Geekzone: technology news, blogs, forums
Guest
Welcome Guest.
You haven't logged in yet. If you don't have an account you can register now.


Filter this topic showing only the reply marked as answer View this topic in a long page with up to 500 replies per page Create new topic
1 | 2 | 3 | 4 | 5 | 6 | 7 | 8 | 9 | 10 | 11 | 12 | 13
'That VDSL Cat'
10777 posts

Uber Geek

Trusted
Spark
Subscriber

  # 2306486 26-Aug-2019 21:41
3 people support this post
Send private message quote this post

NickMack:

Agree.. IOT stuff typically isnt designed with security in mind and therefore making it directly available on the net is a mindfield searching for disaster ;-)

Nick

 

There we go! this is a security feature! ;)





#include <std_disclaimer>

 

Any comments made are personal opinion and do not reflect directly on the position my current or past employers may have.


526 posts

Ultimate Geek

Trusted
2degrees

  # 2306489 26-Aug-2019 21:47
Send private message quote this post

hio77:

NickMack:

Agree.. IOT stuff typically isnt designed with security in mind and therefore making it directly available on the net is a mindfield searching for disaster ;-)

Nick


There we go! this is a security feature! ;)



Bright "Spark" ;-)




nickmack GZ Signature


 
 
 
 


1746 posts

Uber Geek


  # 2306491 26-Aug-2019 21:50
Send private message quote this post

I have set up no port forwarding to devices, have no idea how they work.

 

Created account, user name password, load an applic on phone.

 

It works at moment, and can access devices when away from home on mobile. Whether CG-NAT will break or not don't know, but when away from home the applic can still access at moment.

 

I'm also paid for 1 year geo unblocking service, will it break that?

 

Anyway I'm the customer at end of day and do not see why need to argue point, as can only see downsides to this and no upsides and there is an easy way to avoid this uncertainty.

 

Contract finish's in 11 days, even though got to give months notice may be safer to wait till it finish's in case of a date muck up, and get break fees.

 

Looked at costs 2degrees with static ip, phone and free Amazon for at least 6 months $110, Spark 100/20, Netflix HD free, Lightbox Free, phone $109, so Spark $1 cheaper and provides more value Entertainment add ons.

 

Netflix HD plan $16.99 and I'd be prepared to pay $4 for Light Box, so almost $21 extra value Spark, Amazon value $10 and no guarantee what happens when the time runs out.

 

Prepared to give people $200 credit when join, but not a free Static IP to keep????

 

I seem to last with Spark four years plus, but each time move away something happens just within/ over the year that has me moving back. I don't take switching lightly.

 

Coming up to three years with Skinny, the last non Spark ISP I was with tried to increase prices on me by 25%, (something stupid like $80 up to $100) and then tried to argue I had to pay it because was under contract, I sent a copy of an Email just over a year old proving not the case, and then they sent one back saying my internet was terminated immediately. Suited me fine.


BDFL - Memuneh
64454 posts

Uber Geek

Administrator
Trusted
Geekzone
Lifetime subscriber

  # 2306494 26-Aug-2019 21:58
Send private message quote this post

If you did not forward poets then either it is UPnP or using a central relay system. The later is better.

If you unblock service uses your IP to identify your connection then yes it will not work well




23 posts

Geek


  # 2306496 26-Aug-2019 22:13
Send private message quote this post

freitasm: If you did not forward poets then either it is UPnP or using a central relay system. The later is better...

 

 

 

Better ??  but many of these are dodgy servers in China.


812 posts

Ultimate Geek

Trusted

  # 2306499 26-Aug-2019 22:16
Send private message quote this post

decibel:

freitasm: If you did not forward poets then either it is UPnP or using a central relay system. The later is better...


 


Better ??  but many of these are dodgy servers in China.


Better one suspect Chinese outfit than anyone who wants in.




Anything I say is the ramblings of an ill informed, opinionated so-and-so, and not representative of any of my past, present or future employers, and is also probably best disregarded.


1746 posts

Uber Geek


  # 2306508 26-Aug-2019 22:27
Send private message quote this post

freitasm: If you did not forward poets then either it is UPnP or using a central relay system. The later is better.

If you unblock service uses your IP to identify your connection then yes it will not work well

 

Yes, it'll be UPnP or central relay, they work from the cloud if that gives any idea, I don't believe the fritz would allow port forwarding without me doing it directly by logging into it.

 

And yes with unblock service I have to update IP address if it changes, so looks like one service definitely impacted.

 

So looks like one service definitely impacted with uncertainty on others.

 

So options on table at present to not be impacted/ have uncertainty, pay $10 a month more for static, or change ISP's.


 
 
 
 


Mr Snotty
8822 posts

Uber Geek

Moderator
Trusted
Lifetime subscriber

  # 2306514 26-Aug-2019 23:12
One person supports this post
Send private message quote this post

rugrat:

 

So options on table at present to not be impacted/ have uncertainty, pay $10 a month more for static, or change ISP's.

 

I said it once. I am going to say it again.

 

1) You're jumping to conclusions once again. Again, there is a little while before 2degrees switches customers to this. I feel that they've heard what people have to say on here, and will action it and likely come up with plans for customers that don't require a static IP but require a public IP. Other providers do it (Trustpower, BigPipe back in the day and NOW Broadband).
2) NONE of the things you mentioned require a public IP address. Even the cheap IoT lightbulbs all link back to a central cloud service in China (more than likely Tuya). Sensibo and WiFi Heatpump controllers don't require any port forwarding either as they talk to a central server.

 

If you didn't read this thread then for you it'll be life as usual. Everything of yours will likely continue to work (including the Smart DNS unblocker in many cases from experience). You likely wouldn't even have noticed a change.

 

IMO you'll actually be better off with CG-NAT as like you say, you don't understand port forwarding. These sorts of people are prone to exposing themselves to security problems and run into issues down the track. If you've got any IoT devices that explain that you need to do a port forward (and refuse to work without this) then get them off your network ASAP.

 

Rule of thumb - if you don't run any hosted services (eg, web servers, game servers) and just use the internet "as per normal" then you'll likely not notice anything with switching to CG-NAT. I've been on it before, it isn't actually that bad.





1746 posts

Uber Geek


  # 2306533 27-Aug-2019 00:18
Send private message quote this post

Ok, I'll wait for now.

 

Still have six months Prime Video left, as got it half way through contract so get some more use out of it, and I do like Prime Video. Lot of old stuff which like watching.

 

I'm not over confident on the unblocker, but if it doesn't work out and no agreeable solutions can solve within month ( trying to minimize overlap of services including notice period).

 

The only port forwarding have done is in relation to torrents, and haven't done them in a long time. Prefer streaming and odd recent block buster movie Apple TV, 4k Aquaman 99 cents this week :)


4173 posts

Uber Geek


  # 2306552 27-Aug-2019 07:16
Send private message quote this post

So just to be clear, customers can still pay for a public IP?

With a pay monthly mobile 2degrees is still the cheapest for a fibre 'MAX' plan at $100/month.

4369 posts

Uber Geek

Trusted
Subscriber

  # 2306574 27-Aug-2019 08:38
Send private message quote this post

michaelmurfy:

 

2) NONE of the things you mentioned require a public IP address. Even the cheap IoT lightbulbs all link back to a central cloud service in China (more than likely Tuya). Sensibo and WiFi Heatpump controllers don't require any port forwarding either as they talk to a central server.

 

 

So does this mean that my Philips Hue system would still be remotely accessible under CGNAT? 

 

Sorry if that's a dumb question, but I don't understand all the technical stuff in this thread.


6902 posts

Uber Geek

Trusted
Subscriber

  # 2306577 27-Aug-2019 08:51
Send private message quote this post

Hi, if you have a port forward to the Hue gateway in your home/lan, then no it will not, but as others above have mentioned about IoT things, these are potentially vunerable devices waiting for great pickings for bad folk to exploit, why would you expose a device like that which i am guess is probably easily capable of acting as a jump injection point to the rest of your lan.

 

Cyril


BDFL - Memuneh
64454 posts

Uber Geek

Administrator
Trusted
Geekzone
Lifetime subscriber

152 posts

Master Geek


  # 2306587 27-Aug-2019 09:05
Send private message quote this post

So reading this tread, the main issue would be if you have set up a service like dyndns would be affected?


6902 posts

Uber Geek

Trusted
Subscriber

  # 2306591 27-Aug-2019 09:09
Send private message quote this post

Delorean:

 

So reading this tread, the main issue would be if you have set up a service like dyndns would be affected?

 

 

Depends why you have dyndns setup, if its to know your public IP to allow you to track it to connect via port forwards to lan resources, or if you are using it to register for a dns proxy service (like dns4me) then yes it will impact you and you would be better not on CG-NAT.

 

Cyril


1 | 2 | 3 | 4 | 5 | 6 | 7 | 8 | 9 | 10 | 11 | 12 | 13
Filter this topic showing only the reply marked as answer View this topic in a long page with up to 500 replies per page Create new topic



Twitter and LinkedIn »



Follow us to receive Twitter updates when new discussions are posted in our forums:



Follow us to receive Twitter updates when news items and blogs are posted in our frontpage:



Follow us to receive Twitter updates when tech item prices are listed in our price comparison site:





News »

Amazon Studios announces New Zealand as location for its upcoming series based on The Lord of the Rings
Posted 18-Sep-2019 17:24


The Warehouse chooses Elasticsearch service
Posted 18-Sep-2019 13:55


Voyager upgrades core network to 100Gbit
Posted 18-Sep-2019 13:52


Streaming service Acorn TV launches in New Zealand with selection with British shows
Posted 18-Sep-2019 08:55


Bitcoin.com announces partnership with smartphone manufacturer HTC
Posted 16-Sep-2019 21:30


Finalists Announced for Microsoft NZ Partner Awards
Posted 16-Sep-2019 19:37


OPPO Showcases New CameraX Capabilities at Google Developer Days China 2019
Posted 15-Sep-2019 12:42


New Zealand PC Market returns to growth
Posted 15-Sep-2019 12:24


Home sensor charity director speaks about the preventable death which drives her to push for healthy homes
Posted 11-Sep-2019 08:46


Te ao Maori Minecraft world set to inspire Kiwi students
Posted 11-Sep-2019 08:43


Research reveals The Power of Games in New Zealand
Posted 11-Sep-2019 08:40


Ring Door View Cam now available in New Zealand
Posted 11-Sep-2019 08:38


Vodafone NZ to create X Squad
Posted 10-Sep-2019 10:25


Huawei nova 5T to be available 20th September
Posted 5-Sep-2019 11:55


Kogan.com launches prepay challenger brand Kogan Mobile in New Zealand
Posted 3-Sep-2019 11:42



Geekzone Live »

Try automatic live updates from Geekzone directly in your browser, without refreshing the page, with Geekzone Live now.


Support Geekzone »

Our community of supporters help make Geekzone possible. Click the button below to join them.

Support Geezone on PressPatron



Are you subscribed to our RSS feed? You can download the latest headlines and summaries from our stories directly to your computer or smartphone by using a feed reader.

Alternatively, you can receive a daily email with Geekzone updates.