si ce avem prin nvram continand *&lt;STRONG&gt;tables&lt;/STRONG&gt;* (ar trebui sa gaseasca atat ip&lt;STRONG&gt;tables&lt;/STRONG&gt; cat si ip6&lt;STRONG&gt;tables&lt;/STRONG&gt;, daca exista (-i = case insensitive, nu tine cont de litere mici/mari):&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;PRE&gt;admin@RT-ASUS:/# nvram show | grep -i tables&lt;BR /&gt;size: 36753 bytes (24687 left)&lt;BR /&gt;admin@RT-ASUS:/#&lt;/PRE&gt;&lt;P&gt;&amp;nbsp;Dupa cum observam, nimic, incercam prima comanda din seria comenzilor "valide si perfect functionale":&lt;/P&gt;&lt;PRE&gt;admin@RT-ASUS:/# nvram set iptables -A INPUT -i lo -j ACCEPT&lt;BR /&gt;admin@RT-ASUS:/# nvram show | grep -i tables&lt;BR /&gt;size: 36753 bytes (24687 left)&lt;/PRE&gt;&lt;P&gt;&amp;nbsp;Nimic in continuare, testam totusi daca gaseste altceva din comanda proaspat introdusa:&lt;/P&gt;&lt;PRE&gt;admin@RT-ASUS:/# nvram show | grep -i input&lt;BR /&gt;size: 36753 bytes (24687 left)&lt;BR /&gt;admin@RT-ASUS:/# nvram show | grep -i accept&lt;BR /&gt;filter_wl_default_x=ACCEPT&lt;BR /&gt;size: 36753 bytes (24687 left)&lt;BR /&gt;ipv61_accept_defrtr=1&lt;BR /&gt;filter_lw_default_x=ACCEPT&lt;BR /&gt;ipv6_accept_defrtr=1&lt;BR /&gt;admin@RT-ASUS:/#&lt;/PRE&gt;&lt;P&gt;&amp;nbsp;Nimic din ce am introdus noi, dar totusi observam ca este buna comanda noastra de cautare, intrucat ne arata ce a gasit ca ar contine si&amp;nbsp;&lt;STRONG&gt;ACCEPT&lt;/STRONG&gt; si&amp;nbsp;&lt;STRONG&gt;accept.&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;Continuam cu restul comenzilor cu iptables / ip6tables din postarea ta, cu copy/paste, urmate de inca o verificare:&lt;/P&gt;&lt;PRE&gt;admin@RT-ASUS:/# nvram set iptables -A OUTPUT -o lo -j ACCEPT&lt;BR /&gt;admin@RT-ASUS:/# nvram set iptables -A INPUT -p udp -m conntrack --ctstate NEW,ESTABLISHED,RELATED -j ACCEPT&lt;BR /&gt;admin@RT-ASUS:/# nvram set iptables -A OUTPUT -p udp -m conntrack --ctstate NEW,ESTABLISHED,RELATED -j ACCEPT&lt;BR /&gt;admin@RT-ASUS:/# nvram set iptables -A INPUT -p icmp -j ACCEPT&lt;BR /&gt;admin@RT-ASUS:/# nvram set iptables -A OUTPUT -p icmp -j ACCEPT&lt;BR /&gt;admin@RT-ASUS:/# nvram set ip6tables -A INPUT -i lo -j ACCEPT&lt;BR /&gt;admin@RT-ASUS:/# nvram set ip6tables -A OUTPUT -o lo -j ACCEPT&lt;BR /&gt;admin@RT-ASUS:/# nvram set ip6tables -A INPUT -p udp -m conntrack --ctstate NEW,ESTABLISHED,RELATED -j ACCEPT&lt;BR /&gt;admin@RT-ASUS:/# nv ram set ip6tables -A OUTPUT -p udp -m conntrack --ctstate NEW,ESTABLISHED,RELATED -j ACCEPT&lt;BR /&gt;-sh: nv: not found&lt;BR /&gt;admin@RT-ASUS:/# nvram set ip6tables -A OUTPUT -p udp -m conntrack --ctstate NEW,ESTABLISHED,RELATED -j ACCEPT&lt;BR /&gt;admin@RT-ASUS:/# nvram set ip6tables -A INPUT -p icmpv6 -j ACCEPT&lt;BR /&gt;admin@RT-ASUS:/# nv ram set ip6tables -A OUTPUT -p icmpv6 -j ACCEPT&lt;BR /&gt;-sh: nv: not found&lt;BR /&gt;admin@RT-ASUS:/# nvram set ip6tables -A OUTPUT -p icmpv6 -j ACCEPT&lt;BR /&gt;admin@RT-ASUS:/# nvram show | grep -i tables&lt;BR /&gt;size: 36753 bytes (24687 left)&lt;BR /&gt;admin@RT-ASUS:/# nvram show | grep -i input&lt;BR /&gt;size: 36753 bytes (24687 left)&lt;BR /&gt;admin@RT-ASUS:/# nvram show | grep -i output&lt;BR /&gt;size: 36753 bytes (24687 left)&lt;BR /&gt;admin@RT-ASUS:/# nvram show | grep -i accept&lt;BR /&gt;filter_wl_default_x=ACCEPT&lt;BR /&gt;size: 36753 bytes (24687 left)&lt;BR /&gt;ipv61_accept_defrtr=1&lt;BR /&gt;filter_lw_default_x=ACCEPT&lt;BR /&gt;ipv6_accept_defrtr=1&lt;BR /&gt;admin@RT-ASUS:/#&lt;/PRE&gt;&lt;P&gt;&amp;nbsp;Nimic nou! Doar ceva atentionari ca nu ar exista comanda "nv" (asa le-am copiat de la tine..) si continuam cu cele despre care am zis ca totusi sunt ok cel putin ca si sintaxa (legate de dnsfilter), dar verificam mai intai ce avem deja in nvram:&lt;/P&gt;&lt;PRE&gt;admin@RT-ASUS:/# nvram show | grep -i dnsfilter&lt;BR /&gt;dnsfilter_rulelist=&lt;BR /&gt;size: 36753 bytes (24687 left)&lt;BR /&gt;rc_support=mssid 2.4G 5G update usbX1 rawifi switchctrl manual_stb 11AC 11AX mbo ofdma wpa3 pwrctrl smart_connect reboot_schedule ipv6 ipv6pt s46 ocnvc PARENTAL2 dnsfilter dnspriv dualwan pptpd openvpnd utf8_ssid printer modem media appbase hdspindown usb_bk frs_feedback dblog findasus atf bwdpi wrs_wbl HTTPS letsencrypt ssh vpnc repeater psta user_low_rssi tcode tr069 jffs2 cfg_wps_btn alexa ipsec_srv mumimo mumimo_5g mumimo_2g qam256_2g qam1024_5g cfg_sync fupgrade afwupg amas eula proxysta mtk account_binding secure_default&lt;BR /&gt;dnsfilter_custom1=8.8.8.8&lt;BR /&gt;dnsfilter_custom2=8.8.8.8&lt;BR /&gt;dnsfilter_custom3=8.8.8.8&lt;BR /&gt;dnsfilter_mode=0&lt;BR /&gt;dnsfilter_enable_x=0&lt;BR /&gt;admin@RT-ASUS:/#&lt;/PRE&gt;&lt;PRE&gt;admin@RT-ASUS:/# nvram set dnsfilter_enable=0&lt;BR /&gt;admin@RT-ASUS:/# nvram show | grep -i dnsfilter&lt;BR /&gt;dnsfilter_rulelist=&lt;BR /&gt;size: 36772 bytes (24668 left)&lt;BR /&gt;rc_support=mssid 2.4G 5G update usbX1 rawifi switchctrl manual_stb 11AC 11AX mbo ofdma wpa3 pwrctrl smart_connect reboot_schedule ipv6 ipv6pt s46 ocnvc PARENTAL2 dnsfilter dnspriv dualwan pptpd openvpnd utf8_ssid printer modem media appbase hdspindown usb_bk frs_feedback dblog findasus atf bwdpi wrs_wbl HTTPS letsencrypt ssh vpnc repeater psta user_low_rssi tcode tr069 jffs2 cfg_wps_btn alexa ipsec_srv mumimo mumimo_5g mumimo_2g qam256_2g qam1024_5g cfg_sync fupgrade afwupg amas eula proxysta mtk account_binding secure_default&lt;BR /&gt;dnsfilter_custom1=8.8.8.8&lt;BR /&gt;dnsfilter_custom2=8.8.8.8&lt;BR /&gt;dnsfilter_custom3=8.8.8.8&lt;BR /&gt;dnsfilter_mode=0&lt;BR /&gt;dnsfilter_enable=0&lt;BR /&gt;dnsfilter_enable_x=0&lt;BR /&gt;admin@RT-ASUS:/#&lt;/PRE&gt;&lt;P&gt;&amp;nbsp;Prima comanda inregistrata cu succes! Observam ca a aparut&amp;nbsp;dnsfilter_enable=0 si s-a modificat si dimensiunea memoriei nvram:&lt;/P&gt;&lt;PRE&gt; size: 36753 bytes (24687 left) vs&amp;nbsp;size: 36772 bytes (24668 left)&lt;/PRE&gt;&lt;P&gt;&amp;nbsp;Cat despre ce face, nu stiu, singura care exista deja avea si _x ca sufix.&lt;/P&gt;&lt;P&gt;dnsfilter_mode=0 si&amp;nbsp;dnsfilter_rulelist="" exista deja setate identic, nu are rost sa le mai incercam.&lt;/P&gt;&lt;P&gt;Validam si ce-am zis eu in legatura cu sintaxa corecta si ce s-ar intampla daca le-ai fi scris corect cel putin dpdv al sintaxei (cheie=valoare):&lt;/P&gt;&lt;PRE&gt;admin@RT-ASUS:/# nvram set iptables=PIZZA&lt;BR /&gt;admin@RT-ASUS:/# nvram show | grep -i tables&lt;BR /&gt;size: 36787 bytes (24653 left)&lt;BR /&gt;iptables=PIZZA&lt;BR /&gt;admin@RT-ASUS:/#&lt;/PRE&gt;&lt;P&gt;Succes, am setat valoarea PIZZA in cheia iptables. Testam ce se intampla daca mai adaugam ceva, se rescrie dupa cum am zis sau nu?&lt;/P&gt;&lt;PRE&gt;admin@RT-ASUS:/# nvram set iptables=PolentaConPatate&lt;BR /&gt;admin@RT-ASUS:/# nvram show | grep -i tables&lt;BR /&gt;size: 36798 bytes (24642 left)&lt;BR /&gt;iptables=PolentaConPatate&lt;BR /&gt;admin@RT-ASUS:/#&lt;/PRE&gt;&lt;P&gt;Se rescrie! Testam si cu ip6tables:&lt;/P&gt;&lt;PRE&gt;admin@RT-ASUS:/# nvram set ip6tables=PIZZA&lt;BR /&gt;admin@RT-ASUS:/# nvram show | grep -i tables&lt;BR /&gt;size: 36814 bytes (24626 left)&lt;BR /&gt;ip6tables=PIZZA&lt;BR /&gt;iptables=PolentaConPatate&lt;BR /&gt;admin@RT-ASUS:/#&lt;/PRE&gt;&lt;P&gt;&amp;nbsp; Dam si un nvram commit urmat de reboot si verificam sa vedem daca avem PIZZA in ip6tables si PolentaConPatate in iptables:&lt;/P&gt;&lt;PRE&gt;admin@RT-ASUS:/# nvram show | grep -i tables&lt;BR /&gt;size: 36821 bytes (24619 left)&lt;BR /&gt;ip6tables=PIZZA&lt;BR /&gt;iptables=PolentaConPatate&lt;/PRE&gt;&lt;PRE&gt;admin@RT-ASUS:/# iptables -S&lt;BR /&gt;-P INPUT DROP&lt;BR /&gt;-P FORWARD DROP&lt;BR /&gt;-P OUTPUT ACCEPT&lt;BR /&gt;-N ACCESS_RESTRICTION&lt;BR /&gt;-N PTCSRVLAN&lt;BR /&gt;-N PTCSRVWAN&lt;BR /&gt;-N logaccept&lt;BR /&gt;-N logdrop&lt;BR /&gt;-A INPUT -m state --state RELATED,ESTABLISHED -j ACCEPT&lt;BR /&gt;-A INPUT -m state --state INVALID -j DROP&lt;BR /&gt;-A INPUT ! -i br0 -j PTCSRVWAN&lt;BR /&gt;-A INPUT -i br0 -j PTCSRVLAN&lt;BR /&gt;-A INPUT -i br0 -m state --state NEW -j ACCEPT&lt;BR /&gt;-A INPUT -i lo -m state --state NEW -j ACCEPT&lt;BR /&gt;-A FORWARD -m state --state RELATED,ESTABLISHED -j ACCEPT&lt;BR /&gt;-A FORWARD -i br0 -o br0 -j ACCEPT&lt;BR /&gt;-A FORWARD -i lo -o lo -j ACCEPT&lt;BR /&gt;-A logaccept -m state --state NEW -j LOG --log-prefix "ACCEPT " --log-tcp-sequence --log-tcp-options --log-ip-options&lt;BR /&gt;-A logaccept -j ACCEPT&lt;BR /&gt;-A logdrop -m state --state NEW -j LOG --log-prefix "DROP " --log-tcp-sequence --log-tcp-options --log-ip-options&lt;BR /&gt;-A logdrop -j DROP&lt;BR /&gt;&lt;BR /&gt;admin@RT-ASUS:/# ip6tables -S&lt;BR /&gt;-P INPUT DROP&lt;BR /&gt;-P FORWARD DROP&lt;BR /&gt;-P OUTPUT DROP&lt;BR /&gt;-N logaccept&lt;BR /&gt;-N logdrop&lt;BR /&gt;-A logaccept -m state --state NEW -j LOG --log-prefix "ACCEPT " --log-tcp-sequence --log-tcp-options --log-ip-options&lt;BR /&gt;-A logaccept -j ACCEPT&lt;BR /&gt;-A logdrop -m state --state NEW -j LOG --log-prefix "DROP " --log-tcp-sequence --log-tcp-options --log-ip-options&lt;BR /&gt;-A logdrop -j DROP&lt;/PRE&gt;&lt;P&gt;&amp;nbsp;Din fericire au ramas doar in nvram si doar ocupa spatiu din acea memorie intrucat nu se regaseste nimic din ce am scris noi acolo in iptables si nici nu va ajunge vreodata. Regulile sunt identice cu cele din verificarea initiala de mai sus.&lt;/P&gt;&lt;P&gt;Concluziile le trage fiecare.&lt;/P&gt;</description>
      <pubDate>Sun, 11 Jan 2026 23:24:39 GMT</pubDate>
      <guid>https://comunitate.orange.ro/t5/internet-fix/despre-dns-urile-orange-romania/m-p/207976#M7046</guid>
      <dc:creator>Viper</dc:creator>
      <dc:date>2026-01-11T23:24:39Z</dc:date>
    </item>
    <item>
      <title>Re: Despre DNS-urile Orange Romania</title>
      <link>https://comunitate.orange.ro/t5/internet-fix/despre-dns-urile-orange-romania/m-p/208000#M7054</link>
      <description>&lt;P&gt;&lt;STRONG&gt;nvram set blablabla&lt;/STRONG&gt; (asa este comanda)&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;nvram commit&amp;nbsp;&lt;/STRONG&gt;(salveaza setarea, se șterge doar la revenirea setărilor din fabrica)&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;reboot&amp;nbsp;&lt;/STRONG&gt;(restart de fiecare dată)&amp;nbsp;&lt;/P&gt;&lt;P&gt;În rest...🤫&lt;/P&gt;</description>
      <pubDate>Mon, 12 Jan 2026 09:32:18 GMT</pubDate>
      <guid>https://comunitate.orange.ro/t5/internet-fix/despre-dns-urile-orange-romania/m-p/208000#M7054</guid>
      <dc:creator>Fost Membru</dc:creator>
      <dc:date>2026-01-12T09:32:18Z</dc:date>
    </item>
    <item>
      <title>Re: Despre DNS-urile Orange Romania</title>
      <link>https://comunitate.orange.ro/t5/internet-fix/despre-dns-urile-orange-romania/m-p/208002#M7056</link>
      <description>&lt;P&gt;Da, da, da. fix ca în exemplele testate de mine mai sus.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Poți testa și singur și să ne arăți rezultate diferite față de ce am obtinut eu.&lt;/P&gt;&lt;P&gt;Până atunci rămân invalide conform propriilor teste făcute publice.&lt;span class="lia-unicode-emoji" title=":mâna_victoriei:"&gt;✌️&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 12 Jan 2026 09:47:29 GMT</pubDate>
      <guid>https://comunitate.orange.ro/t5/internet-fix/despre-dns-urile-orange-romania/m-p/208002#M7056</guid>
      <dc:creator>Viper</dc:creator>
      <dc:date>2026-01-12T09:47:29Z</dc:date>
    </item>
  </channel>
</rss>

