Geekzone: technology news, blogs, forums
Guest
Welcome Guest.
You haven't logged in yet. If you don't have an account you can register now.


funnyfela

352 posts

Ultimate Geek
+1 received by user: 48


#295177 10-Mar-2022 11:15
Send private message

Hey guys,

 

At work we have moved from a HG659 to a Ultrahub for our 2nd connection. Trying to forward port 80 and it says Reserved for internal use. Also tried to DMZ as a temp fix (only temp don't panic) but it specified it won't do a bunch, including 80.

 

I don't mind changing the access port for the gui but I can't find it? Can I achieve this at all or do I need to get another router.

 

Cheers





If you have to run heating in winter, you don’t own enough computers.


Filter this topic showing only the reply marked as answer Create new topic
Behodar
11094 posts

Uber Geek
+1 received by user: 6071

Trusted
Lifetime subscriber

  #2884314 10-Mar-2022 11:33
Send private message

I don't know the answer, and I'm sorry to be 'that guy', but have you considered using HTTPS (443) instead?




Morm
87 posts

Master Geek
+1 received by user: 20


  #2884315 10-Mar-2022 11:38
Send private message

The Ultra hub does not do port 80 forwarding as it reserves the port for remote access to its own menu.

 

You'll need to use an HG659 or alternate router instead.


funnyfela

352 posts

Ultimate Geek
+1 received by user: 48


  #2884316 10-Mar-2022 11:40
Send private message

Turns out DMZ works even though it says it doesn't.

 

Sigh. At least a temp fix.





If you have to run heating in winter, you don’t own enough computers.




funnyfela

352 posts

Ultimate Geek
+1 received by user: 48


  #2884318 10-Mar-2022 11:41
Send private message

Behodar:

 

I don't know the answer, and I'm sorry to be 'that guy', but have you considered using HTTPS (443) instead?

 

 

Unfortunately not something I can change right now. :/





If you have to run heating in winter, you don’t own enough computers.


freitasm
BDFL - Memuneh
80646 posts

Uber Geek
+1 received by user: 41030

Administrator
ID Verified
Trusted
Geekzone
Lifetime subscriber

  #2884333 10-Mar-2022 12:09
Send private message

What's the server running? Is it hardened? Do you have processes in place to burn this machine to the ground in about 30 minutes? 





Referral links: Quic Broadband (free setup code: R587125ERQ6VE) | Samsung | AliExpress | Wise | Sharesies 

 

Support Geekzone by subscribing (browse ads-free), or making a one-off or recurring donation through PressPatron.

 


michaelmurfy
meow
13579 posts

Uber Geek
+1 received by user: 10910

Moderator
ID Verified
Trusted
Lifetime subscriber

  #2884341 10-Mar-2022 12:22
Send private message

DMZ should never even be a temporary fix. You expose everything including ports that shouldn't ever be on the internet and the internet is a very hostile place.

 

I flicked you a private message with more information given this is a rather serious security oversight. You're better to create a port forward to another port (eg 8080) than expose a server via a DMZ. It is not an if this will be pwned, it is a when this will get pwned.





Michael Murphy | https://murfy.nz
Referral Links: Quic Broadband (use R122101E7CV7Q for free setup)

Are you happy with what you get from Geekzone? Please consider supporting us by subscribing.
Opinions are my own and not the views of my employer.


 
 
 

Shop now on AliExpress (affiliate link).
funnyfela

352 posts

Ultimate Geek
+1 received by user: 48


  #2884423 10-Mar-2022 14:33
Send private message

Appreciate the concerns team :) Least people care for others here, thus why I hang around haha.

 

Don't stress, its back to port forward only on a random router I had around. The ultrahub worked well, except for that small downside. Tad annoying but ah well.

 

Now to convince the powers that be to move to hosted for the small webserver... Not like they're expensive and gets rid of all these issues.

 

(FWIW it just runs a small site for 'internal' use by multiple sites. Nothing major at all, was a project someone built and it just stayed onsite once it was done)





If you have to run heating in winter, you don’t own enough computers.


freitasm
BDFL - Memuneh
80646 posts

Uber Geek
+1 received by user: 41030

Administrator
ID Verified
Trusted
Geekzone
Lifetime subscriber

  #2884426 10-Mar-2022 14:36
Send private message

Worst case, if you need external access to it could consider Cloudflare Tunnel (although would need to delegate DNS to Cloudflare).





Referral links: Quic Broadband (free setup code: R587125ERQ6VE) | Samsung | AliExpress | Wise | Sharesies 

 

Support Geekzone by subscribing (browse ads-free), or making a one-off or recurring donation through PressPatron.

 


Filter this topic showing only the reply marked as answer Create new topic








Geekzone Live »

Try automatic live updates from Geekzone directly in your browser, without refreshing the page, with Geekzone Live now.



Are you subscribed to our RSS feed? You can download the latest headlines and summaries from our stories directly to your computer or smartphone by using a feed reader.