Geekzone: technology news, blogs, forums
Guest
Welcome Guest.
You haven't logged in yet. If you don't have an account you can register now.


View this topic in a long page with up to 500 replies per page Create new topic
1 | 2 
chevrolux
4962 posts

Uber Geek
Inactive user


  #2006645 2-May-2018 17:43
Send private message

michaelmurfy:

 

@chevrolux To be honest I think a Mikrotik is much more difficult to secure / set up VPN for a new user than using the PiVPN scripts. With PiVPN it is very hard to muck it up which is why I like it and it has very good doco.

 

 

Yep turns out I should have Googled that. PiVPN looks great for setting up OpenVPN - that installer looks fantastic.

 

If you want to be able to use Windows/Android/IOS native clients though, Mikrotik with L2TP/IPsec =)




Laworder

40 posts

Geek


  #2011577 9-May-2018 11:28
Send private message

Sorted!  This NVR is a very recent release, and since DVR's and NVR's have a history of not being secure as per a number of posters here,  it looks like vendor has overcompensated and gone over the top with security. They were one of the vendors that got stung by the exploit posted by michaelmurphy... and it appears they have learnt from that. Upon further investigation I discovered some fairly buried menus in the NVR, and found that it has its own internal firewall with its own NAT which also needs to be set up. It also uses two factor authentication with encrypted password and UID, plus it also has its own VPN running back to the vendors own server which needs to be set up and running with a separate user ID and password (also encrypted) before it opens up the ports.... Once I had set all of that up - the ports were open and I was able to then access it using vendor provided smartphone app with the username/password and UID

 

 

 

Thank you everyone for your help, and the Rasberry Pi I bought I may put into service to run a VPN into my old DVR which is now running at my tenants property (no open ports on their router as yet though!)


Spyware
3761 posts

Uber Geek

Lifetime subscriber

  #2012671 9-May-2018 13:19
Send private message

Looks like Swann cloud uses DDNS to look back at WAN interface with standard ports forwarded, no mention of any VPN outbound or inbound in manual. NAT section is to enable UPnP. You haven't convinced me.




sbiddle
30853 posts

Uber Geek

Retired Mod
Trusted
Biddle Corp
Lifetime subscriber

  #2012717 9-May-2018 14:21
Send private message

Hasn't convinced me either.

 

I'm firmy of the opinion that routers shouldn't have port forward capabilities - because they're not needed by 99% of people. A lot of people set up port forwards because they think they need them when they actually don't.

 

Any port forward is much like leaving your front door open at home. Anybody can snoop inside your house, and for years may not steal anything until one day you find your house cleaned out.

 

 

 

 


1 | 2 
View this topic in a long page with up to 500 replies per page Create new topic





News and reviews »

Air New Zealand Starts AI adoption with OpenAI
Posted 24-Jul-2025 16:00


eero Pro 7 Review
Posted 23-Jul-2025 12:07


BeeStation Plus Review
Posted 21-Jul-2025 14:21


eero Unveils New Wi-Fi 7 Products in New Zealand
Posted 21-Jul-2025 00:01


WiZ Introduces HDMI Sync Box and other Light Devices
Posted 20-Jul-2025 17:32


RedShield Enhances DDoS and Bot Attack Protection
Posted 20-Jul-2025 17:26


Seagate Ships 30TB Drives
Posted 17-Jul-2025 11:24


Oclean AirPump A10 Water Flosser Review
Posted 13-Jul-2025 11:05


Samsung Galaxy Z Fold7: Raising the Bar for Smartphones
Posted 10-Jul-2025 02:01


Samsung Galaxy Z Flip7 Brings New Edge-To-Edge FlexWindow
Posted 10-Jul-2025 02:01


Epson Launches New AM-C550Z WorkForce Enterprise printer
Posted 9-Jul-2025 18:22


Samsung Releases Smart Monitor M9
Posted 9-Jul-2025 17:46


Nearly Half of Older Kiwis Still Write their Passwords on Paper
Posted 9-Jul-2025 08:42


D-Link 4G+ Cat6 Wi-Fi 6 DWR-933M Mobile Hotspot Review
Posted 1-Jul-2025 11:34


Oppo A5 Series Launches With New Levels of Durability
Posted 30-Jun-2025 10:15









Geekzone Live »

Try automatic live updates from Geekzone directly in your browser, without refreshing the page, with Geekzone Live now.



Are you subscribed to our RSS feed? You can download the latest headlines and summaries from our stories directly to your computer or smartphone by using a feed reader.