Afrihost being Afrihost again ...

jeevadotnet

Well-Known Member
Joined
Nov 8, 2018
Messages
291
Reaction score
238
I already cancelled 9 of my lines with Afrihost over the last couple of years, due to them being absolutely retarded (WebSquad is an excellent ISP btw). However, my parents line is still active on it since they don't want to move from FsckFoot to OpenSh1t.

This morning I check tunnels are down between our routers and guess what.

Without any form of communications, no e-mail, no sms, whatsapp, or whatever, they decided just to switch my parents connectivity to that of behind a CG-NAT. I checked on their mikrotik router to confirm it.

What a f-ing joke of an ISP.

This is what their WhatsApp helpdesk jockey says, after I logged a ticket:
1760022392969.png
 
I already cancelled 9 of my lines with Afrihost over the last couple of years, due to them being absolutely retarded (WebSquad is an excellent ISP btw). However, my parents line is still active on it since they don't want to move from FsckFoot to OpenSh1t.

This morning I check tunnels are down between our routers and guess what.

Without any form of communications, no e-mail, no sms, whatsapp, or whatever, they decided just to switch my parents connectivity to that of behind a CG-NAT. I checked on their mikrotik router to confirm it.

What a f-ing joke of an ISP.

This is what their WhatsApp helpdesk jockey says, after I logged a ticket:
View attachment 1854594
"Your provider"... who signs your paycheck? Maybe your spouse is the provider.
 
Last edited:
I already cancelled 9 of my lines with Afrihost over the last couple of years, due to them being absolutely retarded (WebSquad is an excellent ISP btw). However, my parents line is still active on it since they don't want to move from FsckFoot to OpenSh1t.

This morning I check tunnels are down between our routers and guess what.

Without any form of communications, no e-mail, no sms, whatsapp, or whatever, they decided just to switch my parents connectivity to that of behind a CG-NAT. I checked on their mikrotik router to confirm it.

What a f-ing joke of an ISP.

This is what their WhatsApp helpdesk jockey says, after I logged a ticket:
View attachment 1854594
CGNAT is being widely implemented due to a shortage of IP v4 space. They can potentially allocate you a public or buy a static. Or alternatively maybe a v6 tunnel as it should be dual stack?
 
Happened to me too last month. They randomly put my line behind CG-NAT and killed my port forwarding. No warning, no heads-up, nothing. Classic Afrihost move.
 
CGNAT is being widely implemented due to a shortage of IP v4 space. They can potentially allocate you a public or buy a static. Or alternatively maybe a v6 tunnel as it should be dual stack?
Yes, but notify your client at least so that they can make prior plans.... Change Management anyone? . Not randomly reset their internet and bring them back on CGNAT.
 
Yes, but notify your client at least so that they can make prior plans.... Change Management anyone? . Not randomly reset their internet and bring them back on CGNAT.

To be fair 90.99991% of their customers would simply be confused by such a notification.

But what they could have done is a port scan and informed those customers specifically, but this is also a huge ballache.

This is not an Afrihost issue so much as a general ISP one.
 
Yes, but notify your client at least so that they can make prior plans.... Change Management anyone? . Not randomly reset their internet and bring them back on CGNAT.

I'm using Tailscale now to create a VPN between my home router and my mom's router at her house which I manage remotely. It's CG-NAT proof. Also good for opening up your network for CCTV, Home Assistant, etc without having to do any port forwarding.
 
I'm using Tailscale now to create a VPN between my home router and my mom's router at her house which I manage remotely. It's CG-NAT proof. Also good for opening up your network for CCTV, Home Assistant, etc without having to do any port forwarding.

Same I did but just with Cloudflare when I was on 5G.
 
I already cancelled 9 of my lines with Afrihost over the last couple of years, due to them being absolutely retarded (WebSquad is an excellent ISP btw). However, my parents line is still active on it since they don't want to move from FsckFoot to OpenSh1t.

This morning I check tunnels are down between our routers and guess what.

Without any form of communications, no e-mail, no sms, whatsapp, or whatever, they decided just to switch my parents connectivity to that of behind a CG-NAT. I checked on their mikrotik router to confirm it.

What a f-ing joke of an ISP.

This is what their WhatsApp helpdesk jockey says, after I logged a ticket:
View attachment 1854594
Hi.

We understand how frustrating that must’ve been, finding your connection suddenly behind CG-NAT can definitely mess with remote setups and tunnels. Our apologies about the inconvenience there.

Just to give a bit of context: as per our Terms & Conditions (Section 15: IP Provisioning), Afrihost may change or reassign IPs as needed for network management. Because IPv4 space is getting really tight, we sometimes have to place certain lines behind CG-NAT, especially on some network providers where public IPv4s are limited.

Right now, static public IPs are only available on Openserve lines , it’s unfortunately not something we can offer on other fibre networks yet.

If you pop us a DM with your details, we’ll happily take a look and see if there’s anything else we can do to make things easier for you.
 
Same I did but just with Cloudflare when I was on 5G.

Ja, there's a few ways to do it. Before Tailscale I was using a VPS running Ubuntu with Wireguard and wg-easy, essentially running my own control plane for all VPN clients. It was a nightmare to setup and maintain though. Tailscale is so much easier. Cloudflare Tunnels also works well for exposing services without having to install a VPN client on each device that needs to access those services.
 
Hi.

We understand how frustrating that must’ve been, finding your connection suddenly behind CG-NAT can definitely mess with remote setups and tunnels. Our apologies about the inconvenience there.

Just to give a bit of context: as per our Terms & Conditions (Section 15: IP Provisioning), Afrihost may change or reassign IPs as needed for network management. Because IPv4 space is getting really tight, we sometimes have to place certain lines behind CG-NAT, especially on some network providers where public IPv4s are limited.

Right now, static public IPs are only available on Openserve lines , it’s unfortunately not something we can offer on other fibre networks yet.

If you pop us a DM with your details, we’ll happily take a look and see if there’s anything else we can do to make things easier for you.
Yeah… the kind of response one would expect from your company.
For what it’s worth you’re the problem, not the clients.
Other ISPs worth a damn can do much more than you, and offer static IP on all manner of FTTH providers
 
We've been hearing about IPV4 drought since the late 90's.

I'm using Tailscale now to create a VPN between my home router and my mom's router at her house which I manage remotely. It's CG-NAT proof. Also good for opening up your network for CCTV, Home Assistant, etc without having to do any port forwarding.
I already run a headscale /tailscale node for other devices, but I don't want to retool my parents just because Afrihost decided to r4pe a h00k3r and move them to CG-NAT. I already run 70+ LXC containers over a 5 host proxmox cluster just to keep my smarthome systems alive, no cloud services & google free.
 
Top
Sign up to the MyBroadband newsletter
X