[–]▶ No.1002673>>1002741 >>1005825 >>1011516 >>1031770 [Watch Thread][Show All Posts]
Gentle reminder to disable upnp and update your router firmware yesterday.
▶ No.1002690>>1002694 >>1002703 >>1011903 >>1026356 >>1027491 >>1031759
Why is UPnP bad? I use it for streaming music to kodi from my media server
▶ No.1002694>>1018814
▶ No.1002703>>1031759
>>1002690
UPnP is a piece of cancer which is hard to use. I tried to use it to forward a port and it never worked, so I just switched it off.
▶ No.1002718
>even having wifi in this era
rf cucklets are going to be owned repeatedly until the end of days
▶ No.1002731
Is it disabled on OpenWRT by default?
▶ No.1002741
>>1002673 (OP)
i tried and it crashed
▶ No.1002921
All of my routers are running DDWRT or Tomato, and I don't use UPNP....
▶ No.1002931
▶ No.1003544
>dd-wrt
OpenWRT masterrace!
▶ No.1003568
I always thought UPnP was a bad idea, even before becoming tech literate. Automating something that should only ever be done manually. However, my family uses it, so... welcome, botnet.
▶ No.1004453
▶ No.1004456>>1005478
My ISP puts all its clients behind the NAT with closed ports. Am I safe?
▶ No.1005478
>>1004456
there is absolutely zero reasons to not to disable this crap. and no, you aren't safe ever tbh: your neighbor could be a communist spy who hacks into your computers to steal your precious memes.
▶ No.1005825>>1005826 >>1026288
>>1002673 (OP)
>Check UPnP online tester
>unable to open UPnP ports
>check router
>UPnP is enabled with secure mode
nsa btfo
▶ No.1005826>>1011276
▶ No.1011276
>>1005826
Based nothing-to-hide poster
▶ No.1011426>>1011458 >>1011978
Protip: LEO uses social engineering to catch pedos. They dont bother hacking your PC, they catch dumbasses who enter their email address and/or credit card number into honeypots.
▶ No.1011458
>>1011426
There's more than just pedos that need to secure their shit. Most normies are wide open to attacks from random script kiddies and malware bots that want to encrypt their files (for extortion), or just simply suck up their resources mining for buttcoins, or outright turn them into a botnet zombie for attacking other systems.
▶ No.1011516
>>1002673 (OP)
>Gentile reminder
▶ No.1011883>>1011977
I've never enabled that shit, because my installation on Common Sense 1.12 RC2 alerted me that it might be a retarded move. MAC filtering + insane passkey + reduced TX power to prevent anyone without a dish from even seeing the network. Also my three wifi networks are named US GOVERNMENT - DO NOT CONNECT, so that keeps people away.
▶ No.1011903>>1018814
>>1002690
>I have a firewall but I don't really
▶ No.1011976
literally make a linux box into a router. consumer routers have always been complete shit. even up to date they will typical contain enough vulns that i can find one in 5 minutes
▶ No.1011977
>>1011883
>muh mac filtering
someone can just sniff the air and get your mac you fucking charlatan. your mac isn't a secret. also it's bruteforceable
▶ No.1011978
>>1011426
>you aren't running vulnerable garbage software all over your house? what are you a pedo lmfao [U+12345][U+12345][U+12345][U+12345][U+12345][U+12345][U+12345][U+12345]
▶ No.1018707>>1026281
honestly does anyone know why the fuck there isn't anything that automatically forwards ports requested by applications using some sort of authentication? Or at least some simple way to obtain the port number the application is listening on so you can do the mapping yourself? (e.g. for applications with dynamic ports). Is it because (((they))) hate people hosting anything?
I mean, it's as retarded as wi-fi still using a shared password, despite the existence of WPA2 with EAP-PWD or EAP-EKE.
▶ No.1018814
>>1002694
>>1011903
Wow, good thing I don't forward UPnP ports.
Also
>client-side firewalls
Lmao
▶ No.1018911>>1018943
>>1018815
NAT is not a firewall dum-dum. Home routers don't block jack shit. Their firewalls are so open they will let even your mom through.
▶ No.1018943>>1018985
>>1018911
Firewalls are a meme. There is no scenario in which a home user needs a firewall.
The only thing they're good for is enforcing SELinux-type network policies on a Network, or maybe running malware in a controlled environment.
▶ No.1018985>>1026235
>>1018943
I use firewall to block everything, including all outgoing traffic. I can't even post here without adding a temporary rule to allow it.
▶ No.1026235
>>1018985
This motherfucker, this motherfucker right here knows whats up.
SHUT. DOWN. EVERYTHING.
▶ No.1026281
>>1018707
does it matter? the router vendors would get it wrong, they're actual retards and on top of that they've constantly been compromised by government "security agencies". literally just install linux on a box and put some more ethernet ports on it
▶ No.1026288
>>1005825
Fuck! You dumb bong! Doxxing yourself like that!!!
You are with Virgin Media in the UK, and took the day off work on that Friday in December (you wanted to use up your holidays), to set up the UPnP and some other DIY things & xmas shopping you planned for that day.
Accurate/10
▶ No.1026356
>>1002690
>miniupnpd 1.0 has DOAP request buffer overflow
>all routers come prepackaged with 1.0 version
Jeez mayn at least update
▶ No.1027491>>1027503
▶ No.1027503
>>1027491
Every time I see a setting for it, it's always labeled as "DLNA/UPnP", I always thought they were pretty much the same.
▶ No.1027533>>1027630 >>1027648
If your'e not building your own router with a low end, low power box (like AMD AM1 platform), installing hardened Gentoo with distcc on your main box, you are a pleb.
▶ No.1027630>>1028527
>>1027533
my router with a low end, low power athlon amd 200ge is my daily driver
▶ No.1027648
>>1027533
Get ready to be spectred if you do that
▶ No.1028527
>>1027630
Enjoy your PSP botnet.
▶ No.1031759
>>1002690
because you have no idea what's the difference between UPnP and NAT-PMP
>>1002703
just like him
▶ No.1031770
>>1002673 (OP)
i dont have a router and i dont have upnp. it would not even be useful in this network setup
▶ No.1031771
i used upnp once to forward a port on a router that i didnt have the password to. its also much easier to do it that way than by clicking through some complex webui