FIREWALL STUFF

Kyle Vanditmars kylevan at telus.net
Thu Feb 22 17:26:22 UTC 2007


On Thu, 2007-02-22 at 10:34 -0500, Maurice Murphy wrote:
> Many thanks, Jean-François,
> 
> I have already changed the router password, thanks to Alfred's 
> suggestion. Can you help me with "disable remote administration over the 
> WAN interface and only allow if possible local administration over 
> https. " I'm not too sure how to do this, sometimes us older (82) 
> hackers are somewhat ubuntu/linux challenged!
> 
> I will ensure that all updates are installed.
> 
> Maurice
> 

Some routers will allow you to connect over the internet through a s
pecific port (generally 8080, I've found) to administer the router. I
really don't know why this is included on consumer grade stuff, as it's
just another vulnerability that's never going to be used, but anyway.

I would just go through the various configuration pages of your router
and look for something to the effect of "remote logon" or "remote
administration." and see if you can disable that.  What brand/model of
router do you have?  You might be able to go to the manufacturer's
website and download the user manual and see if you even have the
particular feature.

local admin over https means that when you administer your router over
the LAN, instead of using plain http, it uses https, which is secure and
encrypted.  your router, again, would have to support this, so check
your product manual.





More information about the ubuntu-ca mailing list