Welcome Guest ( Log In | Register )

Bump Topic Topic Closed RSS Feed

Outline · [ Standard ] · Linear+

Unifi WARNING TO ALL UNIFI USERS, Threat warning, read inside

views
     
TSrizvanrp
post May 29 2010, 06:59 AM, updated 15y ago

Getting Started
Group Icon
Elite
195 posts

Joined: Sep 2006



You know, the first day I got Unifi, I asked you guys (TMnet) if I would be able to use my own router. Well you said no. When I discovered the SSH daemon running on the router (which used a different password than the web user interface), you said you couldn't disclose the password. An hour ago, I discovered that password and the reason why you won't give it out.

TM, you basically planted a bloody backdoor in everyone's DIR-615 router.

user posted image

What is this? What are all these hidden options in this special account you neglected to tell us about? You mean to say I could have used my own router all along? You mean people spent >RM1000 on Cisco grade equipment just because you didn't want to tell them about this?

user posted image

You mean in a sample group of 900 nodes, 600 of them who think their networks are 'secure' are actually completely open? Even those companies on Unifibiz which use the same router? WOW..

That's right guys, TM named the "administrator" account on the DIR-615 as "admin" when there was actually a secondary administrator account with a higher access level. The VLAN settings were never locked out, that account which we all assumed was the admin (because they told us so) was actually a noob piece of shit with <60% access to the router. This account has the same user/pass across every Unifi router that has been given out so far and cannot be changed or even seen with the default 'admin' account.

----

What's the fix?

user posted image

Untick remote management. If you have a firewall on it, block all the ports (TCP 22/23/80/8080/443) from WAN access.

vmad.gif

UPDATE : If you're a Unifi user on firmware 7.05, if you read everything in the management page you can find the username for this account. The pass is the same, once you get access log in and reconfigure your router security properly. I can't believe not a single technician set this account up properly.

----

FAQ

Some less tech-savvy people have asked me what this all means.. so here goes -

Q: What is this and how is this possible?
A: Every consumer router has a username/password combination to access it. This is a basic security feature to ensure that only you (the owner) can access it. This Unifi router however, has two accounts by default. When TM installed Unifi in your home/office, they only configured the first account. The second account -- which has a higher level of access was left configured with its default username/password. They also neglected to inform the customers (you) and their own technicians who did the install about this second account. As every Unifi user is 'forced' to use this router and this account has not been configured properly, every Unifi user is also vulnerable to have their routers accessed by unauthorized users simply by using this default account user/password combination.

Q: So what if outsiders can access my router? What does this mean?
A: The Unifi router is not just a simple box that sits on your network. It can be considered to be a full computer system and has the capability to run any executable that's made for it. Since an outsider can access your router, he can also do the following :

- Turn your router into a proxy, if he commits any crimes online it will be traced back to you instead and you will take the fall for it
- Use your 10/20mbps Unifi account so he doesn't have to pay for his
- Use up your bandwidth quota (once quotas are implemented) as much as he wants and you will pay for it
- 'Spy' on your Internet connection and view every site you are visiting
- Forward all connections to your home PC using DMZ, making your home PC completely vulnerable to Internet attacks.. if you have an open NAS (network attached storage) on your home network, he will be able to access all your files

And the list goes on and on..

Q: So how can I fix this?!
A: Make sure remote management is disabled (as it is enabled by default). With this enabled, anybody with this default user/pass combination can access your home router and perform the attacks I mentioned above. This fix however, doesn't prevent people on your own LAN network from accessing the router. If you are running an open Unifi hotspot (shop wifi, etc) and you are using the default DIR-615 router, the only fix is to access this second account and change the password.

I've uploaded a Router Security guide and VLAN bridging guide (to use your own hardware with Unifi) on my website @ http://unifi.athena.my

This post has been edited by rizvanrp: Jun 12 2010, 08:19 PM
xxmetalhead86xx
post May 29 2010, 07:21 AM

Getting Started
**
Junior Member
223 posts

Joined: Feb 2008
From: Sunway/Kuching


wooo nice info.... pro la u...
YoYaYo
post May 29 2010, 07:27 AM

New Member
*
Junior Member
18 posts

Joined: Apr 2007
Wow... this should be ... a STICKY!


Zepx
post May 29 2010, 07:30 AM

Regular
******
Senior Member
1,232 posts

Joined: Dec 2005
Good share rizvanrp!
MX510
post May 29 2010, 07:31 AM

Love Me Sin Hate Me Sinner
*******
Senior Member
4,038 posts

Joined: Aug 2005
From: Earth



Flash to dd-wrt n disable the remote management
palmjack
post May 29 2010, 07:38 AM

Getting Started
**
Junior Member
84 posts

Joined: Feb 2005
@Riz thank you very much for this headsup.

Moogle Stiltzkin
post May 29 2010, 07:42 AM

Look at all my stars!!
*******
Senior Member
4,451 posts

Joined: Jan 2003
user posted image

TIME TO MASS COMPLAIN TO CFM. EVERYBODY On your mark.... GO!!



As an after thought, i hope they don't delay Unifi in my area because of this shocking.gif

This post has been edited by Moogle Stiltzkin: May 29 2010, 07:56 AM
morpheuzneo
post May 29 2010, 07:59 AM

Getting Started
**
Junior Member
238 posts

Joined: Jul 2008
thanks rizvan for sharing..!

great info for all of us - whether already a subscriber or not yet one.. (me lah..)

now next step :

1. Is there anything good we can do with this info?

2. Any setting that we can change to improve our speed / bandwidth? (maybe basic 5mb upgrade to 10? tongue.gif)


zenquix
post May 29 2010, 08:35 AM

Life is short!
*******
Senior Member
2,552 posts

Joined: Jan 2008


thanks for the headsup. was digging thru the router and think i found the account... luckily i already disable remote management smile.gif

Edit: and i found the password. very tempted to change it...

This post has been edited by zenquix: May 29 2010, 08:38 AM
Moogle Stiltzkin
post May 29 2010, 08:43 AM

Look at all my stars!!
*******
Senior Member
4,451 posts

Joined: Jan 2003
Just curious what is their purpose for doing this ???

1. more control to monitor unifi user usage ???

2. customer service support to help configure modem and router ???


Reason 1 i don't need, 2 i don't need if it means reason 1 :/

For Unifi should i get VPN ;x ??

This post has been edited by Moogle Stiltzkin: May 29 2010, 08:44 AM
xxerton
post May 29 2010, 09:06 AM

Getting Started
**
Junior Member
62 posts

Joined: Apr 2006
hahaha i had a good laugh...
TM such a big corporate could afford such half-past-six cowboy solution doh.gif
kons
post May 29 2010, 09:10 AM

Конс
Group Icon
Moderator
6,180 posts

Joined: Oct 2004



It's normal for UniFi or normal DSL broadband.
Those guys who installed the riger modems at my new house last time also enabled remote management and locked out the admin mgmt account.
I have replaced them straight away.

As long as it's RJ45/RJ11, I guess it's always possible to use our own equipment.

gkl83
post May 29 2010, 09:40 AM

Look at all my stars!!
*******
Senior Member
8,377 posts

Joined: Nov 2004
is it possible or legal to replace TM's DIR-615?
Moogle Stiltzkin
post May 29 2010, 09:44 AM

Look at all my stars!!
*******
Senior Member
4,451 posts

Joined: Jan 2003
QUOTE(gkl83 @ May 29 2010, 09:40 AM)
is it possible or legal to replace TM's DIR-615?
*
I don't see why not. As long as you don't try that hack riv said possible to increase your speed to 100mb or any other speed then your subscribed speed ;x
akidos
post May 29 2010, 09:45 AM

On my way
****
Junior Member
606 posts

Joined: Apr 2008



gg ....
Sting Ray
post May 29 2010, 10:07 AM

Getting Started
**
Junior Member
153 posts

Joined: Apr 2006


hi rizvanrp, under the secondary administrator account is there any option to allow VPN passthrough ? my wife's VPN connection problem is still not resolved and Unifi service centre didn't respond to my emails at all. vmad.gif
thomasyke
post May 29 2010, 10:49 AM

Casual
***
Junior Member
409 posts

Joined: Jun 2007
From: <20k group
If port 80 is blocked, how is facebook gonna reply to my port 80 request for Restaurant City~ =X

"but me no have webserver~"

This post has been edited by thomasyke: May 29 2010, 10:50 AM
DeanKueh
post May 29 2010, 11:44 AM

Enthusiast
*****
Senior Member
700 posts

Joined: Jul 2007
From: Malaysia
gj. someone should post this up on 'The Star' tongue.gif
infra
post May 29 2010, 11:45 AM

Getting Started
**
Junior Member
249 posts

Joined: Nov 2008
From: Penang > AmanSiara > Penang


Dlink DIR-615 default administrator login is not "admin" meh? I thought only can login as "admin" or "user" only ma...got other type of login ah??
ahpek26
post May 29 2010, 12:15 PM

Casual
***
Junior Member
475 posts

Joined: Apr 2007


Ops they're going to tell you about this but hey, your guinea pigs and test subjects which is on the "need to know only" basis. Plus even if they tell you about it, its not like most unifail customers would care since they don't get tech stuff like this.

Arguably tech savvy users would know what to do with it but lets face it, some people who uses streamyx for 2 years and more wouldn't even know how to check their line status; remote management wha...??

I smell job opportunity from TM, ROFL.
iipohbee
post May 29 2010, 12:28 PM

On my way
****
Senior Member
603 posts

Joined: Dec 2008
QUOTE(Sting Ray @ May 29 2010, 10:07 AM)
hi rizvanrp, under the secondary administrator account is there any option to allow VPN passthrough ? my wife's VPN connection problem is still not resolved and Unifi service centre didn't respond to my emails at all.  vmad.gif
*
Register an account with DynDNS, and let us see what you have there in your DLink router. brows.gif
sg999
post May 29 2010, 12:48 PM

Regular
******
Senior Member
1,027 posts

Joined: May 2008
not understand
got simple explanation?

Neptern
post May 29 2010, 12:56 PM

On my way
****
Junior Member
518 posts

Joined: Aug 2005
Hell tmnut is simply trying to lock us in using their own router.I don't want tmnut to keep monitoring what i am doing on the internet.Invasion of privacy...

Damn i hate it when companies use such tactics to cheat us and won't let us change the damn router.... mad.gif

Btw please do not uncap the connection.It is a serious breach of contract and it is considered stealing...a criminal offence.Probably means jailtime whistling.gif
heizad
post May 29 2010, 01:36 PM

~ Harimau Malaya ~
******
Senior Member
1,743 posts

Joined: Jul 2006
From: Shah Alam



why is lan port 4 mapped to WAN 2?
iipohbee
post May 29 2010, 01:45 PM

On my way
****
Senior Member
603 posts

Joined: Dec 2008
QUOTE(heizad @ May 29 2010, 01:36 PM)
why is lan port 4 mapped to WAN 2?
*
That port is used to connect with the IPTV STB.
As you can see they have 2 WAN profiles created one for the dedicated IPTV using VLAN 600 and the first WAN profile is for your internet.

With the new global admin account, you'll gain access to all these.You can assign more WAN profiles for each port as well if you wanted.
heizad
post May 29 2010, 01:46 PM

~ Harimau Malaya ~
******
Senior Member
1,743 posts

Joined: Jul 2006
From: Shah Alam



QUOTE(iipohbee @ May 29 2010, 01:45 PM)
That port is used to connect with the IPTV STB.
As you can see they have 2 WAN profiles created one for the dedicated IPTV using VLAN 600 and the first WAN profile is for your internet.

With the new global admin account, you'll gain access to all these.You can assign more WAN profiles for each port as well if you wanted.
*
just logged in using the global acc tongue.gif btw thx for the heads up smile.gif
TSrizvanrp
post May 29 2010, 01:48 PM

Getting Started
Group Icon
Elite
195 posts

Joined: Sep 2006



QUOTE(kons @ May 29 2010, 09:10 AM)
It's normal for UniFi or normal DSL broadband.
Those guys who installed the riger modems at my new house last time also enabled remote management and locked out the admin mgmt account.
I have replaced them straight away.

As long as it's RJ45/RJ11, I guess it's always possible to use our own equipment.
*
It's bad in this case because the router runs BusyBox. You can sniff the traffic running on other people's home networks.. and since the router runs an SSH daemon (dropbear), you can use it to setup an open/closed SOCKS proxy on their routers and forward data through their connections. Not to mention these are high speed 5-20mbps links..

If I compromised all those nodes I would have 3Gbps of bandwidth at minimum to use as a botnet (assuming everyone is on 5mbps at the very least).
ysc
post May 29 2010, 01:52 PM

Enthusiast
*****
Senior Member
860 posts

Joined: Nov 2008
QUOTE(ahpek26 @ May 29 2010, 12:15 PM)
Ops they're going to tell you about this but hey, your guinea pigs and test subjects which is on the "need to know only" basis. Plus even if they tell you about it, its not like most unifail customers would care since they don't get tech stuff like this.

*
thats why someone SHOULD write the batch script and blow everything into pieces to teach TM a lesson for taking advantage of those non-techsavvy
iipohbee
post May 29 2010, 02:09 PM

On my way
****
Senior Member
603 posts

Joined: Dec 2008
QUOTE(rizvanrp @ May 29 2010, 01:48 PM)
It's bad in this case because the router runs BusyBox. You can sniff the traffic running on other people's home networks.. and since the router runs an SSH daemon (dropbear), you can use it to setup an open/closed SOCKS proxy on their routers and forward data through their connections. Not to mention these are high speed 5-20mbps links..

If I compromised all those nodes I would have 3Gbps of bandwidth at minimum to use as a botnet (assuming everyone is on 5mbps at the very least).
*
Well Rizvanrp, how did you know they did not exploited the backdoor from day 1 in the first place?

The existence of a botnet within TM's network has been known since Streamyx time with DPI tracking technologies such as Phorm,121media as such.

It's true that there's something going on behind TM's network.

When doing secure transactions such as online payment as such I still feel safer using other prepaid isps such as Umobile, Jaring, DiGi Broadband or even Maxis.
TSrizvanrp
post May 29 2010, 02:21 PM

Getting Started
Group Icon
Elite
195 posts

Joined: Sep 2006



@iipohbee

I don't think they would need to since they're the ISP.. they have logs on their side.

But honestly, this is a bad case security through obscurity. You tell all your customers there's only 1 user/pass to access the router, you tell all your technicians who install for the customers the same thing (even those who are doing Unifibiz installs).. then it turns out there's a second user/pass combo and this user/pass has a higher access level.

At least I found this <2 months into the launch and people will be aware of this now. I actually just thought of leaving it be because it would be too much trouble to fix.. but I'm not the only guy who's decent with security/networking here and if this came out once Unifi's as popular as Streamyx .. good f-ing game sir.

I actually hate this more than when they were throttling BT. At least with a BT throttle my home network is still secure. Not to mention they had me running around like a dog trying to find a way to let people use their own routers when it was possible all along.

I honestly don't know what the hell was running through the minds of the people who set this up. mad.gif
iipohbee
post May 29 2010, 02:32 PM

On my way
****
Senior Member
603 posts

Joined: Dec 2008
QUOTE(rizvanrp @ May 29 2010, 02:21 PM)
@iipohbee

I don't think they would need to since they're the ISP.. they have logs on their side.

But honestly, this is a bad case security through obscurity. You tell all your customers there's only 1 user/pass to access the router, you tell all your technicians who install for the customers the same thing (even those who are doing Unifibiz installs).. then it turns out there's a second user/pass combo and this user/pass has a higher access level.

At least I found this <2 months into the launch and people will be aware of this now. I actually just thought of leaving it be because it would be too much trouble to fix.. but I'm not the only guy who's decent with security/networking here and if this came out once Unifi's as popular as Streamyx .. good f-ing game sir.

I actually hate this more than when they were throttling BT. At least with a BT throttle my home network is still secure. Not to mention they had me running around like a dog trying to find a way to let people use their own routers when it was possible all along.

I honestly don't know what the hell was running through the minds of the people who set this up. mad.gif
*
Yes they do have logs on their side but they needed tools to dig further and understand the behaviors of their users.
They could use this to clear up logs in your modem, clean out evidences and take control of your usage.

I guess this idea was thought by one of their planning R&D team for pre-emptive measures. Those who have access to their DPI servers.
skincladalien
post May 29 2010, 02:42 PM

Densha Otaku
******
Senior Member
1,914 posts

Joined: Jan 2003
From: New Selangor ^.^Y


heh, lucky the first day i already disabled remote admin
TSrizvanrp
post May 29 2010, 02:55 PM

Getting Started
Group Icon
Elite
195 posts

Joined: Sep 2006



CODE
BusyBox v1.00 (2009.12.23-07:29+0000) Built-in shell (msh)
Enter 'help' for a list of built-in commands.

# ifconfig
br0       Link encap:Ethernet  HWaddr -hidden-
         inet addr:192.168.0.1  Bcast:192.168.0.255  Mask:255.255.255.0
         UP BROADCAST RUNNING MULTICAST  MTU:1500  Metric:1
         RX packets:86488217 errors:0 dropped:0 overruns:0 frame:0
         TX packets:96746664 errors:0 dropped:0 overruns:0 carrier:0
         collisions:0 txqueuelen:0
         RX bytes:2358979520 (2.1 GiB)  TX bytes:2086808986 (1.9 GiB)

br2       Link encap:Ethernet  HWaddr -hidden-
         UP BROADCAST RUNNING MULTICAST  MTU:1500  Metric:1
         RX packets:125967376 errors:0 dropped:0 overruns:0 frame:0
         TX packets:0 errors:0 dropped:0 overruns:0 carrier:0
         collisions:0 txqueuelen:0
         RX bytes:3015485720 (2.8 GiB)  TX bytes:0 (0.0 B)

eth2      Link encap:Ethernet  HWaddr -hidden-
         UP BROADCAST RUNNING PROMISC MULTICAST  MTU:1500  Metric:1
         RX packets:224355660 errors:0 dropped:0 overruns:0 frame:0
         TX packets:89240917 errors:0 dropped:0 overruns:0 carrier:0
         collisions:0 txqueuelen:1000
         RX bytes:60425356 (57.6 MiB)  TX bytes:740660944 (706.3 MiB)
         Interrupt:3

eth2.11   Link encap:Ethernet  HWaddr -hidden-
         UP BROADCAST RUNNING MULTICAST  MTU:1500  Metric:1
         RX packets:0 errors:0 dropped:0 overruns:0 frame:0
         TX packets:736540 errors:0 dropped:0 overruns:0 carrier:0
         collisions:0 txqueuelen:0
         RX bytes:0 (0.0 B)  TX bytes:122513467 (116.8 MiB)

eth2.12   Link encap:Ethernet  HWaddr -hidden-
         UP BROADCAST RUNNING MULTICAST  MTU:1500  Metric:1
         RX packets:0 errors:0 dropped:0 overruns:0 frame:0
         TX packets:736540 errors:0 dropped:0 overruns:0 carrier:0
         collisions:0 txqueuelen:0
         RX bytes:0 (0.0 B)  TX bytes:122513467 (116.8 MiB)

eth2.13   Link encap:Ethernet  HWaddr -hidden-
         UP BROADCAST RUNNING MULTICAST  MTU:1500  Metric:1
         RX packets:0 errors:0 dropped:0 overruns:0 frame:0
         TX packets:736540 errors:0 dropped:0 overruns:0 carrier:0
         collisions:0 txqueuelen:0
         RX bytes:0 (0.0 B)  TX bytes:122513467 (116.8 MiB)

eth2.14   Link encap:Ethernet  HWaddr -hidden-
         UP BROADCAST RUNNING MULTICAST  MTU:1500  Metric:1
         RX packets:0 errors:0 dropped:0 overruns:0 frame:0
         TX packets:0 errors:0 dropped:0 overruns:0 carrier:0
         collisions:0 txqueuelen:0
         RX bytes:0 (0.0 B)  TX bytes:0 (0.0 B)

eth2.500  Link encap:Ethernet  HWaddr -hidden-
         UP BROADCAST RUNNING MULTICAST  MTU:1500  Metric:1
         RX packets:98379123 errors:0 dropped:0 overruns:0 frame:0
         TX packets:87031297 errors:0 dropped:0 overruns:0 carrier:0
         collisions:0 txqueuelen:0
         RX bytes:1981289064 (1.8 GiB)  TX bytes:359594081 (342.9 MiB)

eth2.600  Link encap:Ethernet  HWaddr -hidden-
         UP BROADCAST RUNNING MULTICAST  MTU:1500  Metric:1
         RX packets:125976528 errors:0 dropped:0 overruns:0 frame:0
         TX packets:0 errors:0 dropped:0 overruns:0 carrier:0
         collisions:0 txqueuelen:0
         RX bytes:3528091028 (3.2 GiB)  TX bytes:0 (0.0 B)

lo        Link encap:Local Loopback
         inet addr:127.0.0.1  Mask:255.0.0.0
         UP LOOPBACK RUNNING  MTU:16436  Metric:1
         RX packets:938 errors:0 dropped:0 overruns:0 frame:0
         TX packets:938 errors:0 dropped:0 overruns:0 carrier:0
         collisions:0 txqueuelen:0
         RX bytes:134414 (131.2 KiB)  TX bytes:134414 (131.2 KiB)


ra0       Link encap:Ethernet  HWaddr -hidden-
         UP BROADCAST RUNNING MULTICAST  MTU:1500  Metric:1
         RX packets:72228903 errors:0 dropped:0 overruns:0 frame:0
         TX packets:94474366 errors:0 dropped:0 overruns:0 carrier:0
         collisions:0 txqueuelen:1000
         RX bytes:611831149 (583.4 MiB)  TX bytes:927019935 (884.0 MiB)
         Interrupt:4

#
# brctl show
bridge name     bridge id               STP enabled     interfaces
br2             8000.-hidden-       no              eth2.600
br0             8000.-hidden-       no              eth2.11
                                                       eth2.12
                                                       eth2.13
                                                       ra0
#

This is the shell from a Unifi user's router. Takes only 5 seconds to get this access. One interesting thing to note is they have 4 additional VLANs that are not in the UI or that I've seen being used before.. VLAN 11/12/13/14 on the WAN interface. Then for some reason, they've bridged three of these VLANs to the wireless interface on the router (MACs are -hidden- by myself). These VLANs are just broadcasting data.

QUOTE(Sting Ray @ May 29 2010, 10:07 AM)
hi rizvanrp, under the secondary administrator account is there any option to allow VPN passthrough ? my wife's VPN connection problem is still not resolved and Unifi service centre didn't respond to my emails at all.  vmad.gif
*
Nope, but using this account you can use whatever router you want with Unifi by using the DIR-615 as a VLAN bridge.

Another interesting thing :

user posted image
TR-069 protocol is enabled by default and hidden from the 'admin' account. Connects to a remote server and sets up a listener on your own router. Don't know what the implications of this are.. yet.

Anyway time to sleep, so bloody exhausted sweat.gif

This post has been edited by rizvanrp: May 29 2010, 03:04 PM
skincladalien
post May 29 2010, 03:01 PM

Densha Otaku
******
Senior Member
1,914 posts

Joined: Jan 2003
From: New Selangor ^.^Y


shit...now that you mention it, i manage to find that account in 5 minute O.o

TM screw up big time on this
TSrizvanrp
post May 29 2010, 03:05 PM

Getting Started
Group Icon
Elite
195 posts

Joined: Sep 2006



QUOTE(skincladalien @ May 29 2010, 03:01 PM)
shit...now that you mention it, i manage to find that account in 5 minute O.o

TM screw up big time on this
*
Yeap.
ciohbu
post May 29 2010, 03:12 PM

Group: Senior Member
*******
Senior Member
2,104 posts

Joined: Oct 2006
QUOTE(sg999 @ May 29 2010, 12:48 PM)
not understand
got simple explanation?
*
simple answer ? ur network is open to TM.. thumbup.gif and they know if u are downloading po*n

This post has been edited by ciohbu: May 29 2010, 03:14 PM
[+]
post May 29 2010, 03:17 PM

Regular
******
Senior Member
1,939 posts

Joined: Apr 2007
this needs to go to the press lo~
Neptern
post May 29 2010, 03:18 PM

On my way
****
Junior Member
518 posts

Joined: Aug 2005
QUOTE
simple answer ? ur network is open to TM.. thumbup.gif  and they know if u are downloading po*n


Is it even legal for them to monitor your internet usage like that instead of just logs on their side?
ciohbu
post May 29 2010, 03:34 PM

Group: Senior Member
*******
Senior Member
2,104 posts

Joined: Oct 2006
QUOTE(Neptern @ May 29 2010, 03:18 PM)
Is it even legal for them to monitor your internet usage like that instead of just logs on their side?
*
i am not sure about legal stuff, but if network admin go too far into ur network, i think that's against the privacy .. its like telco monitor wat u talk in every phone call..
mylinear
post May 29 2010, 03:39 PM

Enthusiast
*****
Senior Member
974 posts

Joined: Jan 2009
I think this should be reported to MCMC and MYCERT.

ciohbu
post May 29 2010, 03:39 PM

Group: Senior Member
*******
Senior Member
2,104 posts

Joined: Oct 2006
QUOTE(mylinear @ May 29 2010, 03:39 PM)
I think this should be reported to MCMC and MYCERT.
*
MCMC ? its like reporting BN's MP corruption case to MACC ...lollzz

i think the only way we can do now is to disable the account and remote management.. use firewall to block related traffics.. and also spread this in ur blog or fb if u have..

This post has been edited by ciohbu: May 29 2010, 03:41 PM
takkicom
post May 29 2010, 03:47 PM

Casual
***
Junior Member
422 posts

Joined: Sep 2008
=.= all your pornos kena stole by tm ahahaha
zenquix
post May 29 2010, 03:49 PM

Life is short!
*******
Senior Member
2,552 posts

Joined: Jan 2008


toying with idea of turning off tr-069. not keen on its implications at all.
harriss
post May 29 2010, 03:54 PM

Casual
***
Junior Member
382 posts

Joined: Jan 2009
From: OH YEAH



UNIPHAIL TRULY SCREW this time
mylinear
post May 29 2010, 03:59 PM

Enthusiast
*****
Senior Member
974 posts

Joined: Jan 2009
QUOTE(ciohbu @ May 29 2010, 03:39 PM)
MCMC ? its like reporting BN's MP corruption case to MACC ...lollzz

*
Didn't say they will take action. But there must be a documented report made in case for future reference.

And MYCERT is supposed to:

QUOTE
Mission
To address the computer security concerns of Malaysian Internet users.
Mokuton
post May 29 2010, 04:02 PM

Getting Started
**
Junior Member
51 posts

Joined: Dec 2008
From: Earth
use your own modem/router in the future?
VengenZ
post May 29 2010, 04:24 PM

La la la~
****
Senior Member
608 posts

Joined: Nov 2009
From: 127.0.0.1



I think their monitoring the usage for the cap limit?
YoungMan
post May 29 2010, 04:57 PM

Look at all my stars!!
*******
Senior Member
6,790 posts

Joined: Oct 2008
From: Kuala Lumpur



well... since it's possible, don't use their router. Buy one that is better and use it.
sg999
post May 29 2010, 05:01 PM

Regular
******
Senior Member
1,027 posts

Joined: May 2008
QUOTE(ciohbu @ May 29 2010, 04:12 PM)
simple answer ? ur network is open to TM..  thumbup.gif and they know if u are downloading po*n
*
WTF
no PRIVACY liao mad.gif mad.gif mad.gif
ciohbu
post May 29 2010, 05:13 PM

Group: Senior Member
*******
Senior Member
2,104 posts

Joined: Oct 2006
QUOTE(YoungMan @ May 29 2010, 04:57 PM)
well... since it's possible, don't use their router. Buy one that is better and use it.
*
why always we consumer have to pay the price ? sweat.gif
night_wolf_in
post May 29 2010, 05:18 PM

On my way
****
Junior Member
512 posts

Joined: Mar 2007
im not sure if i should laugh or cry.

If you think they want to spy on YOU by creating a second management account. Then it is big fail for all you guys, pretending to know how internet works.

Your Modem/router will be connected a layer two switch. or lets say connected to a port. they can use "SPAN" to see all the traffic you are sending and receiving.

But again, doing that to every indivicual will be really tiring. Easier is, run "SPAN" to the uplink, that is connecting the layer two switch to the distribution switch. and bam, they can get all i/o traffic from the whole switch.

WAIT.

They can add high end firewalls at the uplinks to every area (logical or geographical) or just again SPAN the traffic to the firewalls. AND they practically SEE every traffic you sending.

Conclusion is. dont cry a river for a second account your ISP put it. if they did, it is to make your experience better. but if you think you can out smart them. please do.

How i know. I'm a CCNP and working under routing/ switching and security for some enterprise.


Added on May 29, 2010, 5:19 pm
QUOTE(VengenZ @ May 29 2010, 04:24 PM)
I think their monitoring the usage for the cap limit?
*
No, they use packet shaping devices for that.

This post has been edited by night_wolf_in: May 29 2010, 05:19 PM
ciohbu
post May 29 2010, 06:02 PM

Group: Senior Member
*******
Senior Member
2,104 posts

Joined: Oct 2006
QUOTE(night_wolf_in @ May 29 2010, 05:18 PM)
im not sure if i should laugh or cry.

If you think they want to spy on YOU by creating a second management account. Then it is big fail for all you guys, pretending to know how internet works.

Your Modem/router will be connected a layer two switch. or lets say connected to a port. they can use "SPAN" to see all the traffic you are sending and receiving. 

But again, doing that to every indivicual will be really tiring. Easier is, run "SPAN" to the uplink, that is connecting the layer two switch to the distribution switch. and bam, they can get all i/o traffic from the whole switch.

WAIT.

They can add high end firewalls at the uplinks to every area (logical or geographical) or just again SPAN the traffic to the firewalls.  AND they practically SEE every traffic you sending.

Conclusion is. dont cry a river for a second account your ISP put it. if they did, it is to make your experience better. but if you think you can out smart them. please do.

How i know. I'm a CCNP and working under routing/ switching and security for some enterprise.


Added on May 29, 2010, 5:19 pm

No, they use packet shaping devices for that.
*
well..since u claim that u are CCNP (which is one level on top of CCNA) and working under security huh ? u should know that any unknown account in user's router give security thread to the user ? no matter the account is for good or for bad ... thats the simple and basic theory, imagine ur customer found out that u have a secret account in their main router ? whistling.gif whistling.gif

and more serious is the remote management enabled...

This post has been edited by ciohbu: May 29 2010, 06:06 PM
night_wolf_in
post May 29 2010, 06:07 PM

On my way
****
Junior Member
512 posts

Joined: Mar 2007
ya. it is management. there is no security issues to worry about. the moment you connected to the internet with your own router/modem with only your account, you are screwed by anyone who wants to screw you.

It is remote mangment of the ROUTER/MODEM. so if someone who is very smart, go play with the settings, then internet doesn't work. they dont have to send a guy to fix it. and dont tell me there are no people who screw their own modem then swear at tmnuts.

this great discovery is not worth the rant. If you think you know better than ISP bout network and security. then do what you want to do. Otherwise, i suggest keeping things the way they are.
ciohbu
post May 29 2010, 06:13 PM

Group: Senior Member
*******
Senior Member
2,104 posts

Joined: Oct 2006
QUOTE(night_wolf_in @ May 29 2010, 06:07 PM)
ya. it is management. there is no security issues to worry about. the moment you connected to the internet with your own router/modem with only your account, you are screwed by anyone who wants to screw you.

It is remote mangment of the ROUTER/MODEM. so if someone who is very smart, go play with the settings, then internet doesn't work. they dont have to send a guy to fix it. and dont tell me there are no people who screw their own modem then swear at tmnuts.

this great discovery is not worth the rant. If you think you know better than ISP bout network and security. then do what you want to do. Otherwise, i suggest keeping things the way they are.
*
i think the main topic here is the security thread by having remote management enabled and having a 2ndary admin account which is invisible to the user..

its the same as windows..

now since everyone knows it, they can choose whether to disable it or not.. icon_rolleyes.gif icon_rolleyes.gif

This post has been edited by ciohbu: May 29 2010, 06:18 PM
Neptern
post May 29 2010, 06:20 PM

On my way
****
Junior Member
518 posts

Joined: Aug 2005
Yea i don't quite like the idea of a secret account which is akin to a secret backdoor in my router...

Even if you say remote management saves the time tm needs to fix the internet,i still don't feel too good about it.
tch9
post May 29 2010, 06:24 PM

New Member
*
Junior Member
17 posts

Joined: Dec 2005
How you guys found out the login name and password for global admin?
SUSCliffrison
post May 29 2010, 06:24 PM

It's so fluffy I'm gonna die!
*****
Senior Member
819 posts

Joined: Apr 2010
From: Kitchen -_-
pro la ts
76radius
post May 29 2010, 06:26 PM

Getting Started
**
Junior Member
232 posts

Joined: Jan 2006


QUOTE(tch9 @ May 29 2010, 07:24 PM)
How you guys found out the login name and password for global admin?
*
One Sifu found it. The same person who helped to fix my router to connect to Unifi.

Salute to Rizvanrp!!! thumbup.gif thumbup.gif thumbup.gif thumbup.gif thumbup.gif
KAHAK
post May 29 2010, 07:25 PM

Getting Started
**
Junior Member
181 posts

Joined: Mar 2010
wow it this true mean TM net can remote control your bandwith speed?? because you guy use TM router?
fastreader
post May 29 2010, 07:47 PM

.
*******
Senior Member
4,554 posts

Joined: Feb 2010
guess its kinda risky...blame rais for this...information freedom eh..
nitewish
post May 29 2010, 07:51 PM

Viva La Resistance
*****
Senior Member
810 posts

Joined: Feb 2008
From: 127.0.0.1



@Rizvanrp:
is this why the DIR-615 feels so laggy when accessing it? =x
TSrizvanrp
post May 29 2010, 08:25 PM

Getting Started
Group Icon
Elite
195 posts

Joined: Sep 2006



QUOTE(night_wolf_in @ May 29 2010, 05:18 PM)
im not sure if i should laugh or cry.

If you think they want to spy on YOU by creating a second management account. Then it is big fail for all you guys, pretending to know how internet works.

Your Modem/router will be connected a layer two switch. or lets say connected to a port. they can use "SPAN" to see all the traffic you are sending and receiving. 

But again, doing that to every indivicual will be really tiring. Easier is, run "SPAN" to the uplink, that is connecting the layer two switch to the distribution switch. and bam, they can get all i/o traffic from the whole switch.

WAIT.

They can add high end firewalls at the uplinks to every area (logical or geographical) or just again SPAN the traffic to the firewalls.  AND they practically SEE every traffic you sending.

Conclusion is. dont cry a river for a second account your ISP put it. if they did, it is to make your experience better. but if you think you can out smart them. please do.

How i know. I'm a CCNP and working under routing/ switching and security for some enterprise.


Added on May 29, 2010, 5:19 pm

No, they use packet shaping devices for that.
*
Oh no, CCNP's and their logic ._.

Never once did I claim this was for TM to 'spy' on you, I said its a hole for outsiders to spy on you or mess with you. I stated that TM doesn't need to spy on you when they control the network.

The problem is because there's this secondary account, other people can log into your router and enable the SSHd for busybox. As a CCNP, you should already be aware of the implications of SSHd running on your Internet gateway with full root access to the outside world?

SSHd comes with a few functions, you have SCP/SFTP (which is disabled on this dropbear build) and most importantly.. it has the ability to do SOCKS forwarding. I've already tested this and it works -- in order words, I was able to turn every Unifi router into an open SOCKS proxy. Imagine what I could do, credit card fraud, ICMP based DDoS attacks.. etc., this doesn't concern you as a CCNP?

The router also has about 10MB of free ram and a filesystem loaded to utilize it, what if I compile a special binary for busybox then pull it into the router using tftp or ftpget? This binary could be a traffic sniffer, dynamic IP notifier and so on, what then? The main router that's handling all your Unifi traffic has a traffic sniffer attached to it but you still feel your network is secure?

Did you know every Unifibiz (with static PPPoE addressing) has this enabled by default? That anyone can access the router and do all this shit?

So please, I get that you're a CCNP and you could build your own Internet if you wanted but you and I both know that leaving an embedded Linux based router with SSHd wide open to the internet while its routing all your Internet traffic is a bloody bad idea and its highly exploitable. I wouldn't write a thread like this unless I've already done the attacks and understood the implications. I'm glad you know how to setup networking hardware and advanced routing protocols but when it comes to security you seem to be completely 'blur'.

QUOTE
so if someone who is very smart, go play with the settings, then internet doesn't work.

You really think that BusyBox can only 'play with the settings' and cut you off the net? Lol, you need to get off IOS and into embedded Linux. It's stupid assumptions like this which created this mess in the first place. You have a VLAN capable router here with a full embedded Linux distro running on it and you assume all it runs is a PPP daemon. Bloody laughable.

user posted image
There's no way such a cheap device could have a webserver with a PHP interpreter huh? smile.gif

Maybe you should work on that CEH soon wink.gif

This post has been edited by rizvanrp: May 29 2010, 08:40 PM
GameSky
post May 29 2010, 08:33 PM

Nyancat too much
*******
Senior Member
6,381 posts

Joined: Jun 2005
From: meow meow
QUOTE(kons @ May 29 2010, 09:10 AM)
It's normal for UniFi or normal DSL broadband.
Those guys who installed the riger modems at my new house last time also enabled remote management and locked out the admin mgmt account.
I have replaced them straight away.

As long as it's RJ45/RJ11, I guess it's always possible to use our own equipment.
*
This, last time my company applied for streamyx, they also have remote management enabled. At first I was curious if my boss did enable remote management on the modem since he use remote desktop on one of the account computer..but no, he didn't even noticed.

So I just straight away disable the remote management on the modem, and changed the password to stronger password, password with symbols, caps, numeric and alpha.

So it seems in unifi case...I'm suspecting tm try to monitor what kind of data/packet their user currently using most?
And does involves companies as well? sweat.gif ...sounds like way than data privacy breach here....

Thanks for the TS for the head-up. nod.gif nod.gif nod.gif

no matter how, this should be reported to mcmc/mycert already...since other groups/people might use this advantage and abuse existing unifi users...think what kind of damages they might causes?


sigh, monopoly player... whistling.gif

This post has been edited by GameSky: May 29 2010, 08:36 PM
ciohbu
post May 29 2010, 08:56 PM

Group: Senior Member
*******
Senior Member
2,104 posts

Joined: Oct 2006
QUOTE(rizvanrp @ May 29 2010, 08:25 PM)
Oh no, CCNP's and their logic ._.

So please, I get that you're a CCNP and you could build your own Internet if you wanted but you and I both know that leaving an embedded Linux based router with SSHd wide open to the internet while its routing all your Internet traffic is a bloody bad idea and its highly exploitable. I wouldn't write a thread like this unless I've already done the attacks and understood the implications. I'm glad you know how to setup networking hardware and advanced routing protocols but when it comes to security you seem to be completely 'blur'.
You really think that BusyBox can only 'play with the settings' and cut you off the net? Lol, you need to get off IOS and into embedded Linux. It's stupid assumptions like this which created this mess in the first place. You have a VLAN capable router here with a full embedded Linux distro running on it and you assume all it runs is a PPP daemon. Bloody laughable.

There's no way such a cheap device could have a webserver with a PHP interpreter huh? smile.gif

Maybe you should work on that CEH soon wink.gif
*
ya...i also cannot tahan with the last line..when he put he is CCNP..lolzz

This post has been edited by ciohbu: May 29 2010, 08:56 PM
night_wolf_in
post May 29 2010, 09:00 PM

On my way
****
Junior Member
512 posts

Joined: Mar 2007
QUOTE(rizvanrp @ May 29 2010, 08:25 PM)
*
so you want to tell me. that by disabling that other management account. and cause you know how to give a good password for your own user account. your modem/router is secured?

the first thing in security, there is no security. Even if you unplug your system from the internet. there is possible of security attacks.

Believe me. if someone wants to use that box you have for hacking. they would have done it long time ago.

so when it comes to, should ISP make an account for them to access your box to assist you. or should they close it. They rather make an account.

If later on they can't control the situation cause all the boxes turned into bots. then it is their issue to solve.

Just know that by disabling that account, you are not safer than when it was open. cheers

TSrizvanrp
post May 29 2010, 09:11 PM

Getting Started
Group Icon
Elite
195 posts

Joined: Sep 2006



@night_wolf_in

Glad you've changed your stance from 'this is not significant' to 'this is not secure'. I guess you finally see what root access on this router allows an attacker to do so I'm happy for you smile.gif

I am fully aware that nothing is secure, the fix I gave is only to temporarily secure their routers from outside attacks on the WAN. The LAN can still access the SSH daemon by default, it cannot be turned off.

Having this extra security will already prevent a multitude of attacks people can perform. The only way to completely remove this is to access that secondary account and change the password, set up iptables or disable that account completely @ the /etc/passwd level.

QUOTE
Believe me. if someone wants to use that box you have for hacking. they would have done it long time ago.

Unfortunately, I was the first person to discover it so this doesn't really apply rolleyes.gif . But if you're just talking about hacking for router boxes, google DD-WRT. There's already a huge community set up. These attacks start now and its better I disclose the vulnerability than let their user base grow to the point it cannot be stopped. At least if their tech's are reading this, they will disable the feature in their future installs and possibly change their policy to let the user utilize the main admin account or upgrade their firmware to completely remove this account.

This shit has to stop now, they can't keep treating their users like morons.

Its not a problem if the user ever forgets the password because these systems run on FLASH memory with the bootloader being in ROM. They can just hit a reset button and everything is fixed (including the NVRAM parameters). There's no reason not to trust the user with this account. In fact, giving them access to this account will allow them to use the DIR-615 as a VLAN - physical port bridge and completely remove this exploit.

I went to a Unifibiz setup once and the company (a very large one) was forced to use the DIR-615 for routing because the latest ZyWall did not support PPPoE over VLAN interfaces. I'm pretty sure the sysadmin changed the 'admin' password and left remote management open because it lets him remotely diagnose problems with the router instead of having to stand in the server room all day. I don't think he's aware of this secondary account which bypasses that completely.

So yeah smile.gif

This post has been edited by rizvanrp: May 29 2010, 09:13 PM
Creative-
post May 29 2010, 09:11 PM

Getting Started
**
Junior Member
264 posts

Joined: Nov 2004
From: 127.0.0.1
hey i just got unifi installed yesterday. was trying to fiddle with the router settings but i realised they didnt give me the password; so, i reset the damn thing haha. but i didnt know about the "global account" thing, whats the user/pass for that? care to PM me anyone? sweat.gif
TSrizvanrp
post May 29 2010, 09:20 PM

Getting Started
Group Icon
Elite
195 posts

Joined: Sep 2006



Sorry I forgot to add this in, Unifi's main VLAN has no caps on it. Every user is capped at the account level only. This means if a 5mbps breaks into a 20mbps users router and takes his user/pass, he will get 20mbps at home. Nice job TM smile.gif

Since you're going to be implementing an account cap, I can't imagine what people would do to get past it sweat.gif

This post has been edited by rizvanrp: May 29 2010, 09:25 PM
iipohbee
post May 29 2010, 09:29 PM

On my way
****
Senior Member
603 posts

Joined: Dec 2008
QUOTE(rizvanrp @ May 29 2010, 09:20 PM)
Sorry I forgot to add this in, Unifi's main VLAN has no caps on it. Every user is capped at the account level only. This means if a 5mbps breaks into a 20mbps users router and takes his user/pass, he will get 20mbps at home. Nice job TM smile.gif

Since you're going to be implementing an account cap, I can't imagine what people would do to get past it  sweat.gif
*
Unfortunately the Dlink DIR-615 doesn't have gigabit ethernet ports.Else this would mean havoc!

But you can still assign multiple 20M accounts to each port or maybe choose to watch IPTV channels in different rooms at home.
Dedicated 20M for each computer

You have 4 ports to play with tongue.gif
ciohbu
post May 29 2010, 09:41 PM

Group: Senior Member
*******
Senior Member
2,104 posts

Joined: Oct 2006
QUOTE(night_wolf_in @ May 29 2010, 09:00 PM)
so you want to tell me. that by disabling that other management account. and cause you know how to give a good password for your own user account. your modem/router is secured?

the first thing in security, there is no security. Even if you unplug your system from the internet. there is possible of security attacks.

Believe me. if someone wants to use that box you have for hacking. they would have done it long time ago.

so when it comes to, should ISP make an account for them to access your box to assist you. or should they close it. They rather make an account.

If later on they can't control the situation cause all the boxes turned into bots. then it is their issue to solve.

Just know that by disabling that account, you are not safer than when it was open. cheers
*
if u are really ccnp, u should know that nothing is 100% secured, u deal with enterprise a lot in ur work rite? i believe u do disable some unnecessary cisco router services such as bootp .. and giv ur router a AAA authentication .. ya.. it is not secured but at least its better than nothing.. same goes to this unifi router.

i notice that ur ideology is kinda funny.. that "if someone wants to use that box you have for hacking. they would have done it long time ago " .. sweat.gif sweat.gif izzit mean that if my new pc doesn't get hack on 1st day without antivirus, i no need to install antivirus for the rest of my life on that pc ?

This post has been edited by ciohbu: May 29 2010, 09:42 PM
azwan92
post May 29 2010, 09:48 PM

Casual
***
Junior Member
358 posts

Joined: Sep 2009



according to my belkin router, remote management means:


Remote Management
Before you enable this function, MAKE SURE YOU HAVE SET THE ADMINISTRATOR PASSWORD. Remote management allows you to make changes to your Router's settings from anywhere on the Internet. There are two methods of remotely managing the router. The first method is to allow access to the router from anywhere on the Internet by selecting "Any IP address can remotely manage the router". By typing in your WAN IP address from any computer on the Internet, you will be presented with a login screen where you need to type in the password of your router. The Second method is to allow a specific IP address only to remotely manage the router. This is more secure, but less convenient. To use this method, enter the IP address you know you will be accessing the Router from in the space provided and select "Only this IP address can remotely" manage the Router. Before you enable this function, it is STRONGLY RECOMMENDED that you set your administrator password. Leaving the password empty will potentially open your router to intrusion.

VengenZ
post May 29 2010, 10:17 PM

La la la~
****
Senior Member
608 posts

Joined: Nov 2009
From: 127.0.0.1



QUOTE(azwan92 @ May 29 2010, 09:48 PM)
according to my belkin router, remote management means:

 
Remote Management
Before you enable this function, MAKE SURE YOU HAVE SET THE ADMINISTRATOR PASSWORD. Remote management allows you to make changes to your Router's settings from anywhere on the Internet. There are two methods of remotely managing the router. The first method is to allow access to the router from anywhere on the Internet by selecting "Any IP address can remotely manage the router". By typing in your WAN IP address from any computer on the Internet, you will be presented with a login screen where you need to type in the password of your router. The Second method is to allow a specific IP address only to remotely manage the router. This is more secure, but less convenient. To use this method, enter the IP address you know you will be accessing the Router from in the space provided and select "Only this IP address can remotely" manage the Router. Before you enable this function, it is STRONGLY RECOMMENDED that you set your administrator password. Leaving the password empty will potentially open your router to intrusion.
*
So, if they cud only change the router settings, they can't spy our porns? hmm.gif
Creative-
post May 29 2010, 10:18 PM

Getting Started
**
Junior Member
264 posts

Joined: Nov 2004
From: 127.0.0.1
does disabling Remote Management from the standard "admin" account disable it from the routers global access as well? or do we have to use the "hidden" account to disable it?
TSrizvanrp
post May 29 2010, 10:22 PM

Getting Started
Group Icon
Elite
195 posts

Joined: Sep 2006



QUOTE(VengenZ @ May 29 2010, 10:17 PM)
So, if they cud only change the router settings, they can't spy our porns?  hmm.gif
*
Its different from router-to-router. In this case, the remote management lets you enable the SSH server. The SSH server gives you full control over the router, more than whats in the web UI. And since there's a secondary account to access the remote management, there's really no security at all lol
prasys
post May 29 2010, 10:59 PM

Heros Never Die
Group Icon
VIP
12,925 posts

Joined: Mar 2005
From: Kuala Lumpur
QUOTE(rizvanrp @ May 29 2010, 10:22 PM)
Its different from router-to-router. In this case, the remote management lets you enable the SSH server. The SSH server gives you full control over the router, more than whats in the web UI. And since there's a secondary account to access the remote management, there's really no security at all lol
*
Thanks for putting it up

Really bad people can do really mean thing , having SSH is like having candy , oh wait , did I say that it grants you root access. Oh goodie , someone could be stealing all your porn (maybe who knows you might have sharing enabled and I could exploit it , by silently installing OpenVPN , does it even fit , I hope it does and silently be part of your network). They should do something about it
mitodna
post May 29 2010, 11:21 PM

Getting Started
********
All Stars
14,039 posts

Joined: Jan 2003
I believe that this is not the first Unifi "exploit", the first one was access to more channel of its IPTV ??? Until TM decided to scramble IPTV
Moogle Stiltzkin
post May 29 2010, 11:39 PM

Look at all my stars!!
*******
Senior Member
4,451 posts

Joined: Jan 2003
QUOTE(night_wolf_in @ May 29 2010, 05:18 PM)
im not sure if i should laugh or cry.

If you think they want to spy on YOU by creating a second management account. Then it is big fail for all you guys, pretending to know how internet works.

Your Modem/router will be connected a layer two switch. or lets say connected to a port. they can use "SPAN" to see all the traffic you are sending and receiving. 

But again, doing that to every indivicual will be really tiring. Easier is, run "SPAN" to the uplink, that is connecting the layer two switch to the distribution switch. and bam, they can get all i/o traffic from the whole switch.

WAIT.

They can add high end firewalls at the uplinks to every area (logical or geographical) or just again SPAN the traffic to the firewalls.  AND they practically SEE every traffic you sending.

Conclusion is. dont cry a river for a second account your ISP put it. if they did, it is to make your experience better. but if you think you can out smart them. please do.

How i know. I'm a CCNP and working under routing/ switching and security for some enterprise.


Added on May 29, 2010, 5:19 pm

No, they use packet shaping devices for that.
*
If i use VPN will that at least give me some privacy despite all the stuff you mentioned ??? That is all i want to know hmm.gif

Does anyone else think tmnut should hire Riv and give him a 6 figure salary ??? *raise hands thumbup.gif

This post has been edited by Moogle Stiltzkin: May 29 2010, 11:48 PM
pengiranijam
post May 29 2010, 11:44 PM

Regular
******
Senior Member
1,568 posts

Joined: Dec 2004
From: Malaysia Truly Asia



Sometimes high speed are not good when exploit found, especially on router or modem, using fiber optics at high speed, your computer might be nightmare for your whole life if those "have full right over your router or modem" to perform the attacks.
yvonnesoo
post May 30 2010, 12:18 AM

Wanderluster
*******
Senior Member
2,169 posts

Joined: Jan 2009
From: PJ | Seoul


unifi currently is available at my area.. after readin all tis.. dunno whether shuld i upgrade to unifi or nt.. i'm nt a tech savvy.. might nt kno much.. neway.. those who haf unifi.. may i kno hw is the overall speed? heard tat they will capped their speed soon.. is tat true?
VengenZ
post May 30 2010, 12:20 AM

La la la~
****
Senior Member
608 posts

Joined: Nov 2009
From: 127.0.0.1



QUOTE(rizvanrp @ May 29 2010, 10:22 PM)
Its different from router-to-router. In this case, the remote management lets you enable the SSH server. The SSH server gives you full control over the router, more than whats in the web UI. And since there's a secondary account to access the remote management, there's really no security at all lol
*
SSH shocking.gif

Isn't that shell, can connect using PuTTy and linux shocking.gif
darkskies
post May 30 2010, 12:23 AM

Look at all my stars!!
*******
Senior Member
2,336 posts

Joined: Nov 2007
From: 特別壱参番対ゴミ人間調査隊大将



Yup it's their death trap to get user into Unifi. After enough users they won't listen to anymore complaints and continue to do like what they do to streamyx users. Somemore it's a 2yrs contract which u must be vary of. The price doesnt sounds cheap when u terminate within 2 years.

Tmnet's greed had turn very ugly recently. Their technology and services still sux then before but their strategy to market their failure products is improving. They know how to avoid complaints and cover up their problems perfectly.

This post has been edited by darkskies: May 30 2010, 12:28 AM
ysc
post May 30 2010, 12:26 AM

Enthusiast
*****
Senior Member
860 posts

Joined: Nov 2008
QUOTE(darkskies @ May 30 2010, 12:23 AM)
Yup it's their death trap to get user into Unifi. After enough users they won't listen to anymore complaints and continue to do like what they do to streamyx users. Somemore it's a 2yrs contract which u must be vary of. The price doesnt sounds cheap when u terminate within 2 years.
*
the contract bandwidth cap thingy was removed after the QQ but i think it'll come back soon

edit- lol typo

This post has been edited by ysc: May 30 2010, 01:48 AM
ciohbu
post May 30 2010, 12:28 AM

Group: Senior Member
*******
Senior Member
2,104 posts

Joined: Oct 2006
QUOTE(darkskies @ May 30 2010, 12:23 AM)
Yup it's their death trap to get user into Unifi. After enough users they won't listen to anymore complaints and continue to do like what they do to streamyx users. Somemore it's a 2yrs contract which u must be vary of. The price doesnt sounds cheap when u terminate within 2 years.
*
the worst thing is u have to pay + u will have high blood pressure dealing with their customer service within this 2 years tongue.gif
andrew9292
post May 30 2010, 12:29 AM

-/Livin' On A Prayer/-
*****
Senior Member
955 posts

Joined: Sep 2008
From: Petaling Jaya


QUOTE
13.1 The Customer shall:-
not use the Service for any unlawful purpose including without limitation for any criminal purposes;
not use the Service to send unsolicited electronic messages or any message which is obscene, threatening or offensive on moral, religious, racial or political grounds to any person including a company or a corporation;
not compromise or infect any systems with computer viruses or otherwise;
not infringe any intellectual property rights of TM, its related companies and subsidiaries or any third party;
not gain unauthorised access to any computer system connected to the Internet or any information regarded as private by any person including a company or corporation;
not share the Service with any person including a company or corporation without the prior written approval of TM and shall use the Service only for the purpose for which it is subscribed;
not resell or sublet the Service to any third parties without prior written consent from TM; and,
not use the Service in any manner, which in the opinion of TM may adversely affect the use of the Service by other Customers or efficiency or security as a whole.


Probably why they put that up ;p

Okay, good job for TS as he found out this major security risk considering the number of IT grads and professionals these days are out there...
But posting this here is actually publicity to this loophole.

Only those who came to LYN would find out about this and if they are tech savvy enough, they will know how to get around it to minimize the exposure risk as much as possible.

But again, if someone with unholy intention stumbles upon this, it could mean disaster for those unaware and incapable to prevent it...

I would like to ask TS, now that you have found out and posted it to public, what is your next step? Will you report to relevant authorities?
Otherwise the purpose of this thread will be:

1. Publicize a major loophole in UniFi
2. Giving knowledgeable users the chance to avoid the risk, a really small amount of people in LYN.
3. Exposing a mass mount of UniFi-ers to exploits...

So, just be aware of that. I'm no IT expert with any qualification btw. TS, u're doing the right thing, salute! but there is still a loophole in what you are doing tongue.gif haha

This post has been edited by andrew9292: May 30 2010, 12:30 AM
darkskies
post May 30 2010, 12:32 AM

Look at all my stars!!
*******
Senior Member
2,336 posts

Joined: Nov 2007
From: 特別壱参番対ゴミ人間調査隊大将



QUOTE(ysc @ May 30 2010, 12:26 AM)
the contract thingy was removed after the QQ but i think it'll come back soon
*
Bandwidth cap lifted but not contract. Check the Term & Condition on the website. They are not stupid enough to lift their contract which is where their bait gonna be.
TSrizvanrp
post May 30 2010, 01:00 AM

Getting Started
Group Icon
Elite
195 posts

Joined: Sep 2006



QUOTE(andrew9292 @ May 30 2010, 12:29 AM)
Probably why they put that up ;p

Okay, good job for TS as he found out this major security risk considering the number of IT grads and professionals these days are out there...
But posting this here is actually publicity to this loophole.

Only those who came to LYN would find out about this and if they are tech savvy enough, they will know how to get around it to minimize the exposure risk as much as possible.

But again, if someone with unholy intention stumbles upon this, it could mean disaster for those unaware and incapable to prevent it...

I would like to ask TS, now that you have found out and posted it to public, what is your next step? Will you report to relevant authorities?
Otherwise the purpose of this thread will be:

1. Publicize a major loophole in UniFi
2. Giving knowledgeable users the chance to avoid the risk, a really small amount of people in LYN.
3. Exposing a mass mount of UniFi-ers to exploits...

So, just be aware of that. I'm no IT expert with any qualification btw. TS, u're doing the right thing, salute! but there is still a loophole in what you are doing  tongue.gif haha
*
I spent some time thinking about it. There were a lot of things I took into consideration..

In the end I feel as though its my duty to notify the community about these things. It's not my job to fix it, it's TM's job. If they had planned this through and allowed for open access to their hardware in the first place, we wouldn't be in this mess. Why even bother putting the PPPoE server on VLAN 500? Why didn't they just not use any tagging in the first place? It wouldn't make a difference to them but it would give their customers tons of new options and better security. It's because they chose to follow this closed method that all these flaws are starting to come out. If I'm not mistaken, I even mentioned on LYN in the first week I got Unifi that there's a telnet daemon on the set top box and SSH daemon on the DIR-615.. and it would only be a matter of time till someone found the keys.

It took me less than 2 months to completely break the system (from the users end). Sure, I have a lot of experience in this field but I'm just a final year network security student and I did this in my free time because I was trying to help people @ LYN. 2 months in however, all these flaws in their system start to get noticed. You hand this system to a professional blackhat hacker and the entire network is going to go down in a week or so.

I know sending a message to LYN isn't exactly sending a message to every Unifi user in Malaysia, there are tons of users (even TM staff) which have their routers exposed at the moment. Eventually however, the word is going to get out. They will either patch their firmware 7.05 and fix it or notify their technicians to not enable these particular features doing install. The best case scenario I can hope for is that they start doing installs with this secondary admin account so people have full control over the hardware and service they're dishing out RM200+ a month for.

And you know, even though this 'fix' blocks WAN access.. I believe the SSH daemon is still running on the LAN subnet. It cannot be turned off without using the secondary admin account and logging into the SSH server using PuTTy or something. Those people who are running Unifi hotspots (aka kopitiam shops) are still vulnerable.

I know some of you are going to hate me with the typical 'why did you let others know' mentality.. but lets be honest here, just because I don't tell you something it doesn't magically make it non-existent okay? I'm not going to release the account details yet and I'm hoping those of you who have also found this account wont either.. and I know that's not a perfect solution but its better than closing both your eyes and pretending there is no problem with the system.
squall0833
post May 30 2010, 01:00 AM

Regular
******
Senior Member
1,473 posts

Joined: Oct 2006
From: Jupiter


this is bad, force to use a device that's not secure than usual device,

biggrin.gif good job rivan, nice find
Moogle Stiltzkin
post May 30 2010, 01:00 AM

Look at all my stars!!
*******
Senior Member
4,451 posts

Joined: Jan 2003
QUOTE(andrew9292 @ May 30 2010, 12:29 AM)
Probably why they put that up ;p

Okay, good job for TS as he found out this major security risk considering the number of IT grads and professionals these days are out there...
But posting this here is actually publicity to this loophole.

Only those who came to LYN would find out about this and if they are tech savvy enough, they will know how to get around it to minimize the exposure risk as much as possible.

But again, if someone with unholy intention stumbles upon this, it could mean disaster for those unaware and incapable to prevent it...

I would like to ask TS, now that you have found out and posted it to public, what is your next step? Will you report to relevant authorities?
Otherwise the purpose of this thread will be:

1. Publicize a major loophole in UniFi
2. Giving knowledgeable users the chance to avoid the risk, a really small amount of people in LYN.
3. Exposing a mass mount of UniFi-ers to exploits...

So, just be aware of that. I'm no IT expert with any qualification btw. TS, u're doing the right thing, salute! but there is still a loophole in what you are doing  tongue.gif haha
*
No no, i think it was right making this public. Maybe this will get into the star and we can pressure tmnut to let their users use their own routers.

If we do have any problem, we would call tmnut helpline 100 and they can send a technician over. No need to expose our security just for that doh.gif


So anyway, anyone working for the newspaper, and please copy paste riv's statement into the news, thx. A good headline would be "TMnut obsession with control leads to security loophole for Unifi consumer and business users alike" rolleyes.gif

This post has been edited by Moogle Stiltzkin: May 30 2010, 01:03 AM
darkskies
post May 30 2010, 01:11 AM

Look at all my stars!!
*******
Senior Member
2,336 posts

Joined: Nov 2007
From: 特別壱参番対ゴミ人間調査隊大将



QUOTE(Moogle Stiltzkin @ May 30 2010, 01:00 AM)
No no, i think it was right making this public. Maybe this will get into the star and we can pressure tmnut to let their users use their own routers.

If we do have any problem, we would call tmnut helpline 100 and they can send a technician over. No need to expose our security just for that  doh.gif
So anyway, anyone working for the newspaper, and please copy paste riv's statement into the news, thx. A good headline would be "TMnut obsession with control leads to security loophole for Unifi consumer and business users alike"  rolleyes.gif
*
It'll nv appear in the news. Everything is controlled. The only way is to discourage users frm signing up for unifi. Money is still the best way to deal with them rather then going on with complaints. If they are still earning money they'll just continue to do what they want. Once their budget is blown they'll learn their lesson.
Neptern
post May 30 2010, 01:16 AM

On my way
****
Junior Member
518 posts

Joined: Aug 2005
Yea keeping quiet won't solve anything.It is better knowing than mati katak for unifi users.Good job.
AZNo.O
post May 30 2010, 01:18 AM

New Member
*
Junior Member
42 posts

Joined: Dec 2009
Thanks rivanvp.
Time to fire up my backtrack.
celicaizpower
post May 30 2010, 01:25 AM

Race : ☐ Malay ☐ Chinese ☐ India ☑ /k/tard
******
Senior Member
1,177 posts

Joined: Jan 2009
From: No 1, Moon of Earth, Milky Way Galaxy, Universe #1



Hi guys,

I think as what @Riz already mention, as a Unifi owner do you think you can SUE TMNUT?

ermmm.. food for thought.
ysc
post May 30 2010, 01:47 AM

Enthusiast
*****
Senior Member
860 posts

Joined: Nov 2008
QUOTE(darkskies @ May 30 2010, 12:32 AM)
Bandwidth cap lifted but not contract. Check the Term & Condition on the website. They are not stupid enough to lift their contract which is where their bait gonna be.
*
lol

i wanted to say bandwidth but didnt notice.. dunno why my hand typed contrct instead
didnt notice till some1 pm me
xbomer
post May 30 2010, 01:47 AM

New Member
*
Newbie
1 posts

Joined: Sep 2008
From: Ipoh


any1 care to explain this thing...im so noob btw
VengenZ
post May 30 2010, 02:59 PM

La la la~
****
Senior Member
608 posts

Joined: Nov 2009
From: 127.0.0.1



QUOTE(xbomer @ May 30 2010, 01:47 AM)
any1 care to explain this thing...im so noob btw
*
Simple, TM can spy ur porn. Rizvan can spy ur porn.(If u r using unifi)
thumbup.gif
almaty
post May 30 2010, 05:57 PM

Enthusiast
*****
Senior Member
944 posts

Joined: Jan 2003
From: does not exist
QUOTE(VengenZ @ May 29 2010, 04:24 PM)
I think their monitoring the usage for the cap limit?
*
firstly, GOOD exposé rizwan!!

@vengenz, they dont need to touch the dir-615 to check usage of cap limit.
eg. your mobile usage for billing telco dont need to touch your phone wink.gif


Added on May 30, 2010, 6:02 pm
QUOTE(night_wolf_in @ May 29 2010, 06:07 PM)
ya. it is management. there is no security issues to worry about. the moment you connected to the internet with your own router/modem with only your account, you are screwed by anyone who wants to screw you.

It is remote mangment of the ROUTER/MODEM. so if someone who is very smart, go play with the settings, then internet doesn't work. they dont have to send a guy to fix it. and dont tell me there are no people who screw their own modem then swear at tmnuts.

this great discovery is not worth the rant. If you think you know better than ISP bout network and security. then do what you want to do. Otherwise, i suggest keeping things the way they are.
*
wahh!! started already. deflect. trivialise. ridicule.


Added on May 30, 2010, 6:37 pm
QUOTE(rizvanrp @ May 29 2010, 09:20 PM)
Sorry I forgot to add this in, Unifi's main VLAN has no caps on it. Every user is capped at the account level only. This means if a 5mbps breaks into a 20mbps users router and takes his user/pass, he will get 20mbps at home. Nice job TM smile.gif

Since you're going to be implementing an account cap, I can't imagine what people would do to get past it  sweat.gif
*
in future...this will be a fav pastime for some. and the unsuspecting user after 3 days. eh?!@ why so slow?!?
call helpdesk...quota used LOL...sorry we cant help you. no proof that you did not use it yourself.




This post has been edited by almaty: May 30 2010, 06:37 PM
eddie_lim
post May 30 2010, 07:12 PM

You Never Walk Alone
Group Icon
Elite
4,024 posts

Joined: Jan 2003
From: In the deepest part of your heart !




They so called CCNP in the whole design of TM network sucks, if they are so call clever, they won't design the whole network layout like this in the first place. enterprise user won't be using their DIR-615 for default router anyway, but double NAT-ed behind DIR-615 is not doing any good with application like FTP except DMZ it; futhermore if the DIR-615 being exploited, they will be a middleman which can run something like SSLstrip, ur maybank2u, pbebank will be monitored without SSL.

night_wolf_in, i do not mean to hurt ur feeling but, get your old school cisco rules knowledge away, go learn some linux and get certified with RHCE instead of CCNP anyway.
TSrizvanrp
post May 30 2010, 08:13 PM

Getting Started
Group Icon
Elite
195 posts

Joined: Sep 2006



I already updated the first page with a FAQ for all those "CCNP"s who are somehow still unaware of the capabilities of embedded systems in the year 2010.
almaty
post May 30 2010, 08:14 PM

Enthusiast
*****
Senior Member
944 posts

Joined: Jan 2003
From: does not exist
really who cares ccna/ccnp. blow a whistle, hundreds/thousands will come.
in constrast, banks/big corps will pay big $$$ to consultants to verify security.

anyway rizwan good on ya. some people would have kept quiet so that they can exploit for their personal gain for as long as possible/forever...

i think tm owes you at least 1 years free subscription wink.gif

eddie_lim
post May 30 2010, 10:41 PM

You Never Walk Alone
Group Icon
Elite
4,024 posts

Joined: Jan 2003
From: In the deepest part of your heart !




Btw, rizvanrp, didn't notice that u have promoted to Elite member, congrats!
DeniseLau
post May 30 2010, 10:46 PM

Casual
***
Junior Member
324 posts

Joined: Mar 2008
omg man, this is a serious fking breach of security. What's the issue with using your own router? Wouldn't it work?

Has anyone made complaints to MCMC?


p.s. Thanks riz for posting this. It's good to have a whitehat around.

This post has been edited by DeniseLau: May 30 2010, 10:47 PM
cannavaro
post May 31 2010, 06:43 AM

CATTENACIO
*******
Senior Member
3,008 posts

Joined: Sep 2005
From: T.T.D.I, Bukit Damansara


Still can't find out the other admin account. thought it was 'operator, but no cigar.
mylinear
post May 31 2010, 12:37 PM

Enthusiast
*****
Senior Member
974 posts

Joined: Jan 2009
QUOTE(rizvanrp @ May 30 2010, 08:13 PM)
I already updated the first page with a FAQ for all those "CCNP"s who are somehow still unaware of the capabilities of embedded systems in the year 2010.
*
What happens if you reset the router back to factory defaults? Will this "hidden" account remain? Will it reset the password for the account? Will the account still have remote management enabled after a reset?

TSrizvanrp
post May 31 2010, 12:43 PM

Getting Started
Group Icon
Elite
195 posts

Joined: Sep 2006



Resetting doesn't work, this exploit relies on the fact that this account uses the default user/pass combo. Resetting it just resets it back to the same user/pass, remote management will be disabled however. But there's really no point anyway, the SSH daemon is still accessible via LAN.. cant stop it at all from the GUI even with this second account.
cshong
post May 31 2010, 01:09 PM

Look at all my stars!!
*******
Senior Member
3,927 posts

Joined: Oct 2007
Even though I am not UNIFI user, but according to the manual of DIR-615 downloaded from D-Link website, the default user name is 'Admin' and the default password is to leave the password field empty, means no password.

Have anyone tried resetting the DIR-615 and try login with user name 'Admin' and empty password?
TSrizvanrp
post May 31 2010, 01:12 PM

Getting Started
Group Icon
Elite
195 posts

Joined: Sep 2006



QUOTE(cshong @ May 31 2010, 01:09 PM)
Even though I am not UNIFI user, but according to the manual of DIR-615 downloaded from D-Link website, the default user name is 'Admin' and the default password is to leave the password field empty, means no password.

Have anyone tried resetting the DIR-615 and try login with user name 'Admin' and empty password?
*
admin and an empty pass works on some Unifi routers with older firmware <7.05. The newer one is admin and (removed by wkkay) as the pass.

This post has been edited by wKkaY: Jun 1 2010, 04:28 PM
cshong
post May 31 2010, 01:18 PM

Look at all my stars!!
*******
Senior Member
3,927 posts

Joined: Oct 2007
QUOTE(rizvanrp @ May 31 2010, 01:12 PM)
admin and an empty pass works on some Unifi routers with older firmware <7.05. The newer one is admin and 'telekom' as the pass.
*
May be TM use customized firmware.

But, since you found the password, better change it.
skincladalien
post May 31 2010, 01:20 PM

Densha Otaku
******
Senior Member
1,914 posts

Joined: Jan 2003
From: New Selangor ^.^Y


I just had lunch with someone. Can't reveal much but look up for the Space Shuttle Challenger case study, and related it to a big Government linked company like TM...

Thats the max hint I can give.
mylinear
post May 31 2010, 01:56 PM

Enthusiast
*****
Senior Member
974 posts

Joined: Jan 2009
QUOTE(rizvanrp @ May 31 2010, 12:43 PM)
Resetting doesn't work, this exploit relies on the fact that this account uses the default user/pass combo. Resetting it just resets it back to the same user/pass, remote management will be disabled however. But there's really no point anyway, the SSH daemon is still accessible via LAN.. cant stop it at all from the GUI even with this second account.
*
At least if you reset the router, the remote management becomes disabled without you having to access the account to do it manually. Easier for basic users to do. Then the account becomes inaccessible from the outside world, right? Isn't the SSH damon also disabled by default? So without remote access to the account, you cannot enable ssh? Correct me if I am wrong please.

When you say "accessible via LAN" , are you referring to your own internal network, ie other users at home / office? Or are you referring to other Unifi users within the Unifi network?

If I understad correctly, TM should disable remote management by default. They just have to reset the router upon installation. If TM requires remote management to do troubleshooting or maintenance, when a user calls the helpline, they can be instructed on how to enable the remote management , do the necessary maintenance and then rest / disable it again.

TSrizvanrp
post May 31 2010, 02:02 PM

Getting Started
Group Icon
Elite
195 posts

Joined: Sep 2006



It's part of the Unifi installation process to enable remote management for some reason. Its disabled in a fresh reset but the technicians will enable it. Don't ask me why :S

The SSH server is always running. Even when you do a reset, its still running. The box in the 2ndary account for SSH access will be unticked, which only means the WAN (others on the internet) cannot access the SSH daemon. Other people on your LAN (192.168.0.0/24) will be able to access it fine when its not 'enabled' in the web user interface. That's why I say its still a risk to people running open Unifi hotspots at shops.
mylinear
post May 31 2010, 02:29 PM

Enthusiast
*****
Senior Member
974 posts

Joined: Jan 2009
QUOTE(skincladalien @ May 31 2010, 01:20 PM)
I just had lunch with someone. Can't reveal much but look up for the Space Shuttle Challenger case study, and related it to a big Government linked company like TM...

Thats the max hint I can give.
*
You may not want to give hints on the details, but at least hint more on the general topic you are referring to...

Guesses..

1. Is TM going to contact these forum admins and request that this and other similar topics about TM be removed or banned? Or the media has been informed not to take up this matter?

2. TM is fully aware of this but they are waiting for something to happen first, then take action or come up with excuses later?
I would think security professionals would rather be pro-active about security rather than re-active.

3 rizvanrp is going to be blown up via remote management?...??

zstan
post May 31 2010, 02:53 PM

10k Club
********
All Stars
15,856 posts

Joined: Nov 2007
From: Zion



first and foremost,

thanks rizvanrp for the post!

so what's the conclusion for all these?

don't subscribe to unifi? hmm.gif

p/s: not a tech savvy person, don't get 90% of things u guys talking. except TM can rob ur porn.
cannavaro
post May 31 2010, 03:25 PM

CATTENACIO
*******
Senior Member
3,008 posts

Joined: Sep 2005
From: T.T.D.I, Bukit Damansara


QUOTE(rizvanrp @ May 31 2010, 01:12 PM)
admin and an empty pass works on some Unifi routers with older firmware <7.05. The newer one is admin and 'telekom' as the pass.
*
Mine is version 7.05. Login is 'admin' and password is blank. Got it from the installer btw.
Ah.. so telekom is the pass for... let me try when I get home. hmm.gif
sevenBYseven
post May 31 2010, 06:29 PM

New Member
*
Newbie
0 posts

Joined: Oct 2009
QUOTE(rizvanrp @ May 31 2010, 02:02 PM)
It's part of the Unifi installation process to enable remote management for some reason. Its disabled in a fresh reset but the technicians will enable it. Don't ask me why :S

The SSH server is always running. Even when you do a reset, its still running. The box in the 2ndary account for SSH access will be unticked, which only means the WAN (others on the internet) cannot access the SSH daemon. Other people on your LAN (192.168.0.0/24) will be able to access it fine when its not 'enabled' in the web user interface. That's why I say its still a risk to people running open Unifi hotspots at shops.
*
my friend told me they enable the remote management for the FIRST level of troubleshooting purpose doing by network operation center, to "see" our router (damage or not) in case if our service down before they send their tech to cust house... hmm.gif

i still remember somebody mentioned about his router suddenly reboot just about minute after he called Unifi support center. cool2.gif

cannavaro
post May 31 2010, 07:58 PM

CATTENACIO
*******
Senior Member
3,008 posts

Joined: Sep 2005
From: T.T.D.I, Bukit Damansara


Well thank you for the hint rizvanrp. Finally got access to 'true' admin account. rclxms.gif
76radius
post May 31 2010, 08:27 PM

Getting Started
**
Junior Member
232 posts

Joined: Jan 2006


QUOTE(cannavaro @ May 31 2010, 08:58 PM)
Well thank you for the hint rizvanrp. Finally got access to 'true' admin account.  rclxms.gif
*
Yeah. Thanks to Rizvanrp & Cannavaro for the Hints. I definitely wanna make DIR615 as a "Back-up" Vlan Bridge. Hahahaha. Fun Fun Fun!!!!
silverhawk
post May 31 2010, 11:30 PM

Eyes on Target
Group Icon
Elite
4,955 posts

Joined: Jan 2003


Rizvan, good job as usual smile.gif

t3chn0m4nc3r
post Jun 1 2010, 12:07 AM

Teh Necron Lord
*******
Senior Member
4,139 posts

Joined: Sep 2006
From: Internet


allow me to say these:

1) TM staff are mostly less IT-literate than any IT personnel in other large IT MNC firms.

2) TM management are mostly completely IT-illiterate.

3) TM 2 dumb to know all this and assumes the public are no better than them.


Added on June 1, 2010, 12:20 am
QUOTE(DeniseLau @ May 30 2010, 10:46 PM)
What's the issue with using your own router? Wouldn't it work?
*

this info will be very very much appreciated if any1 have it... hmm.gif


This post has been edited by t3chn0m4nc3r: Jun 1 2010, 12:20 AM
HeHeHunter
post Jun 1 2010, 01:24 AM

On my way
****
Senior Member
664 posts

Joined: Dec 2006
QUOTE(t3chn0m4nc3r @ Jun 1 2010, 12:07 AM)
allow me to say these:

1) TM staff are mostly less IT-literate than any IT personnel in other large IT MNC firms.

2) TM management are mostly completely IT-illiterate.

3) TM 2 dumb to know all this and assumes the public are no better than them.
*
You're wrong. They are smarter than us. Or else, they would be the one working for us instead of the other way round.

Anyway, time to boot up backtrack now~
nitewish
post Jun 1 2010, 02:06 AM

Viva La Resistance
*****
Senior Member
810 posts

Joined: Feb 2008
From: 127.0.0.1



are both global account and the ssh accounts the same?

edit: never mind, i figured it out. =D

This post has been edited by nitewish: Jun 1 2010, 03:04 AM
MX510
post Jun 1 2010, 09:07 AM

Love Me Sin Hate Me Sinner
*******
Senior Member
4,038 posts

Joined: Aug 2005
From: Earth



TM also did this on their GITN Customers
faud
post Jun 1 2010, 07:18 PM

New Member
*
Newbie
0 posts

Joined: Sep 2009


u all who read this must understand what "ISP" stands for. As an Internet Service Provider, all they can do is to give internet access to customer. n they manage to give it. the problem is about that modem. the D-link modem. they should be blame bcause they set the default settings. i think TM have no rights to change the default setting except the one that has to do with internet access.

about the question on can people change the modem..... i think they cant.... bcoz it has something to do with the main equipment at TM office n MAC address of the modem(my friend at TM told me). so if u n ur neighbour both subscribe unfi, their modem cant be exchange eventhough they have the same modem brand....

try to google about the d-link modem to find more answers
ihsan
post Jun 1 2010, 07:29 PM

Regular
Group Icon
Elite
1,235 posts

Joined: Jan 2003
From: kuala lipis
i think the issue is not about running ssh daemon or not. most routers run ssh on internet-facing segment so no biggie. the real issue in my opinion is the fact that the remote management is enabled for 0/0 network which actually means anyone including my mother can access any resources in the router.

so if it's part of the t&c that tm can and must access the RG then they can do that. the incompetence part of this is opening it up for all the world to access. ideally the router should only be access from trusted/authorized segment which has to be explicitly specified in the remote management section.
t3chn0m4nc3r
post Jun 1 2010, 08:48 PM

Teh Necron Lord
*******
Senior Member
4,139 posts

Joined: Sep 2006
From: Internet


QUOTE(HeHeHunter @ Jun 1 2010, 01:24 AM)
You're wrong. They are smarter than us. Or else, they would be the one working for us instead of the other way round.

Anyway, time to boot up backtrack now~
*

u work for TM...? don think so... u pay TM bill 1 la... laugh.gif
HeHeHunter
post Jun 1 2010, 09:01 PM

On my way
****
Senior Member
664 posts

Joined: Dec 2006
QUOTE(t3chn0m4nc3r @ Jun 1 2010, 08:48 PM)
u work for TM...? don think so... u pay TM bill 1 la... laugh.gif
*
You don't pay TM bill, they suspend your account. tongue.gif
mitodna
post Jun 2 2010, 10:50 AM

Getting Started
********
All Stars
14,039 posts

Joined: Jan 2003
For ISP remote management, there is something called TR-069 right?
silverhawk
post Jun 2 2010, 12:11 PM

Eyes on Target
Group Icon
Elite
4,955 posts

Joined: Jan 2003


Link to this topic has been spreading alot today on twitter smile.gif
TehWateva
post Jun 2 2010, 12:38 PM

Schadenfreude Beaches.
******
Senior Member
1,448 posts

Joined: Sep 2005
From: Kay Elle



Actually it's not really that surprising that remote management is enabled. I've worked for another ISP and we have access to the company given routers that can be accessed via Remote management to check if there's anything wrong with the line. Though this feature is only available to corporate level clients.
atomica
post Jun 2 2010, 01:04 PM

Casual
***
Junior Member
340 posts

Joined: Nov 2006
Can someone PM me the default password for the firmware > 7.05?

Wish to test.

Tks.
almaty
post Jun 2 2010, 01:10 PM

Enthusiast
*****
Senior Member
944 posts

Joined: Jan 2003
From: does not exist
QUOTE(faud @ Jun 1 2010, 07:18 PM)
u all who read this must understand what "ISP" stands for. As an Internet Service Provider, all they can do is to give internet access to customer. n they manage to give it. the problem is about that modem. the D-link modem. they should be blame bcause they set the default settings. i think TM have no rights to change the default setting except the one that has to do with internet access.

about the question on can people change the modem..... i think they cant.... bcoz it has something to do with the main equipment at TM office n MAC address of the modem(my friend at TM told me). so if u n ur neighbour both subscribe unfi, their modem cant be exchange eventhough they have the same modem brand....

try to google about the d-link modem to find more answers
*
eh apologist. firstly its a wifi router. secondly, stop deflecting blame to dlink!!
that router is a custom router that tm oem-d from dlink. you cant buy it off the shelf from any store.
it is a tm router. i dont care if dlink or flink or nolink or slolink made it.

the tm logo pasted everywhere.

user posted image



HeHeHunter
post Jun 2 2010, 01:13 PM

On my way
****
Senior Member
664 posts

Joined: Dec 2006
QUOTE(almaty @ Jun 2 2010, 01:10 PM)
eh apologist. firstly its a wifi router. secondly, stop deflecting blame to dlink!!
that router is a custom router that tm oem-d from dlink. you cant buy it off the shelf from any store.
it is a tm router. i dont care if dlink or flink or nolink or slolink made it.

the tm logo pasted everywhere.

user posted image
*
Actually, we can flash it with WRT firmware. smile.gif
TSrizvanrp
post Jun 2 2010, 01:16 PM

Getting Started
Group Icon
Elite
195 posts

Joined: Sep 2006



QUOTE(faud @ Jun 1 2010, 07:18 PM)
u all who read this must understand what "ISP" stands for. As an Internet Service Provider, all they can do is to give internet access to customer. n they manage to give it. the problem is about that modem. the D-link modem. they should be blame bcause they set the default settings. i think TM have no rights to change the default setting except the one that has to do with internet access.

about the question on can people change the modem..... i think they cant.... bcoz it has something to do with the main equipment at TM office n MAC address of the modem(my friend at TM told me). so if u n ur neighbour both subscribe unfi, their modem cant be exchange eventhough they have the same modem brand....

try to google about the d-link modem to find more answers
*
I've already broken their IPTV, VLAN tagging, bandwidth limits and now this stupid router account. Did all my own research using Linux, wireshark and a 10mbps ISDN hub from 10 years ago.

PPPoE can use MAC authentication but its not set on Unifi or streamyx at the moment. Even if they did use MAC authentication, most routers have MAC address cloning/spoofing features even on their stock firmware. TM seems to not know the capabilities of their own equipment at the moment.

I didn't get this information from a friend of a friend who works at TM or anything, I just observed the protocols, system configuration and made my own assumptions (which 95%+ of the time turned out to be correct).

Anyway, just uploaded some material regarding Unifi on my own site @ http://unifi.athena.my/ or http://athena.my/unifi . Should be sufficient to get you running on your own router hardware using the DIR-615 as a VLAN bridge (which they still claim is impossible whistling.gif ).

@ihsan

Having the SSHd enabled alone allows them to turn every router into a proxy using SSH tunneling. It's not necessary to have SSH at all since the web interface provides all the necessary tools.. and there are TTL connectors on the DIR-615 board which allow for serial connections. Hiding the account made us crack our heads for months wondering what would be a good VLAN switch to use as a bridge when the DIR-615 could be used all along.. something they denied was possible. I'm sure newbies wont mind letting TM's support staff access their router to help them troubleshoot the situation but advanced users and corporations may not feel comfortable with that sort of thing. Even if this was the case, TM wouldn't be able to access the router remotely if the HSBB line was having connection issues.

I'm already getting tons of PMs from non-Unifi users regarding how to do this while pretending to be Unifi users, it's like they can taste the premium HSBB bandwidth or something.

---

I'm also just scratching the surface of this exploit here, the GPON routers (Fiberhome) are also not configured properly and open to outsider access but thankfully they operate at a much lower layer.

This post has been edited by rizvanrp: Jun 2 2010, 02:59 PM
knuxed
post Jun 2 2010, 02:43 PM

Regular
******
Senior Member
1,885 posts

Joined: Jan 2003
From: Bangsar,Kuala Lumpur



this is brilliant,thanks riz
cannavaro
post Jun 2 2010, 02:57 PM

CATTENACIO
*******
Senior Member
3,008 posts

Joined: Sep 2005
From: T.T.D.I, Bukit Damansara


QUOTE(rizvanrp @ Jun 2 2010, 01:16 PM)
I'm already getting tons of PMs from non-Unifi users regarding how to do this while pretending to be Unifi users, it's like they can taste the premium HSBB bandwidth or something.
*
I also got a few PMs regarding the username/password... which is a no brainer really if you read some posts properly.
Moogle Stiltzkin
post Jun 2 2010, 03:06 PM

Look at all my stars!!
*******
Senior Member
4,451 posts

Joined: Jan 2003
QUOTE(almaty @ Jun 2 2010, 01:10 PM)
eh apologist. firstly its a wifi router. secondly, stop deflecting blame to dlink!!
that router is a custom router that tm oem-d from dlink. you cant buy it off the shelf from any store.
it is a tm router. i dont care if dlink or flink or nolink or slolink made it.

the tm logo pasted everywhere.

user posted image
*
Oem or not the hardware is still a piece of shit for p2p especially and that is the truth.

QUOTE
But, more significantly, the 615 could reliably sustain only 32 connections in the maximum simultaneous connections test. Ubicom questioned these results when they first posted in the charts and said its tests (also done with IxChariot) produced results more like the 625's. D-Link had no comment on the results.


WAN to LAN Throughput: 87.5 Mbps

LAN to WAN Throughput: 88.1 Mbps

Total Simultaneous Throughput: 62.1 Mbps

Maximum Simultaneous Connections: 32  !!!

user posted image

Uploaded with ImageShack.us 
http://www.smallnetbuilder.com/content/view/30349/187/



All tmnut did was make a piece of shit an even bigger pile of piece of shit (which sadly they proved possible by making it a security disaster and needlessly not letting their users use their own routers) shakehead.gif

This post has been edited by Moogle Stiltzkin: Jun 2 2010, 03:21 PM
ihsan
post Jun 2 2010, 05:20 PM

Regular
Group Icon
Elite
1,235 posts

Joined: Jan 2003
From: kuala lipis
QUOTE(rizvanrp @ Jun 2 2010, 01:16 PM)
@ihsan

Having the SSHd enabled alone allows them to turn every router into a proxy using SSH tunneling. It's not necessary to have SSH at all since the web interface provides all the necessary tools.. and there are TTL connectors on the DIR-615 board which allow for serial connections. Hiding the account made us crack our heads for months wondering what would be a good VLAN switch to use as a bridge when the DIR-615 could be used all along.. something they denied was possible. I'm sure newbies wont mind letting TM's support staff access their router to help them troubleshoot the situation but advanced users and corporations may not feel comfortable with that sort of thing. Even if this was the case, TM wouldn't be able to access the router remotely if the HSBB line was having connection issues.
if the access list only allows certain range to access the box, then only from that segment can someone tunnel over SSH. since I would think that the origin the router has to be a linux or something similar to that, i figure an sshd daemon is needed to do low-level diagnostics or configuration since you expose yourself to unnecessary risk if you open up low level access via web application. of course there's a way to mitigate the level of compromise i.e. webapp speak to system daemon via restricted socket etc, i doubt that current breeds of RGs have that level of sophistication.

back to the question whether or not it's appropriate to have low-level access from the perspective of remote RG management, i think it's more of a matter of policy. and of course having said that the password management could have done better.

good job for the expose. it takes just one exploit for them to feel the heat.

This post has been edited by ihsan: Jun 2 2010, 05:25 PM
TSrizvanrp
post Jun 2 2010, 05:36 PM

Getting Started
Group Icon
Elite
195 posts

Joined: Sep 2006



@ihsan

I completely agree that they botched the access control for the router.

Regarding policy, I'm not really contending the fact that they can decide if they want to have access to their own hardware. After all, none of us actually bought the DIR-615 from them. I just wish they that they would have a less restrictive and more open policy when it comes to the hardware. If they had informed us about this second account, not only would we have been able to avoid this whole security fiasco.. we would have been able to use our own routers with their system for internet access from the very beginning.

I think they should have remote access up to the Fiberhome unit but beyond that it's really up to the users what hardware they want to use. There's no hardware policy on Streamyx, there shouldn't be one on Unifi either. I don't really want them telling me what router I can or cannot use with Unifi and judging by the response I've received from other users on LYN, I think they feel the same way. When it comes to securing my network, I've never trusted TM from day one.
TheFalcon
post Jun 2 2010, 06:05 PM

Getting Started
**
Junior Member
126 posts

Joined: Jan 2003
From: Subang Jaya


this thread is in the news already
kaka

surely tm will see it now

http://www.themalaysianinsider.com/malaysi...hacking-spying/
ayamkambing
post Jun 2 2010, 06:29 PM

Getting Started
**
Junior Member
66 posts

Joined: Aug 2009
From: Kenpachi Fried Chicken!


Why is this place all YELLOW??? i thought i was in some Digi ad or something
Kravo
post Jun 2 2010, 06:36 PM

Regular
******
Senior Member
1,230 posts

Joined: Apr 2006
moral of the lesson:

can you trust tmnut?

absolutely no.
almaty
post Jun 2 2010, 06:36 PM

Enthusiast
*****
Senior Member
944 posts

Joined: Jan 2003
From: does not exist
bcoz we like the yellow fellow not the copycat blue bear
Neptern
post Jun 2 2010, 06:38 PM

On my way
****
Junior Member
518 posts

Joined: Aug 2005
I'm curious what kind of lame ass response will tmnut give smile.gif
TSrizvanrp
post Jun 2 2010, 06:43 PM

Getting Started
Group Icon
Elite
195 posts

Joined: Sep 2006



QUOTE(Neptern @ Jun 2 2010, 06:38 PM)
I'm curious what kind of lame ass response will tmnut give smile.gif
*
TMnet cable fault.. in your router. icon_idea.gif
gnx
post Jun 2 2010, 06:50 PM

New Member
*
Junior Member
43 posts

Joined: Jun 2006
TheStar has the news as well.

http://techcentral.my/news/story.aspx?file...235&sec=IT_News
ayamkambing
post Jun 2 2010, 07:00 PM

Getting Started
**
Junior Member
66 posts

Joined: Aug 2009
From: Kenpachi Fried Chicken!


QUOTE(gnx @ Jun 2 2010, 06:50 PM)
Will TMNet sue "rizvanrp" for exposing them? maybe say he is defaming TMNet? blink.gif
almaty
post Jun 2 2010, 07:07 PM

Enthusiast
*****
Senior Member
944 posts

Joined: Jan 2003
From: does not exist
he is stating a fact/truth. he has nothing to worry about. tm should thank him.

klseet
post Jun 2 2010, 07:27 PM

Getting Started
**
Junior Member
130 posts

Joined: Mar 2008
I was reading:
http://www.themalaysianinsider.com/malaysi...hacking-spying/
and the link leads me to here....

How ignorant yet stupid enough to turn-on remote access with guessable or findable password.... this is terrible .... what the hell TM is doing ?? shocking.gif

I must thank "rizvanrp" for discovering the facts rclxms.gif
at least now the public know TM is trying to do some funny things at out back-door without our knowledge. mad.gif
ayamkambing
post Jun 2 2010, 07:31 PM

Getting Started
**
Junior Member
66 posts

Joined: Aug 2009
From: Kenpachi Fried Chicken!


QUOTE(almaty @ Jun 2 2010, 07:07 PM)
he is stating a fact/truth. he has nothing to worry about. tm should thank him.
*
Butthurt companies dont like the truth where it hurts them at their pockets and reputation. A lawsuit may happen.
almaty
post Jun 2 2010, 07:46 PM

Enthusiast
*****
Senior Member
944 posts

Joined: Jan 2003
From: does not exist
Unifi ‘backdoor’ allows hacking, spying

http://blog.limkitsiang.com/2010/06/02/uni...hacking-spying/

read the first comment in the blog. carboncopy is wondering whether unifi users can file class action suit against tm LOL.

on the other hand i wonder what other manufacturers like linksys, aztech for eg think about unifi and the dir-615 exclusivity.



This post has been edited by almaty: Jun 2 2010, 07:59 PM
SUSsoundsyst64
post Jun 2 2010, 07:50 PM

I'm No-Longer-Noobs
*******
Senior Member
3,725 posts

Joined: Jul 2005
From: In /hardware/

QUOTE(ayamkambing @ Jun 2 2010, 07:00 PM)
Will TMNet sue "rizvanrp" for exposing them? maybe say he is defaming TMNet?  blink.gif
*
how to sue. Do they know rizvanrp in the first place? And to they know that they violate their own T&C ? biggrin.gif
skincladalien
post Jun 2 2010, 07:50 PM

Densha Otaku
******
Senior Member
1,914 posts

Joined: Jan 2003
From: New Selangor ^.^Y


i guess the challenger has blown up now. Wonder how the TM team gonna solve this
nitewish
post Jun 2 2010, 07:51 PM

Viva La Resistance
*****
Senior Member
810 posts

Joined: Feb 2008
From: 127.0.0.1



lol from TM's tweet
http://bit.ly/a4h2qs
SUSsoundsyst64
post Jun 2 2010, 07:53 PM

I'm No-Longer-Noobs
*******
Senior Member
3,725 posts

Joined: Jul 2005
From: In /hardware/

News Release

2 June 2010


STATEMENT


Telekom Malaysia Berhad ™ wishes to clarify the concerns raised by various parties with regards to the remote accessibility of UniFi routers which are part of the customer premises equipment (CPE) for all UniFi subscribers.

TM would like to assure all concerned parties that the only reason the UniFi router setting for remote access is enabled is for remote access troubleshooting purposes for the express use of our technical support personnel. In the event there is a technical support issue with any of our UniFi subscribers; at the first level of troubleshooting, TM’s network operation centre (NOC) can immediately remotely diagnose the problem before sending a support team on-site.

TM takes note of the security concerns that have been raised, and we have taken these issues to heart.

TM also acknowledges that there is a need to balance the public’s level of comfort with regards to security and privacy and TM’s own commitment to faster support turnaround time. As such, TM would like to maintain the higher level of service enabled by remote access management on customer routers, and in recognition of that TM will immediately change every UniFi customers’ router management password into a high security, unique one (which will be only known to the customer and TM). TM will notify all our Unifi customers of this change accordingly.
ayamkambing
post Jun 2 2010, 07:54 PM

Getting Started
**
Junior Member
66 posts

Joined: Aug 2009
From: Kenpachi Fried Chicken!


QUOTE(soundsyst64 @ Jun 2 2010, 07:50 PM)
how to sue. Do they know rizvanrp in the first place? And to they know that they violate their own T&C ? biggrin.gif
*
Suing a forummer is an easy task. All u need is police report and/or lawyers letter to demand such, and can hold this forum board accountable.

So if want to say something bad about TMnet, careful la. Now all blogs and news site points to this thread...so careful abit. tongue.gif


Added on June 2, 2010, 7:56 pm
QUOTE(soundsyst64 @ Jun 2 2010, 07:53 PM)
News Release

2  June 2010


STATEMENT


Telekom Malaysia Berhad ™ wishes to clarify the concerns raised by various parties with regards to the remote accessibility of UniFi routers which are part of the customer premises equipment (CPE) for all UniFi subscribers.

TM would like to assure all concerned parties that the only reason the UniFi router setting for remote access is enabled is for remote access troubleshooting purposes for the express use of our technical support personnel. In the event there is a technical support issue with any of our UniFi subscribers; at the first level of troubleshooting, TM’s network operation centre (NOC) can immediately remotely diagnose the problem before sending a support team on-site.

TM takes note of the security concerns that have been raised, and we have taken these issues to heart.

TM also acknowledges that there is a need to balance the public’s level of comfort with regards to security and privacy and TM’s own commitment to faster support turnaround time. As such, TM would like to maintain the higher level of service enabled by remote access management on customer routers, and in recognition of that TM will immediately change  every UniFi customers’ router management password into a high security, unique one (which will be only known to the customer and TM). TM will notify all our Unifi customers of this change accordingly.
*
Not good enough

Remote access should only be granted on a need to bases by the client, and no TM staff should know nor be allowed such access unless explicitly granted.

They still want to maintain it. How can they assure that their TM staff dont exploit it?

This post has been edited by ayamkambing: Jun 2 2010, 07:56 PM
MX510
post Jun 2 2010, 08:05 PM

Love Me Sin Hate Me Sinner
*******
Senior Member
4,038 posts

Joined: Aug 2005
From: Earth



Actually they also did this on their corporate customer it just ur router username n password tongue.gif . Nobody can install anything into it tongue.gif . Even default username n password for Streamyx are also unsecured if u set the modem dial and store ur password in there tongue.gif
lok3i
post Jun 2 2010, 08:07 PM

cycling for a healthy life
****
Senior Member
559 posts

Joined: Mar 2009


rizvanrp really famous this time..
TM screw up..
TSrizvanrp
post Jun 2 2010, 08:10 PM

Getting Started
Group Icon
Elite
195 posts

Joined: Sep 2006



QUOTE(MX510 @ Jun 2 2010, 08:05 PM)
Actually they also did this on their corporate customer it just ur router username n password tongue.gif . Nobody can install anything into it tongue.gif . Even default username n password for Streamyx are also unsecured if u set the modem dial and store ur password in there tongue.gif
*
MX there's a difference between their Riger DSL modem which is pretty crappy and only has a web UI compared to a custom made DLINK DIR-615 with full SSH access.. full SSH access you can SSH tunnel.. you can view the conntrack table.. you can modify the iptables and DNS servers to redirect users to phishing sites..
almaty
post Jun 2 2010, 08:13 PM

Enthusiast
*****
Senior Member
944 posts

Joined: Jan 2003
From: does not exist
QUOTE(ayamkambing @ Jun 2 2010, 07:54 PM)
Remote access should only be granted on a need to bases by the client, and no TM staff should know nor be allowed such access unless explicitly granted.

They still want to maintain it. How can they assure that their TM staff dont exploit it?
*
exactly. totally agree with you on this.

example...employee plans to leave tm or finds out he is getting fired etc...he starts to collect user/pwd wink.gif




ayamkambing
post Jun 2 2010, 08:16 PM

Getting Started
**
Junior Member
66 posts

Joined: Aug 2009
From: Kenpachi Fried Chicken!


QUOTE(rizvanrp @ Jun 2 2010, 08:10 PM)
MX there's a difference between their Riger DSL modem which is pretty crappy and only has a web UI compared to a custom made DLINK DIR-615 with full SSH access.. full SSH access you can SSH tunnel.. you can view the conntrack table.. you can modify the iptables and DNS servers to redirect users to phishing sites..
*
Sir, this is very greek to me. icon_question.gif
TSrizvanrp
post Jun 2 2010, 08:17 PM

Getting Started
Group Icon
Elite
195 posts

Joined: Sep 2006



MX will understand biggrin.gif
MX510
post Jun 2 2010, 08:21 PM

Love Me Sin Hate Me Sinner
*******
Senior Member
4,038 posts

Joined: Aug 2005
From: Earth



QUOTE(rizvanrp @ Jun 2 2010, 08:10 PM)
MX there's a difference between their Riger DSL modem which is pretty crappy and only has a web UI compared to a custom made DLINK DIR-615 with full SSH access.. full SSH access you can SSH tunnel.. you can view the conntrack table.. you can modify the iptables and DNS servers to redirect users to phishing sites..
*
I don't see much exploit can be install inside the router itself. Only as u said it they can view connections and ip tables and dns servers :-) . Anyway it's good that u point up the issues as i already notice it that they did it as practice common among their users since years ago and apply it for Unify.

As i also in my case did change the username n password default for my router in my office that use GITN line hehe they give a call and ask me why did i change it tongue.gif because they want to monitor tongue.gif.

CODE
TM would like to assure all concerned parties that the only reason the UniFi router setting for remote access is enabled is for remote access troubleshooting purposes for the express use of our technical support personnel. In the event there is a technical support issue with any of our UniFi subscribers; at the first level of troubleshooting, TM’s network operation centre (NOC) can immediately remotely diagnose the problem before sending a support team on-site.


Anyway u just give UniFi teams more work to do and setup their own database for unique password for each customers. As the issues already when public into www.thestar.com.my

CODE
TM also acknowledges that there is a need to balance the public’s level of comfort with regards to security and privacy and TM’s own commitment to faster support turnaround time. As such, TM would like to maintain the higher level of service enabled by remote access management on customer routers, and in recognition of that TM will immediately  change  every UniFi customers’ router management password into a high security, unique one (which will be only known to the customer and TM). TM will notify all our Unifi customers of this change accordingly.


Hehehe just for those who set username n password for ppoe into ur ADSL modem also pls change the default password because ppl can scan ip and get into ur ADSL modem and get ur username n password.


nitewish
post Jun 2 2010, 08:23 PM

Viva La Resistance
*****
Senior Member
810 posts

Joined: Feb 2008
From: 127.0.0.1



reminds me of the usual streamyx's default password tmnet123 =x

edit: by the way, what's TR-069, can we disable that feature as well?

This post has been edited by nitewish: Jun 2 2010, 08:26 PM
Mido575
post Jun 2 2010, 08:39 PM

Getting Started
**
Junior Member
123 posts

Joined: May 2010


may i know how to change the default password to my desired pw in a belkin modem setting?
ayamkambing
post Jun 2 2010, 08:47 PM

Getting Started
**
Junior Member
66 posts

Joined: Aug 2009
From: Kenpachi Fried Chicken!


Not to mention how TMNut's tech came and set the default WEP wifi security as aabbccddeeff for the end users who got their streamyx package including a wifi modem

How LAX! Shit work. Exposing unknown issues to their clients.
ycs
post Jun 2 2010, 08:53 PM

MEMBER
*******
Senior Member
4,220 posts

Joined: Jan 2003
From: Selangor



headline story in M Insider:

Attached Image

This post has been edited by ycs: Jun 2 2010, 08:55 PM
ayamkambing
post Jun 2 2010, 09:00 PM

Getting Started
**
Junior Member
66 posts

Joined: Aug 2009
From: Kenpachi Fried Chicken!


QUOTE(ycs @ Jun 2 2010, 08:53 PM)
headline story in M Insider:

Attached Image
*
wow, spilling blood!!! must go until spill blood? TMnet may be bad, no need spill blood! icon_question.gif
almaty
post Jun 2 2010, 09:05 PM

Enthusiast
*****
Senior Member
944 posts

Joined: Jan 2003
From: does not exist
that pic has something to do with israel?
funny to see the word hack and the pic...are you trying to insinuate something biggrin.gif

prasys
post Jun 2 2010, 09:18 PM

Heros Never Die
Group Icon
VIP
12,925 posts

Joined: Mar 2005
From: Kuala Lumpur
QUOTE(ycs @ Jun 2 2010, 08:53 PM)
headline story in M Insider:

Attached Image
*
You could post a link rather then posting a screenshot

Anyway its

http://www.themalaysianinsider.com/malaysi...hacking-spying/


mylinear
post Jun 2 2010, 09:50 PM

Enthusiast
*****
Senior Member
974 posts

Joined: Jan 2009
IMO, TM has shown:

QUOTE(soundsyst64 @ Jun 2 2010, 07:53 PM)
TM would like to assure all concerned parties that the only reason the UniFi router setting for remote access is enabled is for remote access troubleshooting purposes for the express use of our technical support personnel. In the event there is a technical support issue with any of our UniFi subscribers; at the first level of troubleshooting, TM’s network operation centre (NOC) can immediately remotely diagnose the problem before sending a support team on-site.
*
1. Failure to make users fully aware of such remote access in the first place.

2. Failure to realise that they cannot guarantee that the remote access would only be used by their support personnel and not a third party, especially with a weak password being used.

3. Failure to take into consideration the security aspects of the users, rather than focusing on easier support

QUOTE(soundsyst64 @ Jun 2 2010, 07:53 PM)
TM takes note of the security concerns that have been raised, and we have taken these issues to heart.
*
4. Failure to "get away" by trying to use "security by obscurity" method.

QUOTE(soundsyst64 @ Jun 2 2010, 07:53 PM)
TM also acknowledges that there is a need to balance the public’s level of comfort with regards to security and privacy and TM’s own commitment to faster support turnaround time. As such, TM would like to maintain the higher level of service enabled by remote access management on customer routers, and in recognition of that TM will immediately change  every UniFi customers’ router management password into a high security, unique one (which will be only known to the customer and TM). TM will notify all our Unifi customers of this change accordingly.
*
5. Failure to be pro-active, rather than re-active. The proposed unique password method could have been done right from the start.

6. Failure to follow some basic rules of creating passwords:
- do not use simple passwords
- do not use dictionary words or simple words as passwords
- do not use the same password on multiple accounts / services

druppert
post Jun 2 2010, 10:26 PM

New Member
*
Newbie
0 posts

Joined: Jun 2010
Sorry if i ask so directly BUT what is the higher-level admin login ? I do have the firmware 7.05.
What do you mean by "If you're a Unifi user on firmware 7.05, if you read everything in the management page you can find the username for this account. The pass is the same, ..."

Please help - I do need to change it!

Thanks!!
silverhawk
post Jun 2 2010, 10:47 PM

Eyes on Target
Group Icon
Elite
4,955 posts

Joined: Jan 2003


I wub twitter <3

I bet the tmnet guys have rizvanrp's username and avatar pinned up on the wall and throwing knives at it laugh.gif Making their job a lot harder tongue.gif


schmeichel7
post Jun 3 2010, 12:05 AM

The JERSEYMAN
Group Icon
Elite
2,475 posts

Joined: Jan 2003
From: Shah Alam


When I got my unifi installed last month.. I tweaked around the router (to change the DHCP addressing etc etc) and I notice the remote management feature is enabled by default.. Luckily I've turned it off ever since.. because I know, there is no need to remotely configure it since I can do so directly... Phewww...

Thanks rizvanrp for the info.
klseet
post Jun 3 2010, 12:16 AM

Getting Started
**
Junior Member
130 posts

Joined: Mar 2008
After much of pressure, now TM have to change:

http://www.themalaysianinsider.com/malaysi...ccess-settings/

ciohbu
post Jun 3 2010, 12:19 AM

Group: Senior Member
*******
Senior Member
2,104 posts

Joined: Oct 2006
TM..TM... stil think malaysian is stupid..

and credit to those ZTE's network engineer hired by TM + TM CCIEs .. tongue.gif

This post has been edited by ciohbu: Jun 3 2010, 12:38 AM
SlayerXT
post Jun 3 2010, 01:25 AM

PRIDE!
*******
Senior Member
2,042 posts

Joined: Jan 2003
From: KL



QUOTE(ciohbu @ Jun 3 2010, 12:19 AM)
TM..TM... stil think malaysian is stupid..

and credit to those ZTE's network engineer hired by TM + TM CCIEs .. tongue.gif
*
Hey are u working for those TM ZTE companies? Dont simply spill the beans here okay tongue.gif
schmeichel7
post Jun 3 2010, 01:37 AM

The JERSEYMAN
Group Icon
Elite
2,475 posts

Joined: Jan 2003
From: Shah Alam


Actually for every user... don't be lazy.. one thing they should do is always change the default admin password for the router and also the default settings for other features (such as the WIFI hotspot WPA key).

Lucky for me because I decided to disable the 'Remote Management' feature earlier after they've installed the unifi equipment at my home after I noticed this:

user posted image

When it says "or set 0.0.0.0 to allow access to any computer on the Internet'... That made me worry and straight away I decided to disable it. Lucky me because I decided to play around with the router and change the WPA Wifi password and the admin password as well.. Funnily though, there is another message in the picture above that reminds us "For security reasons, it is recommended that you change the login password for the admin accounts"

The intentions are noble. TM created an account that can be used to remotely access by the TM staff for troubleshooting purposes. But two big mistakes were made by TM which were:

1. Customer was not told about this up front (existence of another secondary account)
2. Customer was not given the option to change the password for this secondary account (how would they even know it exists since it can't be seen by the default admin userID)

You feel a bit cheated after finding out all this..

VengenZ
post Jun 3 2010, 01:54 AM

La la la~
****
Senior Member
608 posts

Joined: Nov 2009
From: 127.0.0.1



I am proud of u rivan:
http://www.tm.com.my/about-tm/media-centre...IFIROUTERS.aspx


STATEMENT


Telekom Malaysia Berhad ™ wishes to clarify the concerns raised by various parties with regards to the remote accessibility of UniFi routers which are part of the customer premises equipment (CPE) for all UniFi subscribers.

TM would like to assure all concerned parties that the only reason the UniFi router setting for remote access is enabled is for remote access troubleshooting purposes for the express use of our technical support personnel. In the event there is a technical support issue with any of our UniFi subscribers; at the first level of troubleshooting, TM’s network operation centre (NOC) can immediately remotely diagnose the problem before sending a support team on-site.

TM takes note of the security concerns that have been raised, and we have taken these issues to heart.

TM also acknowledges that there is a need to balance the public’s level of comfort with regards to security and privacy and TM’s own commitment to faster support turnaround time. As such, TM would like to maintain the higher level of service enabled by remote access management on customer routers, and in recognition of that TM will immediately change every UniFi customers’ router management password into a high security, unique one (which will be only known to the customer and TM). TM will notify all our Unifi customers of this change accordingly.


schmeichel7
post Jun 3 2010, 01:59 AM

The JERSEYMAN
Group Icon
Elite
2,475 posts

Joined: Jan 2003
From: Shah Alam


It is a shame on how this was not planned properly....

And I'm not surprised that TM quickly released that statement to safeguard their business and potential future customers.. Who wants to subscribe to unifi if they feel insecure and worried due to the risks..

If only they planned things properly in the first place.. Remote support can be done in a proper way..

This post has been edited by schmeichel7: Jun 3 2010, 02:00 AM
Moogle Stiltzkin
post Jun 3 2010, 03:57 AM

Look at all my stars!!
*******
Senior Member
4,451 posts

Joined: Jan 2003
QUOTE(VengenZ @ Jun 3 2010, 01:54 AM)
I am proud of u rivan:
http://www.tm.com.my/about-tm/media-centre...IFIROUTERS.aspx
STATEMENT


Telekom Malaysia Berhad ™ wishes to clarify the concerns raised by various parties with regards to the remote accessibility of UniFi routers which are part of the customer premises equipment (CPE) for all UniFi subscribers.

TM would like to assure all concerned parties that the only reason the UniFi router setting for remote access is enabled is for remote access troubleshooting purposes for the express use of our technical support personnel. In the event there is a technical support issue with any of our UniFi subscribers; at the first level of troubleshooting, TM’s network operation centre (NOC) can immediately remotely diagnose the problem before sending a support team on-site.

TM takes note of the security concerns that have been raised, and we have taken these issues to heart.

TM also acknowledges that there is a need to balance the public’s level of comfort with regards to security and privacy and TM’s own commitment to faster support turnaround time. As such, TM would like to maintain the higher level of service enabled by remote access management on customer routers, and in recognition of that TM will immediately change  every UniFi customers’ router management password into a high security, unique one (which will be only known to the customer and TM). TM will notify all our Unifi customers of this change accordingly.
*
This if frakkin bullshit. All they said is

1. they are keeping remote access despite our complaints for the CHOICE of not having it (we don't want them poking around inside our stuff. And we don't want a backdoor for l33t hackers.)

2. Their only solution is to change the operator password so we cannot access....... so if we can't access, how do we bypass their shitty router and use our own using Riv's method of making the Dir-615 a vlan bridge (i refuse to use their 32 concurrent connections capable hardware for routing my p2p downloads), and connect it to our own router instead. Why is tmnut ignoring the other issue at hand??? They did not even mention any solution for letting us use our own routers. That is bullshit vmad.gif

This post has been edited by Moogle Stiltzkin: Jun 3 2010, 03:59 AM
TSrizvanrp
post Jun 3 2010, 04:10 AM

Getting Started
Group Icon
Elite
195 posts

Joined: Sep 2006



Updated the Router Security guide on http://unifi.athena.my to disable TR-069
ciohbu
post Jun 3 2010, 07:53 AM

Group: Senior Member
*******
Senior Member
2,104 posts

Joined: Oct 2006
QUOTE(SlayerXT @ Jun 3 2010, 01:25 AM)
Hey are u working for those TM ZTE companies? Dont simply spill the beans here okay  tongue.gif
*
i mean "credit" ... hahaaa..
flowerhorn
post Jun 3 2010, 09:09 AM

Getting Started
**
Junior Member
257 posts

Joined: Feb 2007
QUOTE(rizvanrp @ Jun 3 2010, 04:10 AM)
Updated the Router Security guide on http://unifi.athena.my to disable TR-069
*
Thx for sharing all this. Thanks for all the efford! notworthy.gif
KHS
post Jun 3 2010, 09:28 AM

New Member
*
Junior Member
41 posts

Joined: Mar 2007
this is posted on The Star also: http://techcentral.my/news/story.aspx?file...235&sec=it_news
+Newbie+
post Jun 3 2010, 10:26 AM

To be needed as The Sand's Kazekage
Group Icon
VIP
3,055 posts

Joined: Jan 2003
@rizvanrp,
Thanks for all the research and sharing them. For those whose Remote Management is enabled, did TM even bother to ensure that it is configured to allow only their own technicians to access? E.g. Lock IP address, etc.

That newspaper article did not address the main problem. shakehead.gif

QUOTE(schmeichel7 @ Jun 3 2010, 01:59 AM)
It is a shame on how this was not planned properly....

And I'm not surprised that TM quickly released that statement to safeguard their business and potential future customers.. Who wants to subscribe to unifi if they feel insecure and worried due to the risks..

If only they planned things properly in the first place.. Remote support can be done in a proper way..
*
Precisely. Remote management is not the main issue. It's the way they did it.
Not only did they not tell users, consumers and commercial, that there is a superior hidden root access account, but they also chose to use a generic password for all their routers. The way it's being done currently, it's just plain laziness.

QUOTE(Moogle Stiltzkin @ Jun 3 2010, 03:57 AM)
This if frakkin bullshit. All they said is

1. they are keeping remote access despite our complaints for the CHOICE of not having it (we don't want them poking around inside our stuff. And we don't want a backdoor for l33t hackers.)

2. Their only solution is to change the operator password so we cannot access....... so if we can't access, how do we bypass their shitty router and use our own using Riv's method of making the Dir-615 a vlan bridge (i refuse to use their 32 concurrent connections capable hardware for routing my p2p downloads), and connect it to our own router instead. Why is tmnut ignoring the other issue at hand??? They did not even mention any solution for letting us use our own routers. That is bullshit  vmad.gif
*
Actually, if you read that carefully, they said they will change the passwords and then share that password with the customer. If they live up to their word, once they change it and inform you the new password, just change it back to another password.
If TM needs access in future, let them call you and you can reset the password to a temp password, let them use it and then change the password again in future.

This post has been edited by +Newbie+: Jun 3 2010, 10:31 AM
Moogle Stiltzkin
post Jun 3 2010, 10:36 AM

Look at all my stars!!
*******
Senior Member
4,451 posts

Joined: Jan 2003
QUOTE(+Newbie+ @ Jun 3 2010, 10:26 AM)
Actually, if you read that carefully, they said they will change the passwords and then share that password with the customer. If they live up to their word, once they change it and inform you the new password, just change it back to another password.
If TM needs access in future, let them call you and you can reset the password to a temp password, let them use it and then change the password again in future.
*
Oh :/

Well if that is the case, we will just have to see then hmm.gif

This post has been edited by Moogle Stiltzkin: Jun 3 2010, 10:37 AM
palmjack
post Jun 3 2010, 10:51 AM

Getting Started
**
Junior Member
84 posts

Joined: Feb 2005
QUOTE(flowerhorn @ Jun 3 2010, 09:09 AM)
Thx for sharing all this. Thanks for all the efford! notworthy.gif
*
Appreciate it too Riz. Very helpful, thanks.
silverhawk
post Jun 3 2010, 11:15 AM

Eyes on Target
Group Icon
Elite
4,955 posts

Joined: Jan 2003


Actually if they wanted to create a unique password, it would be easy cause they already have the customer information, and could do easy substitution to create a pretty strong password which tmnet can easily use to access cause they have your personal information which other people do not have.

This would have pretty much avoided the issue. Although I still do not like the idea of tmnet being able to remotely access my router.




unker
post Jun 3 2010, 12:57 PM

New Member
*
Newbie
4 posts

Joined: Jun 2007
Dear Riz,
Again, thanks for all that you're doing. M'sia is such a screwed up place, full of rhetorics like the bullshit 1MalangSial and now TM Nut is screwing us conned-sumers. Lucky for us, we have you to make this country a much better place. notworthy.gif cheers.gif rclxms.gif

What you've suggested to me sounds complicated. I'll need to check with TM and get them to come over. Then, work with them on changing the accessibility and password.

Have a great day ahead!!!
ciohbu
post Jun 3 2010, 01:14 PM

Group: Senior Member
*******
Senior Member
2,104 posts

Joined: Oct 2006
QUOTE(unker @ Jun 3 2010, 12:57 PM)
Dear Riz,
Again, thanks for all that you're doing. M'sia is such a screwed up place, full of rhetorics like the bullshit 1MalangSial and now TM Nut is screwing us conned-sumers. Lucky for us, we have you to make this country a much better place.  notworthy.gif  cheers.gif  rclxms.gif

What you've suggested to me sounds complicated. I'll need to check with TM and get them to come over. Then, work with them on changing the accessibility and password.

Have a great day ahead!!!
*
TMnut screw us since dial - up and streamyx era.. lolzz
squall0833
post Jun 3 2010, 01:28 PM

Regular
******
Senior Member
1,473 posts

Joined: Oct 2006
From: Jupiter


wah, the star posted this news somemore,

riz, you've done really well biggrin.gif


They said, hacker unlikely can success to hack a user because of don't know the target's IP address,

ok la, Dynamic IP always change IP, but to check a user's current IP isn't hard, even we can do it, but only valid at the time that user still stay connected as the same ip,

How about Unifi for business? static IP address, once the hacker knows the ip address, business unifi user always risky, as long the remote management still remain opened hmm.gif

This post has been edited by squall0833: Jun 3 2010, 01:40 PM
TSrizvanrp
post Jun 3 2010, 01:55 PM

Getting Started
Group Icon
Elite
195 posts

Joined: Sep 2006



QUOTE(squall0833 @ Jun 3 2010, 01:28 PM)
wah, the star posted this news somemore,

riz, you've done really well biggrin.gif
They said, hacker unlikely can success to hack a user because of don't know the target's IP address,

ok la, Dynamic IP always change IP, but to check a user's current IP isn't hard, even we can do it, but only valid at the time that user still stay connected as the same ip,

How about Unifi for business? static IP address,   once the hacker knows the ip address, business unifi user always risky, as long the remote management still remain opened  hmm.gif
*
Like I said earlier, the Star didn't do their research properly. Dynamic IP.. so what? Just use a port scanner? You're only doing this because you want a free Unifi account/proxy.. doesn't matter who you hit. Dynamic IPs are all allocated in the same IP block for the same service.

This post has been edited by rizvanrp: Jun 3 2010, 01:56 PM
squall0833
post Jun 3 2010, 02:30 PM

Regular
******
Senior Member
1,473 posts

Joined: Oct 2006
From: Jupiter


QUOTE(rizvanrp @ Jun 3 2010, 01:55 PM)
Like I said earlier, the Star didn't do their research properly. Dynamic IP.. so what? Just use a port scanner? You're only doing this because you want a free Unifi account/proxy.. doesn't matter who you hit. Dynamic IPs are all allocated in the same IP block for the same service.
*
yeah, so all unifi users who hasn't changed their configuration now, seriously unsecure


This post has been edited by squall0833: Jun 3 2010, 02:34 PM
rizfield
post Jun 3 2010, 03:13 PM

Casual
***
Junior Member
318 posts

Joined: Dec 2004


just installed unifi today..

how to access the true admin account? can anyone inform me?
already disabled the remote access

edited: opss.. okey.. just found it.. biggrin.gif

This post has been edited by rizfield: Jun 3 2010, 03:21 PM
TSrizvanrp
post Jun 3 2010, 03:20 PM

Getting Started
Group Icon
Elite
195 posts

Joined: Sep 2006



QUOTE(rizfield @ Jun 3 2010, 03:13 PM)
just installed unifi today..

how to access the true admin account? can anyone inform me?
already disabled the remote access
*
Guides at http://unifi.athena.my/
shah_ho_nam2
post Jun 4 2010, 01:26 AM

らき☆すた
*******
Senior Member
4,242 posts

Joined: Aug 2006
From: Soviet Putrajaya
damn, after 2 hours reading the whole posts. i somehow do learn something in the process. man, makes me wonder how vulnerable i am right now by not changing my default password. i took i lightly and caused me numerous problems before.

thanks to TS for bringing this thing up to public. glad to know that our fellow LYN care to share the most important info as TM users.
jinguan78
post Jun 4 2010, 10:17 AM

New Member
*
Newbie
0 posts

Joined: Jun 2010
QUOTE(+Newbie+ @ Jun 3 2010, 10:26 AM)
@rizvanrp,
Thanks for all the research and sharing them. For those whose Remote Management is enabled, did TM even bother to ensure that it is configured to allow only their own technicians to access? E.g. Lock IP address, etc.

That newspaper article did not address the main problem. shakehead.gif
Precisely. Remote management is not the main issue. It's the way they did it.
Not only did they not tell users, consumers and commercial, that there is a superior hidden root access account, but they also chose to use a generic password for all their routers. The way it's being done currently, it's just plain laziness.
Actually, if you read that carefully, they said they will change the passwords and then share that password with the customer. If they live up to their word, once they change it and inform you the new password, just change it back to another password.
If TM needs access in future, let them call you and you can reset the password to a temp password, let them use it and then change the password again in future.
*
I dunno. I think it's ok if they change the password themselves, then tell the users. Maybe some users can configure router settings, but I doubt most people know how to do it.
+Newbie+
post Jun 4 2010, 03:13 PM

To be needed as The Sand's Kazekage
Group Icon
VIP
3,055 posts

Joined: Jan 2003
QUOTE(jinguan78 @ Jun 4 2010, 10:17 AM)
I dunno. I think it's ok if they change the password themselves, then tell the users. Maybe some users can configure router settings, but I doubt most people know how to do it.
*
Yes. I think that's exactly what TM is going to do. They plan to change the passwords themselves, then share that new password with you.

The other parts I mentioned are just optional steps an user can take if they decide not to trust the TM technicians.
socratesman
post Jun 6 2010, 03:41 PM

Regular
******
Senior Member
1,807 posts

Joined: Jan 2003
From: KL
Not sure what's going on, seems TM put a temporary stop-gap measure in place by blocking connections on port 22(SSH) heading for 110.159.* IPs.

I had someone enable remote SSH on his DIR-615.
Using the default port 22, I wasn't able to connect from my Streamyx to his Unifi. (connection closed at remote end)

Then I asked him to change the SSH port to a random 5-digit number, and voila I managed to login to router using putty.
Like rizvan said, I was able to use his connection as a SOCKS proxy (ssh dynamic forwarding).
Aneena
post Jun 6 2010, 04:14 PM

Getting Started
**
Junior Member
159 posts

Joined: Mar 2009
QUOTE(socratesman @ Jun 6 2010, 03:41 PM)
Not sure what's going on, seems TM put a temporary stop-gap measure in place by blocking connections on port 22(SSH) heading for 110.159.* IPs.

I had someone enable remote SSH on his DIR-615.
Using the default port 22, I wasn't able to connect from my Streamyx to his Unifi. (connection closed at remote end)

Then I asked him to change the SSH port to a random 5-digit number, and voila I managed to login to router using putty.
Like rizvan said, I was able to use his connection as a SOCKS proxy (ssh dynamic forwarding).
*
By blocking ports, won't really help much, tho it probably will cause some troubles for users who ssh alot to their servers. Who knows, some of the unifi users does host a personal web server?

Thanks for the headup, riz, will keep that in mind =)
TSrizvanrp
post Jun 6 2010, 04:42 PM

Getting Started
Group Icon
Elite
195 posts

Joined: Sep 2006



QUOTE(socratesman @ Jun 6 2010, 03:41 PM)
Not sure what's going on, seems TM put a temporary stop-gap measure in place by blocking connections on port 22(SSH) heading for 110.159.* IPs.

I had someone enable remote SSH on his DIR-615.
Using the default port 22, I wasn't able to connect from my Streamyx to his Unifi. (connection closed at remote end)

Then I asked him to change the SSH port to a random 5-digit number, and voila I managed to login to router using putty.
Like rizvan said, I was able to use his connection as a SOCKS proxy (ssh dynamic forwarding).
*
At least the LYN people who read my posts will be safe by securing their DIR-615 or using their own routers. There's just no way TM can magically give everyone a special unique router password combination now, it has to be done by the user. This is what happens when you don't even set up basic security and try to 'hide' things from the users. I'm pretty certain more stuff is going to happen when Unifi's coverage area expands and people have access to the Fiberhome units.

They should also be blocking port 8080, not just 22 sleep.gif

This post has been edited by rizvanrp: Jun 7 2010, 09:08 AM
rayfoo
post Jun 7 2010, 12:00 PM

Look at all my stars!!
*******
Senior Member
2,562 posts

Joined: Jan 2003




STATEMENT


Telekom Malaysia Berhad ™ wishes to clarify the concerns raised by various parties with regards to the remote accessibility of UniFi routers which are part of the customer premises equipment (CPE) for all UniFi subscribers.
TM would like to assure all concerned parties that the only reason the UniFi router setting for remote access is enabled is for remote access troubleshooting purposes for the express use of our technical support personnel. In the event there is a technical support issue with any of our UniFi subscribers; at the first level of troubleshooting, TM’s network operation centre (NOC) can immediately remotely diagnose the problem before sending a support team on-site.

TM takes note of the security concerns that have been raised, and we have taken these issues to heart.

TM also acknowledges that there is a need to balance the public’s level of comfort with regards to security and privacy and TM’s own commitment to faster support turnaround time. As such, TM would like to maintain the higher level of service enabled by remote access management on customer routers, and in recognition of that TM will immediately change every UniFi customers’ router management password into a high security, unique one (which will be only known to the customer and TM). TM will notify all our Unifi customers of this change accordingly.


JinXXX
post Jun 7 2010, 12:46 PM

Look at all my stars!!
*******
Senior Member
2,516 posts

Joined: Feb 2007
From: Uarla Umpur



so has anybody been notified ?
jackbanner
post Jun 7 2010, 01:42 PM

On my way
****
Senior Member
660 posts

Joined: Jun 2009
Thank u rizvan. Very good information.

Can anyone tell me the benefits of adding another modem as stated?
air_mood
post Jun 7 2010, 01:49 PM

Randy Marsh, Guitar Queer-O
*******
Senior Member
4,150 posts

Joined: Mar 2006


I'm pretty blur with this thing actually. Not pretty blur, very blur as a matter of fact. What's the curse of action that I should do exactly and how so?? I have never ever changed anything since TM installed my Unifi.
t3chn0m4nc3r
post Jun 8 2010, 09:13 AM

Teh Necron Lord
*******
Senior Member
4,139 posts

Joined: Sep 2006
From: Internet


QUOTE(rizvanrp @ Jun 6 2010, 04:42 PM)
They should also be blocking port 8080, not just 22 sleep.gif
*

but port 8080 is very important in certain enterprise app and CCTV system... hmm.gif


Added on June 8, 2010, 9:15 am
QUOTE(jackbanner @ Jun 7 2010, 01:42 PM)
Can anyone tell me the benefits of adding another modem as stated?
*

1 important word... SECURITY...

If you don't follow/understand what rizvanrp said... don be surprised if u get ISA'ed for hacking... laugh.gif icon_idea.gif

This post has been edited by t3chn0m4nc3r: Jun 8 2010, 09:15 AM
TSrizvanrp
post Jun 8 2010, 10:32 AM

Getting Started
Group Icon
Elite
195 posts

Joined: Sep 2006



QUOTE(air_mood @ Jun 7 2010, 01:49 PM)
I'm pretty blur with this thing actually. Not pretty blur, very blur as a matter of fact. What's the curse of action that I should do exactly and how so?? I have never ever changed anything since TM installed my Unifi.
*
Check the router security guide @ unifi.athena.my to properly secure your router from outside access

QUOTE(jackbanner @ Jun 7 2010, 01:42 PM)
Thank u rizvan. Very good information.

Can anyone tell me the benefits of adding another modem as stated?
*
Security and better wireless + internet routing performance.
dick1971
post Jun 11 2010, 03:39 PM

New Member
*
Junior Member
21 posts

Joined: Jun 2005
Hi
just wondering how to access dlink 615 to change the setting,normally just type 192.168.0.1 ,user and password i assume as per http://unifi.athena.my/ ,
thanks
jefstar
post Jun 11 2010, 11:01 PM

New Member
*
Newbie
0 posts

Joined: Jun 2010


Hi everyone,

Had a read of this entire post, and thanks for pointing everything out to us.
I just wanted to add that for some, the passwords of telekom or blank will not work, even for firmware 7.05.

I just had mine installed today and came home to disable the stuff you guys mentioned but couldn't access with the passwords in the athena site.

I called up Unifi and asked for the password... and they actually gave it to me smile.gif
There's one more you can try, and it is basically for username: admin
Password: your username for unifi spelt backwards.

It might already be in some other post, but Hope that helps some of the other newer installed peeps out there.

Thanks!

TSrizvanrp
post Jun 12 2010, 12:52 AM

Getting Started
Group Icon
Elite
195 posts

Joined: Sep 2006



TM may have started changing the 'admin' and 'operator' account passwords for new installs. Make sure you have both of these passwords.. especially the operator password. The 'admin' account is pretty damn useless.
SUSphantomkid
post Jun 12 2010, 11:59 AM

Getting Started
**
Junior Member
269 posts

Joined: Nov 2009
From: Hampshire, UK Location : London, UK


Thanks for this info bro. So not gonna use Unifi even though there is a fix for it.
dick1971
post Jun 12 2010, 12:01 PM

New Member
*
Junior Member
21 posts

Joined: Jun 2005
Guys... i'm still unable to access router using 192.168.0.1, any other way to do it still noob.........
thanks
TSrizvanrp
post Jun 12 2010, 12:10 PM

Getting Started
Group Icon
Elite
195 posts

Joined: Sep 2006



QUOTE(dick1971 @ Jun 12 2010, 12:01 PM)
Guys... i'm still unable to access router  using 192.168.0.1, any other way to do it still noob.........
thanks
*
The DIR-615 by TM uses 192.168.0.1 by default. If it's been changed, run 'ipconfig /all' in the command prompt then check the gateway IP. Load that gateway IP in your web browser.
dick1971
post Jun 12 2010, 01:16 PM

New Member
*
Junior Member
21 posts

Joined: Jun 2005
Thanks Riz wil try.. just got unify 2 day ago,I have try 192.168..0.1 on all port no joy...
TSrizvanrp
post Jun 12 2010, 08:18 PM

Getting Started
Group Icon
Elite
195 posts

Joined: Sep 2006



@dick1971

TM may have changed the access port too if the gateway is still 192.168.0.1. Read : http://forum.lowyat.net/index.php?showtopi...post&p=34319716
dick1971
post Jun 14 2010, 09:41 PM

New Member
*
Junior Member
21 posts

Joined: Jun 2005
Thanks Riz ...finally able to access the router and disable remote connection ....
Lucas
post Jun 15 2010, 10:51 AM

On my way
****
Senior Member
651 posts

Joined: Jan 2005



QUOTE(dick1971 @ Jun 14 2010, 09:41 PM)
Thanks Riz ...finally able to access the router and disable remote connection ....
*
How did you manage to get access to your router? as i know, previously you cant even access to 192.168.0.1
coollguy100
post Jun 15 2010, 09:38 PM

New Member
*
Newbie
3 posts

Joined: Mar 2010
hi

is there possible to just use our own router instead of theirs.... like belkin. what configuration need to do ???
Moogle Stiltzkin
post Jun 15 2010, 11:16 PM

Look at all my stars!!
*******
Senior Member
4,451 posts

Joined: Jan 2003
QUOTE(coollguy100 @ Jun 15 2010, 09:38 PM)
hi

is there possible to just use our own router instead of theirs.... like belkin. what configuration need to do ???
*
http://unifi.athena.my/index.php

cool.gif
flowerhorn
post Jun 17 2010, 06:39 AM

Getting Started
**
Junior Member
257 posts

Joined: Feb 2007
I dont know if this is relevant, but i received a couple of missed call this morning at 6 am from 832032XX. When i call back i asked who was that and they mentioned TM. WTF! what are they thinking disturbing ppl @ 6am in the morning. And what are they doing??... the guy said that he was trying to get the ip of the phone! Really! come on la....
theodore_kh
post Jun 17 2010, 09:44 AM

It's me again !
******
Senior Member
1,297 posts

Joined: Jan 2003
From: Kuala Lumpur


Not just unifi, even the modem provided by telekom, Riger are all remotely manageable.

Especially when there's a large number of users using the stock modem, with a default password, one can easily get another's streamyx account.

Yet the trend continues, into Unifi packages.
sg999
post Jun 17 2010, 11:01 AM

Regular
******
Senior Member
1,027 posts

Joined: May 2008
Telekom Malaysia Berhad ™ wishes to clarify the concerns raised by various parties with regards to the remote accessibility of UniFi routers which are part of the customer premises equipment (CPE) for all UniFi subscribers.


TM would like to assure all concerned parties that the only reason the UniFi router setting for remote access is enabled is for remote access troubleshooting purposes for the express use of our technical support personnel. In the event there is a technical support issue with any of our UniFi subscribers; at the first level of troubleshooting, TM’s network operation centre (NOC) can immediately remotely diagnose the problem before sending a support team on-site.


TM takes note of the security concerns that have been raised, and we have taken these issues to heart.


TM also acknowledges that there is a need to balance the public’s level of comfort with regards to security and privacy and TM’s own commitment to faster support turnaround time. As such, TM would like to maintain the higher level of service enabled by remote access management on customer routers, and in recognition of that TM will immediately change every UniFi customers’ router management password into a high security, unique one (which will be only known to the customer and TM). TM will notify all our Unifi customers of this change accordingly.
azrinarizz
post Jun 17 2010, 06:06 PM

Made in Malaysia!
*******
Senior Member
2,448 posts

Joined: Jul 2008


I just got my unifi today and when I log in my router, I can't see TR-069 Protocol as well as my operator password. I have already changed my wireless password as well as my admin password. I am using firmware 7.05 which is shown on my router page. I saw a few pages back that I have to UNTICK Enable Remote Management? Thanks smile.gif
TSrizvanrp
post Jun 17 2010, 06:08 PM

Getting Started
Group Icon
Elite
195 posts

Joined: Sep 2006



You have to log into the operator account :3

http://unifi.athena.my/index.php?option=co...id=47&Itemid=59
azrinarizz
post Jun 17 2010, 06:14 PM

Made in Malaysia!
*******
Senior Member
2,448 posts

Joined: Jul 2008


How do I log into the operator account. I have been reading the guide for 3 times already tongue.gif Mine only contain the admin password box and and remote management. I don't see any operator as well as SSH+Telnet like your picture smile.gif
TSrizvanrp
post Jun 17 2010, 06:17 PM

Getting Started
Group Icon
Elite
195 posts

Joined: Sep 2006



go to the login page at 192.168.0.1

username : operator
pass : telekom

or pass : your pppoe pass backwards

or pass : unifi backwards

if these combinations dont work ask your installer for the 'operator' account password
azrinarizz
post Jun 17 2010, 06:21 PM

Made in Malaysia!
*******
Senior Member
2,448 posts

Joined: Jul 2008


QUOTE(rizvanrp @ Jun 17 2010, 06:17 PM)
go to the login page at 192.168.0.1

username : operator
pass : telekom

or pass : your pppoe pass backwards

or pass : unifi backwards

if these combinations dont work ask your installer for the 'operator' account password
*
Oh, I get it now tongue.gif So I have changed my operator and admin password. I have followed your guide on what to disable
The only thing I didn't enable is the Firewall. Should I enable it? I download pretty often using utorrent. So will it have any problems if I enable? rclxms.gif
Thank you so much for helping. That is all right? thumbup.gif

This post has been edited by azrinarizz: Jun 17 2010, 06:22 PM
TSrizvanrp
post Jun 17 2010, 06:25 PM

Getting Started
Group Icon
Elite
195 posts

Joined: Sep 2006



Firewall.. I don't know, BT is kinda heavy on home router firewalls. You can enable it if you want but NAT + securing your router should be enough protection.
azrinarizz
post Jun 17 2010, 06:28 PM

Made in Malaysia!
*******
Senior Member
2,448 posts

Joined: Jul 2008


QUOTE(rizvanrp @ Jun 17 2010, 06:25 PM)
Firewall.. I don't know, BT is kinda heavy on home router firewalls. You can enable it if you want but NAT + securing your router should be enough protection.
*
Ok then. I will see how my torrent goes and I can change it later. I am wondering, what is NAT? laugh.gif
TSrizvanrp
post Jun 17 2010, 06:30 PM

Getting Started
Group Icon
Elite
195 posts

Joined: Sep 2006



QUOTE(azrinarizz @ Jun 17 2010, 06:28 PM)
Ok then. I will see how my torrent goes and I can change it later. I am wondering, what is NAT?  laugh.gif
*
You have a single public IP (110.159.x.x) which is shared on a private network (192.168.0.0/24). That's wut NAT does.. unless you enable port forwarding, no one will be able to connect to PCs behind your router on the private network directly so in that way it's 'secure' :3
azrinarizz
post Jun 17 2010, 06:33 PM

Made in Malaysia!
*******
Senior Member
2,448 posts

Joined: Jul 2008


QUOTE(rizvanrp @ Jun 17 2010, 06:30 PM)
You have a single public IP (110.159.x.x) which is shared on a private network (192.168.0.0/24). That's wut NAT does.. unless you enable port forwarding, no one will be able to connect to PCs behind your router on the private network directly so in that way it's 'secure' :3
*
Oh alright. I get it now. Thanks for helping me out smile.gif
KAHAK
post Jun 17 2010, 11:48 PM

Getting Started
**
Junior Member
181 posts

Joined: Mar 2010
so that what NAT do LoL i never know.
sfwong1
post Jun 18 2010, 12:20 AM

Casual
***
Junior Member
456 posts

Joined: Feb 2010
From: a pocket full of sunshine



Woot nice thing here,i think this thread should be pin up so that all unifi user will be aware of it... luckily my unifi not yet set up the technician will soon be here to do the unifi... i sure shoot him kau kau.
Phantasy
post Jun 19 2010, 11:06 AM

New Member
*
Junior Member
35 posts

Joined: Nov 2004
QUOTE
Hehehe just for those who set username n password for ppoe into ur ADSL modem also pls change the default password because ppl can scan ip and get into ur ADSL modem and get ur username n password - MX510


Wow i thought i was already fixed by tmnet.It had been so many years since this exploit found and abused by many ppl.
You just need a simple scanning proggie and voila you can have access to the user's router web management page. What was disclosed by rizvanrp was indeed repeated the whole history again but now with an open sshd laying inside it makes the hackers jumping yay rclxm9.gif all around.

Wazzzap
post Jun 20 2010, 02:58 PM

On my way
****
Junior Member
506 posts

Joined: Jan 2003



i wanna ask why is my internet connection having problem after i untick the remote management box? but there is no problem if i tick it. hmmm..
buyoq
post Jun 23 2010, 06:53 PM

hat ni sebulan...........
******
Senior Member
1,305 posts

Joined: Jan 2010
From: Jitra >> Putrajaya


eh where's the CCNP's guy now ? tongue.gif
morpheus3929
post Jun 25 2010, 04:57 AM

Getting Started
**
Junior Member
97 posts

Joined: May 2005
HOLY CRAP! JUMPIN JIGGAWATS WATSON! dude, by uploading the screenshot, aren't you risking yourself and other UNIFI subscribers from hackers and arseholes? shocking.gif
Invince_Z
post Jun 25 2010, 06:09 AM

!M4 !3eY0nC! 1337!!!!
*******
Senior Member
2,748 posts

Joined: Sep 2006
From: 1337 1@nD Y(",)


great post by rizvanrp. x a unifi user anyway, but if i'm a hacker, this would be Heaven (me) n Hell for all of u tongue.gif
Moogle Stiltzkin
post Jun 25 2010, 01:29 PM

Look at all my stars!!
*******
Senior Member
4,451 posts

Joined: Jan 2003
QUOTE(morpheus3929 @ Jun 25 2010, 04:57 AM)
HOLY CRAP! JUMPIN JIGGAWATS WATSON! dude, by uploading the screenshot, aren't you risking yourself and other UNIFI subscribers from hackers and arseholes?  shocking.gif
*
Don't worry. tmnut is keeping tabs so they should fix it.
greg_F
post Jun 27 2010, 04:57 PM

New Member
*
Junior Member
6 posts

Joined: Dec 2008


it's funny how a final year student can open up the eyes of experts & technical staffs at TM...i give u crdt on this rizvan...u really know ur stuff...and i can see that u will have a bright future in the network/security field if u are in it...

to me, they can have or enable the remote management but not set the source of IP to 0.0.0.0...that's like inviting everyone to your router...what TM could do is set a specific IP that could access that router...eg. for this area/block of users, only IP 202.108.0.133 can access that router...this will slightly narrow down the possibility of an intrusion, but not totally....all IT/network/security experts should know that no system or machine is 100% secured...also, TM should crack their heads to harden that busy box...ever heard of soekris or magic box?...small as they are, big on their capabilities...

juz my 2 cents tongue.gif
TSrizvanrp
post Jun 27 2010, 05:05 PM

Getting Started
Group Icon
Elite
195 posts

Joined: Sep 2006



@greg

It doesn't even matter if they did do the IP based hardening or set up a 50 character random password.

user posted image

This is a snapshot of the source code of the page which handles the backup/restore configuration section of the routers user interface. The firmware itself is flawed. It pulls the configuration backup file directly from the router without running through PHP (requiring authentication).. so anyone can still break into the router easily just by grabbing the config.bin directly. You don't even have to login with a username or password <_>

Frankly, TM should have not chosen this remote configuration route and been open with it in the first place. Even if I did not guess the password, retrieving it is easy by hooking up a terminal connection directly into the DIR-615's console port and dumping its memory over the network + carving out the user/pass combination. The only way to fix this flaw is to disable the remote management.. and even then, users on your own LAN will still be able to pull of the hack so public Unifi networks (hotspots/hostels) using this DIR-615 G1 router will never be secure.

This post has been edited by rizvanrp: Jun 27 2010, 05:11 PM
greg_F
post Jun 27 2010, 05:30 PM

New Member
*
Junior Member
6 posts

Joined: Dec 2008


yup...i totally agree with u that it will still invite potential danger by enabling the remote management but TM have their justification to do so...my previous suggestion was to have the risk of potential intrusion slimmer...the best that can be done is to find a solution that could satisfy both parties, security for users, convenience for TM...they will need to crack their heads...hehehe... tongue.gif
aPiT_OxyMoxy
post Jun 29 2010, 11:30 AM

Casual
***
Junior Member
432 posts

Joined: Apr 2009


congrat nice work bro...biggrin.gif
vNistelrooy
post Jun 30 2010, 05:04 AM

Not Relevant
*******
Senior Member
2,511 posts

Joined: Jan 2003
From: Earth


this is very alarming..my concern is if they can trace what the user download off the net..
Moogle Stiltzkin
post Jun 30 2010, 01:20 PM

Look at all my stars!!
*******
Senior Member
4,451 posts

Joined: Jan 2003
QUOTE(vNistelrooy @ Jun 30 2010, 05:04 AM)
this is very alarming..my concern is if they can trace what the user download off the net..
*
They already do that doh.gif
MIVECburuk
post Jun 30 2010, 01:24 PM

Casual
***
Junior Member
363 posts

Joined: Jun 2007
From: Bikini Bottom

QUOTE(vNistelrooy @ Jun 30 2010, 05:04 AM)
this is very alarming..my concern is if they can trace what the user download off the net..
*
isn't that the main purpose of a backdoor?
ariff02
post Jun 30 2010, 02:01 PM

Casual
***
Junior Member
346 posts

Joined: Oct 2008




Edit:
I got my username and pass....

This post has been edited by ariff02: Jun 30 2010, 03:56 PM
namee
post Jul 15 2010, 02:44 PM

Getting Started
**
Junior Member
90 posts

Joined: Feb 2010
i juz set up my unifi...the guy never disclosed the 192.168.0.1 username n password to me ..
they only gave me the wireless password ..

anyone wat is the router username n password or not ?
charymsylyn
post Jul 15 2010, 05:25 PM

On my way
****
Junior Member
500 posts

Joined: May 2007
From: Kuala Lumpur
QUOTE(namee @ Jul 15 2010, 02:44 PM)
i juz set up my unifi...the guy never disclosed the 192.168.0.1 username n password to me ..
they only gave me the wireless password ..

anyone wat is the router username n password or not ?
*
username is admin, password is blank
matthewsiew
post Jul 16 2010, 10:55 PM

New Member
*
Junior Member
25 posts

Joined: Nov 2005
QUOTE(charymsylyn @ Jul 15 2010, 05:25 PM)
username is admin, password is blank
*
admin and blank---> cannot be login? how? i hv tried many times
namee
post Jul 17 2010, 02:16 AM

Getting Started
**
Junior Member
90 posts

Joined: Feb 2010
Is unifi server down for now???
Jeremy_John
post Jul 17 2010, 03:46 AM

Getting Started
**
Junior Member
147 posts

Joined: Jan 2010
From: Selangor


no la , y? I'm using unifi and replying you.. lols
charymsylyn
post Jul 18 2010, 02:02 PM

On my way
****
Junior Member
500 posts

Joined: May 2007
From: Kuala Lumpur
QUOTE(matthewsiew @ Jul 16 2010, 10:55 PM)
admin and blank---> cannot be login? how? i hv tried many times
*
You should have gotten a quick start paper with the Dlink router, the username and password is on it.
+Newbie+
post Jul 18 2010, 08:48 PM

To be needed as The Sand's Kazekage
Group Icon
VIP
3,055 posts

Joined: Jan 2003
What is on the quickstart paper is only for the user "admin". This user is a fake admin account. The real admin account was posted by Rizvanrp a couple of pages back. You can check it out there. Or alternatively, you can check out his website.
FastCoder
post Jul 19 2010, 01:12 AM

Enthusiast
*****
Senior Member
757 posts

Joined: Jan 2010
I just got my Unifi a few days. My DIR-615 has firmware version 7.05. I have been trying to find the page to disable the Wi-Fi radio because I only use the RJ45 ports.

Do the earlier versions have the disable Wi-Fi option? Or is there such an option in 7.05?
TSrizvanrp
post Jul 19 2010, 12:31 PM

Getting Started
Group Icon
Elite
195 posts

Joined: Sep 2006



QUOTE(FastCoder @ Jul 19 2010, 01:12 AM)
I just got my Unifi a few days. My DIR-615 has firmware version 7.05. I have been trying to find the page to disable the Wi-Fi radio because I only use the RJ45 ports.

Do the earlier versions have the disable Wi-Fi option? Or is there such an option in 7.05?
*
user posted image

Untick that to disable the WiFi radio
FastCoder
post Jul 19 2010, 03:36 PM

Enthusiast
*****
Senior Member
757 posts

Joined: Jan 2010
QUOTE(rizvanrp @ Jul 19 2010, 12:31 PM)
Untick that to disable the WiFi radio
*
No SSID means Wi-Fi disabled? That interface is not very intuitive isn't it?

With Bluetooth, you may hide the name, but that doesn't disable the bluetooth radio, and gadgets may still connect to it.

But I guess disabling a name is different from not broadcasting a name, so you may be right. Unless I have one of those keychain Wi-Fi detectors and cover the router with a piece of aluminium foil, there's no easy way to know if the radio is truly off.

Anyway, thanks for the tip.


TSrizvanrp
post Jul 19 2010, 03:42 PM

Getting Started
Group Icon
Elite
195 posts

Joined: Sep 2006



QUOTE(FastCoder @ Jul 19 2010, 03:36 PM)
No SSID means Wi-Fi disabled? That interface is not very intuitive isn't it?

With Bluetooth, you may hide the name, but that doesn't disable the bluetooth radio, and gadgets may still connect to it.

But I guess disabling a name is different from not broadcasting a name, so you may be right. Unless I have one of those keychain Wi-Fi detectors and cover the router with a piece of aluminium foil, there's no easy way to know if the radio is truly off.

Anyway, thanks for the tip.
*
I know right? I couldn't find it myself at first.. another forumer pointed it out to us in the Unifi thread V2 or something. The original firmware for the DIR-615 has on/off radio buttons for 'Wireless Radio', this TM firmware.. well you know lar, lol

You'll notice that when you untick this, the wireless symbol on the DIR-615 which normally glows green turns off completely so I assume its off and not just disabling SSID broadcast or something. For added security, I just turn down the transmit power to its lowest setting + keep the WPA2 key on it.

I don't have a monitor-mode capable wifi card with me so I can't run airodump and ensure that it's not just turning off the SSID but from the looks of it, its totally off after you untick this. Another easier method would be to just telnet/ssh into the router and check the status of the wifi card and everything but I'm too lazy to unbox my DIR-615 at the moment.

Furthermore, this is the default option when you reset the dir-615 and the wifi is completely disabled but with this router.. who knows wink.gif
Evangelistica
post Jul 19 2010, 05:05 PM

Casual
***
Junior Member
382 posts

Joined: Oct 2004


I demand this to be sticky! Let people know how TMNUT is b@stardizing people here.
FastCoder
post Jul 19 2010, 06:29 PM

Enthusiast
*****
Senior Member
757 posts

Joined: Jan 2010
QUOTE(rizvanrp @ Jul 19 2010, 03:42 PM)
I know right? I couldn't find it myself at first.. another forumer pointed it out to us in the Unifi thread V2 or something. The original firmware for the DIR-615 has on/off radio buttons for 'Wireless Radio', this TM firmware.. well you know lar, lol

You'll notice that when you untick this, the wireless symbol on the DIR-615 which normally glows green turns off completely so I assume its off and not just disabling SSID broadcast or something. For added security, I just turn down the transmit power to its lowest setting + keep the WPA2 key on it.

I don't have a monitor-mode capable wifi card with me so I can't run airodump and ensure that it's not just turning off the SSID but from the looks of it, its totally off after you untick this. Another easier method would be to just telnet/ssh into the router and check the status of the wifi card and everything but I'm too lazy to unbox my DIR-615 at the moment.

Furthermore, this is the default option when you reset the dir-615 and the wifi is completely disabled but with this router.. who knows wink.gif
*
I ssh into 192.168.0.1 and checked using ifconfig and found that network interface ra0 has indeed been removed. So, I guess this is the confirmed way to disable the radio.
lamusiqa
post Jul 22 2010, 05:37 PM

Casual
***
Junior Member
397 posts

Joined: Feb 2007
I just got Unifi installed and immediately followed Riz's advice in disabling remote management, in front of the technicians. Even they weren't aware of it and what it's for.
Momotaro Kun
post Jul 23 2010, 10:02 AM

Getting Started
**
Junior Member
52 posts

Joined: Mar 2008


I signed up for Unifi and they will install it the next month in my area. The first thing I will do to when I get it is to follow this guide.

This deserves to be stickied!
SUSs3an_looi
post Jul 26 2010, 12:50 PM

ZQOUTLET.COM
*******
Senior Member
2,144 posts

Joined: Apr 2009
From: Bangsar, Kuala Lumpur


Thank you so much for this info. OMG.. i hate the idea that they forced to use their router since I just got my Belkin to replace the Aztech.
wiraone
post Jul 26 2010, 01:50 PM

Who cares about all the stars?
*******
Senior Member
3,892 posts

Joined: Jan 2003
From: Back on earth!
QUOTE(s3an_looi @ Jul 26 2010, 12:50 PM)
Thank you so much for this info. OMG.. i hate the idea that they forced to use their router since I just got my Belkin to replace the Aztech.
*
Technically, they're not forcing you to use the bundled router. You're free to use your own router, but then, you couldn't do IPTV and that about it. So, if you think IPTV is bollocks (which I think it is for now), then, just use the Belkin that you've. For now, I'm using the DIR-615 as a network bridge as per the guide by rizvanrp and use my own Buffalo WZR as my main router & AP. No problem there.
andyz
post Jul 26 2010, 03:07 PM

On my way
****
Senior Member
503 posts

Joined: Jan 2003
From: P.J.
rclxms.gif Thanks to rizvanrp rclxms.gif .. follow procedure to use custom wireless router (netgear WNDR3700) than the supplied unifi TM DIR-615 one.. was a success n painless... rclxms.gif



user posted image

This post has been edited by andyz: Jul 26 2010, 03:07 PM
prominen
post Jul 26 2010, 04:53 PM

Getting Started
**
Junior Member
290 posts

Joined: Sep 2006
From: Kepong + KL
nice looking router...how much is it?
bakamund
post Jul 27 2010, 09:55 AM

Getting Started
**
Junior Member
62 posts

Joined: Oct 2009
From: Fragland
Wait wait ~ the TM haxx router is only required IF you want the TV channels & the 2ndary admin account that will let ppl hack ur internet/comp?
cdR
post Jul 27 2010, 10:53 PM

New Member
*
Junior Member
35 posts

Joined: Nov 2004
nice la bro.. thx
yieloon
post Jul 28 2010, 04:42 PM

Getting Started
**
Junior Member
73 posts

Joined: Nov 2004
Just got a SMS from TM Unifi.

"For troubleshooting and monitoring purposes, please switch ON your RG D-Link connection for the next 3days upon you have received this message"

What I would like to know is, why do they need us to switch on that thing for?
I am ignoring them.
palmjack
post Jul 28 2010, 04:50 PM

Getting Started
**
Junior Member
84 posts

Joined: Feb 2005
QUOTE(yieloon @ Jul 28 2010, 04:42 PM)
Just got a SMS from TM Unifi.

"For troubleshooting and monitoring purposes, please switch ON your RG D-Link connection for the next 3days upon you have received this message"

What I would like to know is, why do they need us to switch on that thing for?
I am ignoring them.
*
Same here. Got the sms too. Are they encouraging users to leave their routers open to hacking or?

This post has been edited by palmjack: Jul 28 2010, 04:51 PM
D3vilsim
post Jul 28 2010, 04:51 PM

Regular
******
Senior Member
1,260 posts

Joined: Jan 2005
From: Damansara Perdana / Alor Setar



Sorry, why need use custom wireless router ar ??
Sorry if i miss out something here =)
flowerhorn
post Jul 28 2010, 08:07 PM

Getting Started
**
Junior Member
257 posts

Joined: Feb 2007
Hi all, i receive this a sms from TM today to enable remote manage. Should I do that? What could Unifi be planning to do?

Here is the contents of the sms:

"Dear valued customer, In order to provide effective and secure services to our all valued UniFi customer, TM wishes to encourage you to enable "RG Remote Management" function to carry out online troubleshooting easily by executing a simple step and guideline via RG D-LINK router page. At your preferred browser address bar, kindly access the router page by key in the URL http://192.168.0.1 and press enter. To logon, please use "admin" as your username and press login by leaving the password blank. On top of the pages, please select 'MAINTENANCE' tab and do "check" the small button "Enable Remote Management" to enable it. Once done, press "Save Settings" and continue to enjoy your UniFI services. For troubleshooting and monitoring purposes, please to switch on your RG D-LINK connection for the next 3 days upon you have received this message. Should you have any queries and assistance, please do not hesitate to contact our Technical Helpdesk at 1-300-88-1221 or drop us a line at unifi@tm.com.my."

This post has been edited by flowerhorn: Jul 28 2010, 08:09 PM
socratesman
post Jul 29 2010, 08:34 AM

Regular
******
Senior Member
1,807 posts

Joined: Jan 2003
From: KL
have u guys verified the SMSes are indeed from TM?
jrkoster
post Jul 30 2010, 04:26 PM

New Member
*
Newbie
0 posts

Joined: Apr 2010
We received the corporate Unifi package today and were told we had to use their Dlink Wifi router. But we don't want their Wifi or any Wifi in our office. We just want to connect our Smoothwall firewall straight into TM's black Open Bridge (Huawei). Anybody any idea if this can be done?
TSrizvanrp
post Jul 30 2010, 04:37 PM

Getting Started
Group Icon
Elite
195 posts

Joined: Sep 2006



QUOTE(jrkoster @ Jul 30 2010, 04:26 PM)
We received the corporate Unifi package today and were told we had to use their Dlink Wifi router. But we don't want their Wifi or any Wifi in our office. We just want to connect our Smoothwall firewall straight into TM's black Open Bridge (Huawei). Anybody any idea if this can be done?
*
You can wire it directly if your Smoothwall can assign VLAN 500 to the physical WAN port and use that VLAN as the PPPoE WAN interface. Alternatively, you can have a VLAN aware switch in between the smoothwall and huawei to perform the necessary VLAN tagging/untagging or even put the DIR-615 into VLAN bridge mode ( http://unifi.athena.my/index.php?option=co...id=49&Itemid=61 ) to do this for you.

I'm not too sure if the Huawei itself can be setup to bridge a VLAN to the physical LAN port since I don't have that particular unit.

Many Unifibiz users have this issue.. sweat.gif
Alpha Wolf
post Jul 31 2010, 06:26 PM

Getting Started
**
Junior Member
263 posts

Joined: Mar 2008
From: SS2, Petaling Jaya


QUOTE(rizvanrp @ Jul 30 2010, 04:37 PM)
You can wire it directly if your Smoothwall can assign VLAN 500 to the physical WAN port and use that VLAN as the PPPoE WAN interface. Alternatively, you can have a VLAN aware switch in between the smoothwall and huawei to perform the necessary VLAN tagging/untagging or even put the DIR-615 into VLAN bridge mode ( http://unifi.athena.my/index.php?option=co...id=49&Itemid=61 ) to do this for you.

I'm not too sure if the Huawei itself can be setup to bridge a VLAN to the physical LAN port since I don't have that particular unit.

Many Unifibiz users have this issue.. sweat.gif
*
Hmm... DD-WRT firmware has the options for VLan tagging. According to your webpage, we need to use that DIR-615 router for VLan tagging. But can't we just use a DD-WRT powered router for tagging VLan 500 and VLan 600?
TSrizvanrp
post Jul 31 2010, 06:31 PM

Getting Started
Group Icon
Elite
195 posts

Joined: Sep 2006



QUOTE(Alpha Wolf @ Jul 31 2010, 06:26 PM)
Hmm... DD-WRT firmware has the options for VLan tagging. According to your webpage, we need to use that DIR-615 router for VLan tagging. But can't we just use a DD-WRT powered router for tagging VLan 500 and VLan 600?
*
I wrote that guide for people who wanted guaranteed IPTV + Internet access. You can use dd-wrt and setup Internet access fine, however getting IPTV to work is a 50/50 thing depending on your router. Not all dd-wrt flashed routers have the same amount of functionality smile.gif
Alpha Wolf
post Jul 31 2010, 07:16 PM

Getting Started
**
Junior Member
263 posts

Joined: Mar 2008
From: SS2, Petaling Jaya


QUOTE(rizvanrp @ Jul 31 2010, 06:31 PM)
I wrote that guide for people who wanted guaranteed IPTV + Internet access. You can use dd-wrt and setup Internet access fine, however getting IPTV to work is a 50/50 thing depending on your router. Not all dd-wrt flashed routers have the same amount of functionality smile.gif
*
Ah yes, you do have to make sure that your router is well support by DD-WRT. Best chances with Broadcom based hardware.

On a side note, TM didn't just start this "have-another-unknown-to-the-end-user-higher-access-router-username-and-password" thing with Unifi routers. They already did that what the free Riger wireless routers that come with Streamyx packages. I wonder what is the real motive behind this.


calvin92
post Aug 2 2010, 02:59 PM

New Member
*
Newbie
3 posts

Joined: Jan 2007


QUOTE(andyz @ Jul 26 2010, 03:07 PM)
rclxms.gif Thanks to rizvanrp  rclxms.gif .. follow procedure to use custom wireless router (netgear WNDR3700)  than the supplied unifi TM DIR-615 one.. was a success n painless... rclxms.gif
user posted image
*
Using another router is like using so much electricity. so messy so many things sad.gif . left on 24/7. Just look at the IPTV box already use 24 watts to electricity, black fiber modem 8 watts, DECT phone is energy efficient (0.7 watts for my given model) so that 1 ok and finally Dlink router not sure how much as i did not find its specification but at least 5 watts. so really that 40 watts left on 24/7 plus now want to add custom router. wow that like leaving the lights on in one bed room 24/7 just to put things in perspective.
thankyou
post Aug 2 2010, 03:36 PM

Regular
******
Senior Member
1,941 posts

Joined: Jan 2003
QUOTE(rizvanrp @ Jul 30 2010, 04:37 PM)
You can wire it directly if your Smoothwall can assign VLAN 500 to the physical WAN port and use that VLAN as the PPPoE WAN interface. Alternatively, you can have a VLAN aware switch in between the smoothwall and huawei to perform the necessary VLAN tagging/untagging or even put the DIR-615 into VLAN bridge mode ( http://unifi.athena.my/index.php?option=co...id=49&Itemid=61 ) to do this for you.

I'm not too sure if the Huawei itself can be setup to bridge a VLAN to the physical LAN port since I don't have that particular unit.

Many Unifibiz users have this issue.. sweat.gif
*
Huawei modem itself can be done through port tagged/untagged in Telnet interface. The default configuration will have all 400/500/600 VLAN tagged to all 5 ports (FE1/FE2/FE3/FE4/PON). Since you doesn't need IPTV, I think all you need is connect smoothwall and have PPPOE interface.

*Note that connecting to end device such as PC will not work since these ports are tagged mode instead of untagged mode*

Infact, I did manage to dial directly from huawei modem by adding WAN interface and create new TR069-INTERNET PPPOE Dialer but lack of feature such as DMZ/Port Forwarding makes it pratically useless (Perhaps UPNP will function well?).

One thing like I've mentioned before, if you are connecting to end device, you need to untagged one of the port instead of tag it but configuration will back to 'factory settings' once huawei modem is rebooted.

I'm currently overseas, will post up some Huawei configuration CLI once I get back to Malaysia.


Anime4000
post Aug 5 2010, 04:18 PM

Look at all my stars!!
*******
Senior Member
2,399 posts

Joined: Jul 2009
From: /dev/null


i wan just to know....
if Router not connected to internet, can TM connect to router? because tm can't access your router if you not connected, no IP...

second, things is that D-Link support telnet?
Old Seaman
post Aug 5 2010, 06:33 PM

New Member
*
Junior Member
20 posts

Joined: Feb 2008
My unifi modem and router are situated downstairs. If I want to connect my printer which is located upstair, can I use my old D-Link DIR635 router as a wireless bridge?
blindbox
post Aug 6 2010, 09:41 AM

Meh
******
Senior Member
1,705 posts

Joined: Nov 2004


QUOTE(wiraone @ Jul 26 2010, 01:50 PM)
Technically, they're not forcing you to use the bundled router. You're free to use your own router, but then, you couldn't do IPTV and that about it. So, if you think IPTV is bollocks (which I think it is for now), then, just use the Belkin that you've. For now, I'm using the DIR-615 as a network bridge as per the guide by rizvanrp and use my own Buffalo WZR as my main router & AP. No problem there.
*
You can still use IPTV if you know how to reroute multicast icon_rolleyes.gif
Wan
post Aug 11 2010, 10:19 AM

Glory Hunter
Group Icon
Elite
4,174 posts

Joined: Jan 2003
From: Gua


Is the wireless from the DIR615 better than my current WRT54gl(ddwrt)?
Definitely I'm going to use my own router.. thanks for the guide rizvanrp! That will come in handy after I get my Unifi, next week. biggrin.gif
yieloon
post Aug 11 2010, 04:06 PM

Getting Started
**
Junior Member
73 posts

Joined: Nov 2004
Hey guys, is there anyway I can buy a router to replace the Dlink?
I mean it is pretty stupid to lose internet connection once your Dlink router go kaput and you have to wait for them to replace it.

I dont think I can go without internet for a day since I pay my bills and do my work using it everyday.

This post has been edited by yieloon: Aug 11 2010, 04:07 PM
cannavaro
post Aug 11 2010, 06:37 PM

CATTENACIO
*******
Senior Member
3,008 posts

Joined: Sep 2005
From: T.T.D.I, Bukit Damansara


QUOTE(Wan @ Aug 11 2010, 10:19 AM)
Is the wireless from the DIR615 better than my current WRT54gl(ddwrt)?
Definitely I'm going to use my own router.. thanks for the guide rizvanrp! That will come in handy after I get my Unifi, next week. biggrin.gif
*
Which package are you getting? I'm sure you know that MUTV is coming to unifi soon. rclxms.gif
cashboy
post Aug 17 2010, 09:58 PM

Casual
***
Junior Member
455 posts

Joined: Oct 2006

Do i need to buy a new modem/ router to replace the model they gave?

and does unipack also effected?

This post has been edited by cashboy: Aug 17 2010, 11:14 PM
Anime4000
post Aug 19 2010, 12:39 AM

Look at all my stars!!
*******
Senior Member
2,399 posts

Joined: Jul 2009
From: /dev/null


user posted image
ericchia007
post Aug 23 2010, 03:24 PM

New Member
*
Newbie
0 posts

Joined: Aug 2007


QUOTE(Old Seaman @ Aug 5 2010, 06:33 PM)
My unifi modem and router are situated downstairs. If I want to connect my printer which is located upstair, can I use my old D-Link DIR635 router as a wireless bridge?
*
Yes, you could do it provided you don't use the IPTV (LAN 4) port. In fact, your WiFi signal will be expended to better reception.
guardians
post Aug 29 2010, 12:18 PM

Getting Started
**
Junior Member
73 posts

Joined: Jan 2010
i have tried all the username and password that are listed here but i still cant log into my d-link. should i call tm to find out my operator account?
bulgarianrose
post Sep 7 2010, 06:35 PM

New Member
*
Junior Member
6 posts

Joined: Jun 2008
help~~~~~~

i juz instal unifi, the first two day is okay, the speed is fast, but the 3rd day, the rounter keep hang in every 1-2hour til the 4th day, completely no signal at all!!!

i cal them for 4 day already, they kenot send someone to help me, and today the complaint department tell me, i am the number 600 user who made complaint and they hav to settle those already made complaint wic exceed 40 times n more, and i was juz made 7 times complaint in 4 day!!!ask me be patient, wait for technician!
wat larrrr~~~~~~~~~~~~~~ i kinda carzy without internet~

note: my location is condominium, they said land line is okay, but juz condominium user got problem? i catched a technician wen i i saw him at my next block installing for new user, he told me is hardware problem, they r finding replacement for the rounter take 2 to 3 months time@@, so wat to do me now, i already potong streamyx!!i m so regret!
iv'N
post Sep 7 2010, 11:01 PM

On my way
****
Senior Member
657 posts

Joined: Jan 2003
QUOTE(bulgarianrose @ Sep 7 2010, 06:35 PM)
help~~~~~~

i juz instal unifi, the first two day is okay, the speed is fast, but the 3rd day, the rounter keep hang in every 1-2hour til the 4th day, completely no signal at all!!!

i cal them for 4 day already, they kenot send someone to help me, and today the complaint department tell me, i am the number 600 user who made complaint and they hav to settle those already made complaint wic exceed 40 times n more,  and i was juz made 7 times complaint in 4 day!!!ask me be patient, wait for technician!
wat larrrr~~~~~~~~~~~~~~ i kinda carzy without internet~

note: my location is condominium, they said land line is okay, but juz condominium user got problem?  i catched a technician wen i i saw him at my next block installing for new user, he told me is hardware problem, they r finding replacement for the rounter take 2 to 3 months time@@, so wat to do me now, i already potong streamyx!!i m so regret!
*
i think you can just get a new router in the meantime, but just losing the iptv temporary.
mikeymic
post Sep 18 2010, 03:59 PM

Getting Started
**
Junior Member
172 posts

Joined: Oct 2006
From: Puchong


just got my unifi installed today. Changed my router access password & disabled the remote management. Now it's time to go thru all the advises from here.. smile.gif
azrulex
post Sep 21 2010, 04:54 PM

New Member
*
Junior Member
29 posts

Joined: Jun 2008
From: Putrajaya


just installed unifi today.. they completed it quite fast. Already disabled remote mgmt and changed both admin & operator password. hehe
Moogle Stiltzkin
post Sep 21 2010, 07:40 PM

Look at all my stars!!
*******
Senior Member
4,451 posts

Joined: Jan 2003
QUOTE(azrulex @ Sep 21 2010, 04:54 PM)
just installed unifi today.. they completed it quite fast. Already disabled remote mgmt and changed both admin & operator password. hehe
*
So.... how much prons have you downloaded so far laugh.gif

Fast?
azrulex
post Sep 21 2010, 08:07 PM

New Member
*
Junior Member
29 posts

Joined: Jun 2008
From: Putrajaya


QUOTE(Moogle Stiltzkin @ Sep 21 2010, 07:40 PM)
So.... how much prons have you downloaded so far  laugh.gif

Fast?
*
not yet... need to wait until midnite after everyone sleep... haha

so far good.. average download speed around 5500 kbps rolleyes.gif

This post has been edited by azrulex: Sep 22 2010, 08:49 PM
aftersix
post Oct 2 2010, 06:00 PM

New Member
*
Junior Member
11 posts

Joined: Oct 2010
From: Somewhere between the Bit and the Byte
I've just registered Unifi with TM, the technicians will be coming to setup by later this month, but I'm kinda panic after I ordered Unifi.

I'm a SoHo, having 3 computers, 2 network printers and 2 NAS in my home working environment, there are also a lot of P&C data in my storage, it MUST NOT be accessible by others. I'm quite panic about the Unifi security issue posted everywhere in the internet. I hope someone can give me a helping hand or suggestion on the following issues:

1. Security
Is it safe enough I just disable the the 'Remote Management' and change the password for both 'admin' and 'operator' account? Can this block TM or attackers by 'easily accessing' to my router? If NO, please tell me what else can I do to make myself protected.


2. Custom Router / Switch
i. Currently I'm using a Switch to connect all my office PCs, printers and also NAS, but in Unifi site, I saw the line: "...is only compatible with computers that are wireless enabled...". I then google online and I found The Unifi Handbook - Using Custom Routers, by following the steps provided, we could actually make the TMnet Dlink DIR-615 G1 as a VLAN bridge. If that so, I wonder can I setup my network like this? 'Fiberhome (VDSL) --> Dlink DIR-615 G1 (VLAN bridge) --> My Router --> My Switch --> PCs, network printers, and NAS (with network cables). Is this possible?

ii. Is it encouraged to do a 'custom router' setup? Will this setup slow down the network speed (or slow down when it's using network cable)??


3. IPTV
If the 'Security' and 'Custom Router / Switch' are successfully applied. Will I lost my IPTV service???

This post has been edited by aftersix: Oct 2 2010, 06:18 PM
TSrizvanrp
post Oct 2 2010, 06:27 PM

Getting Started
Group Icon
Elite
195 posts

Joined: Sep 2006



QUOTE(aftersix @ Oct 2 2010, 06:00 PM)
I've just registered Unifi with TM, the technicians will be coming to setup by later this month, but I'm kinda panic after I ordered Unifi.

I'm a SoHo, having 3 computers, 2 network printers and 2 NAS in my home working environment, there are also a lot of P&C data in my storage, it MUST NOT be accessible by others. I'm quite panic about the Unifi security issue posted everywhere in the internet. I hope someone can give me a helping hand or suggestion on the following issues:

1. Security
Is it safe enough I just disable the the 'Remote Management' and change the password for both 'admin' and 'operator' account? Can this block TM or attackers by 'easily accessing' to my router? If NO, please tell me what else can I do to make myself protected.
2. Custom Router / Switch
i. Currently I'm using a Switch to connect all my office PCs, printers and also NAS, but in Unifi site, I saw the line: "...is only compatible with computers that are wireless enabled...". I then google online and I found The Unifi Handbook - Using Custom Routers, by following the steps provided, we could actually make the TMnet Dlink DIR-615 G1 as a VLAN bridge. If that so, I wonder can I setup my network like this? 'Fiberhome (VDSL) --> Dlink DIR-615 G1 (VLAN bridge) --> My Router --> My Switch --> PCs, network printers, and NAS (with network cables). Is this possible?

ii. Is it encouraged to do a 'custom router' setup? Will this setup slow down the network speed (or slow down when it's using network cable)??
3. IPTV
If the 'Security' and 'Custom Router / Switch' are successfully applied. Will I lost my IPTV service???
*
1. Yea but its better to push your router into vlan bridge mode following the custom router guide as that will completely prevent users from accessing the TM router unless they have physical access to it.

2. The TM router is compatible with both wired and wireless clients. You can use your own router provided it has a RJ45 WAN port. Normally most soho/business clients I know use the TM DIR-615 as a VLAN bridge so they can wire their cisco routers (using the inbuilt PPPoE) directly to Unifi without going through the DIR-615's NAT + firewall which tends to break a lot of things.

ii. It won't slow you down provided the router you use is capable of handling the 5-20mbps speed. Infact, most people do it to increase the performance and stability of their Unifi setup as the TM provided router is pretty bad. If you like this setup, its recommended you buy a VLAN capable switch such as the Mikrotik RB250GS/750/750G or HP Procurve 8 port switch to perform the VLAN tagging for you to replace the DIR-615 (as you're basically 'hacking' it into a VLAN switch when you set it up that way).

3. No, you won't.. as long as you're only doing the VLAN bridging setup (and not reflashing the unit with dd-wrt).


aftersix
post Oct 2 2010, 07:13 PM

New Member
*
Junior Member
11 posts

Joined: Oct 2010
From: Somewhere between the Bit and the Byte
QUOTE(rizvanrp @ Oct 2 2010, 07:27 PM)
1. Yea but its better to push your router into vlan bridge mode following the custom router guide as that will completely prevent users from accessing the TM router unless they have physical access to it.

2. The TM router is compatible with both wired and wireless clients. You can use your own router provided it has a RJ45 WAN port. Normally most soho/business clients I know use the TM DIR-615 as a VLAN bridge so they can wire their cisco routers (using the inbuilt PPPoE) directly to Unifi without going through the DIR-615's NAT + firewall which tends to break a lot of things.

ii. It won't slow you down provided the router you use is capable of handling the 5-20mbps speed. Infact, most people do it to increase the performance and stability of their Unifi setup as the TM provided router is pretty bad. If you like this setup, its recommended you buy a VLAN capable switch such as the Mikrotik RB250GS/750/750G or HP Procurve 8 port switch to perform the VLAN tagging for you to replace the DIR-615 (as you're basically 'hacking' it into a VLAN switch when you set it up that way).

3. No, you won't.. as long as you're only doing the VLAN bridging setup (and not reflashing the unit with dd-wrt).
*
Thanks for the reply Rizvanrp smile.gif

1. Cool, I'll try to follow all the steps once my Unifi been setup.

2. "...they can wire their cisco routers (using the inbuilt PPPoE) directly to Unifi without going through the DIR-615's NAT + firewall..." <-- Is this the Using Custom Routers method mentioned on your site? if NO, how to do it? Encourage to do it? Wait... I'm using Belkin N Wireless Router, can my router do this? (what is cisco router anyway?)

3. "...its recommended you buy a VLAN capable switch..." I don't think I wanne spend money to buy another Switch, anyway, the switch I'm using currently is D-Link DES-1016D 16-Port 10/100Mbps Unmanaged Switch. I don't know whether it's capable to perform the VLAN tagging and replace the DIR-615 or not. (What means "... 'hacking' it into a VLAN switch when you set it up that way..."? Does your handbook site guide us how to do it?)

4. I believe you know my situation pretty well, do you recommend the VLAN bridging method or the replace DIR-615 method more? smile.gif
billytong
post Oct 2 2010, 07:48 PM

Lord Sauron
*******
Senior Member
4,522 posts

Joined: Jan 2003
From: Mordor, Middle Earth.


2. Yes. Using Custom Routers method is where you set ur 615 into vlan tagging bridge. then you use ur belkin to dial pppoe.

3. Most if not all unmanage switch does not capable to do vlan tagging. If you want to replace the 615 completely, u have to buy a Vlan capable switch/router like what rizvan mentioned.

4. It really depends on you. if you wanna save some money, u could just change the 615 into vlan tagging bridge. It is not necessary every single 615 TM give u will break down. These thing are really random. If it really break down. Calling TM to replace one for u might be hassle and take days to weeks, depends on their reponse during that period u cannot online at all using unifi at all if u dont have a vlan device. This is a the reason why I get RB250GS manage switch as backup incase that happen. My 615 doesnt break yet. tongue.gif

for some user like me, my 615 seems to be reliable. My 615 doesnt break at all. So 615 breaking down is still a myth to me. tongue.gif

This post has been edited by billytong: Oct 2 2010, 07:50 PM
fyseng
post Oct 2 2010, 10:10 PM

Getting Started
**
Junior Member
206 posts

Joined: Jan 2003


I just connect 1 port to my gigabit TP-link switch. 2 pc and 1 NAS connect to the switch. VOIP, IPTV and Wireless still using Dlink DIR-615 provide by tmnet.

DIR 615 --> 5 Port Gigabit Switch --> 2 PC and 1 NAS

QUOTE(aftersix @ Oct 2 2010, 06:00 PM)
I've just registered Unifi with TM, the technicians will be coming to setup by later this month, but I'm kinda panic after I ordered Unifi.

I'm a SoHo, having 3 computers, 2 network printers and 2 NAS in my home working environment, there are also a lot of P&C data in my storage, it MUST NOT be accessible by others. I'm quite panic about the Unifi security issue posted everywhere in the internet. I hope someone can give me a helping hand or suggestion on the following issues:

1. Security
Is it safe enough I just disable the the 'Remote Management' and change the password for both 'admin' and 'operator' account? Can this block TM or attackers by 'easily accessing' to my router? If NO, please tell me what else can I do to make myself protected.
2. Custom Router / Switch
i. Currently I'm using a Switch to connect all my office PCs, printers and also NAS, but in Unifi site, I saw the line: "...is only compatible with computers that are wireless enabled...". I then google online and I found The Unifi Handbook - Using Custom Routers, by following the steps provided, we could actually make the TMnet Dlink DIR-615 G1 as a VLAN bridge. If that so, I wonder can I setup my network like this? 'Fiberhome (VDSL) --> Dlink DIR-615 G1 (VLAN bridge) --> My Router --> My Switch --> PCs, network printers, and NAS (with network cables). Is this possible?

ii. Is it encouraged to do a 'custom router' setup? Will this setup slow down the network speed (or slow down when it's using network cable)??
3. IPTV
If the 'Security' and 'Custom Router / Switch' are successfully applied. Will I lost my IPTV service???
*
This post has been edited by fyseng: Oct 2 2010, 10:11 PM
luminarist
post Oct 3 2010, 11:18 AM

Getting Started
**
Junior Member
143 posts

Joined: Sep 2009
Please help, the unifi workers jz arrived today and i JUST found out about this issue. They haven't install anything yet but they left their hardware here. I found out that they provided the DIR-615 G2 modem. So, is it still recommendable to proceed with the installation? Or would the new router solve the backdoor problem?
TSrizvanrp
post Oct 3 2010, 11:20 AM

Getting Started
Group Icon
Elite
195 posts

Joined: Sep 2006



QUOTE(luminarist @ Oct 3 2010, 11:18 AM)
Please help, the unifi workers jz arrived today and i JUST found out about this issue. They haven't install anything yet but they left their hardware here. I found out that they provided the DIR-615 G2 modem. So, is it still recommendable to proceed with the installation? Or would the new router solve the backdoor problem?
*
Go ahead with your install, there are other ways around this. As for the DIR-615 G2, it seems they've just switched to this new router rev + firmware. I'm trying to get my hands on a unit to play around with.
luminarist
post Oct 3 2010, 11:26 AM

Getting Started
**
Junior Member
143 posts

Joined: Sep 2009
Ok thanks a million for ur speedy reply. Anyway, for now i just have to disable the remote access and change the password right?
TSrizvanrp
post Oct 3 2010, 11:28 AM

Getting Started
Group Icon
Elite
195 posts

Joined: Sep 2006



QUOTE(luminarist @ Oct 3 2010, 11:26 AM)
Ok thanks a million for ur speedy reply. Anyway, for now i just have to disable the remote access and change the password right?
*
The DIR-615 G2 with firmware 7.05b has some major differences. I've been told there's either no operator account or they've changed the password to something more complex. I'll post an update on the main Unifi thread once I get a unit to test smile.gif
luminarist
post Oct 3 2010, 01:14 PM

Getting Started
**
Junior Member
143 posts

Joined: Sep 2009
Guys, the technician was installing jz now, and they themselves actually enable the remote management thing. i asked them what was it and they jz say maintainence oni
aftersix
post Oct 3 2010, 03:53 PM

New Member
*
Junior Member
11 posts

Joined: Oct 2010
From: Somewhere between the Bit and the Byte
QUOTE(billytong @ Oct 2 2010, 08:48 PM)
2. Yes. Using Custom Routers method is where you set ur 615 into vlan tagging bridge. then you use ur belkin to dial pppoe.

3. Most if not all unmanage switch does not capable to do vlan tagging. If you want to replace the 615 completely, u have to buy a Vlan capable switch/router like what rizvan mentioned.

4. It really depends on you. if you wanna save some money, u could just change the 615 into vlan tagging bridge. It is not necessary every single 615 TM give u will break down. These thing are really random. If it really break down. Calling TM to replace one for u might be hassle and take days to weeks, depends on their reponse during that period u cannot online at all using unifi at all if u dont have a vlan device. This is a the reason why I get RB250GS manage switch as backup incase that happen. My 615 doesnt break yet.  tongue.gif

for some user like me, my 615 seems to be reliable. My 615 doesnt break at all. So 615 breaking down is still a myth to me.  tongue.gif
*
Hey, thanks for sharing. think I'll be setting up like what I mentioned earlier:
Fiberhome (VDSL) --> Dlink DIR-615 G1 (VLAN Bridge) --> Belkin N Wireless (Router) --> D-Link DES-1016D (Switch) --> PCs, network printers, and NAS (with network cables)

This setup shouldn't be much problem right? Hope it won't be too complex. rclxms.gif


Added on October 3, 2010, 3:55 pm
QUOTE(rizvanrp @ Oct 3 2010, 12:28 PM)
The DIR-615 G2 with firmware 7.05b has some major differences. I've been told there's either no operator account or they've changed the password to something more complex. I'll post an update on the main Unifi thread once I get a unit to test smile.gif
*
OMG, hope to hear from you pretty soon icon_question.gif

This post has been edited by aftersix: Oct 3 2010, 03:55 PM
amores
post Oct 6 2010, 07:34 AM

New Member
*
Junior Member
20 posts

Joined: Feb 2009
From: Bandar Sunway


fixed problems.
thx

This post has been edited by amores: Oct 6 2010, 07:39 AM
teniqcnerd
post Oct 9 2010, 11:57 AM

Getting Started
**
Junior Member
134 posts

Joined: Jan 2008


I am a new UniF*** subscriber and I am regret I did it. At this moment I have 2 issues I am facing,
1) Every time when somebody using the phone my internet line will drop. I need to reboot my computer to get my connection back. Only happen during my wireless connection.
Gave a call to them. The explanation was this can be happen in wireless connection because the telephone line will reduce the wireless strength. Even our mobile phone can cause the strength if we are too near the router. They advise me to get one gadget to counter this problem and I screw and bolt them.
2) VOD. Maybe my assumption was wrong or the rep at the Unifi counter do not know what they are talking about. I purchased a movie and I can't review it back. Today just got a call from them and their statement was I can only review it back within 24 hours. In this case what is the difference between Unifi and Astro?

I always think private sectors are the one who always take advantage of the consumer and our "beloved" government should protect their citizen. In reality.......the opposite.

Lucky I did not cancel the Astro. I might subscribe back the streamyx only.
aftersix
post Oct 9 2010, 12:11 PM

New Member
*
Junior Member
11 posts

Joined: Oct 2010
From: Somewhere between the Bit and the Byte
QUOTE(teniqcnerd @ Oct 9 2010, 12:57 PM)
I am a new UniF*** subscriber and I am regret I did it. At this moment I have 2 issues I am facing,
1) Every time when somebody using the phone my internet line will drop. I need to reboot my computer to get my connection back. Only happen during my wireless connection.
Gave a call to them. The explanation was this can be happen in wireless connection because the telephone line will reduce the wireless strength. Even our mobile phone can cause the strength if we are too near the router. They advise me to get one gadget to counter this problem and I screw and bolt them.
2) VOD. Maybe my assumption was wrong or the rep at the Unifi counter do not know what they are talking about. I purchased a movie and I can't review it back. Today just got a call from them and their statement was I can only review it back within 24 hours. In this case what is the difference between Unifi and Astro?

I always think private sectors are the one who always take advantage of the consumer and our "beloved" government should protect their citizen. In reality.......the opposite.

Lucky I did not cancel the Astro. I might subscribe back the streamyx only.
*
Can I know what is the "gadget to counter this problem"?


Added on October 20, 2010, 6:21 pmI got my Unifi already yesterday. Was successfully done the VLAN bridging and everything else needed to do. Thanks rizvanrp!!

This post has been edited by aftersix: Oct 20 2010, 06:21 PM
iobai
post Oct 23 2010, 12:35 AM

Getting Started
**
Junior Member
98 posts

Joined: Sep 2005
hi rizvanrp,
thanks for ur strong fruitfull tipss!! got mine yesterday, but speed today is shit!!!
nyway, i'm not sure if i missed out, but i dont know my unifi password. can I retrieve online or by calling tm net? or they hv block it not wanting us to know?

thanks..
TSrizvanrp
post Oct 23 2010, 12:46 AM

Getting Started
Group Icon
Elite
195 posts

Joined: Sep 2006



QUOTE(iobai @ Oct 23 2010, 12:35 AM)
hi rizvanrp,
thanks for ur strong fruitfull tipss!! got mine yesterday, but speed today is shit!!!
nyway, i'm not sure if i missed out, but i dont know my unifi password. can I retrieve online or by calling tm net? or they hv block it not wanting us to know?

thanks..
*
It's normally written on your install slip. If you want to find out yourself however, just follow this guide : http://unifi.athena.my/index.php?option=co...id=56&Itemid=68
Rally63
post Oct 23 2010, 01:34 PM

New Member
*
Junior Member
7 posts

Joined: Dec 2007


I've got 2 units of DIR615 G2 and both registered name:operator and password: h566UniFi. Check it out.
rajurajz
post Oct 23 2010, 01:40 PM

Provide iPhone Jailbreak and Etc Service
****
Senior Member
686 posts

Joined: Feb 2010
From: I know where I'm


Good Wan Bro and thx thumbup.gif
warlove3
post Oct 30 2010, 04:53 AM

On my way
****
Senior Member
537 posts

Joined: Nov 2006


rizan, dd-wrt has release a better firmware towards improving their vlan, can you help me check whether will it solve the iptv vlan issue?

http://www.dd-wrt.com/phpBB2/viewtopic.php?t=81469

=D
but its like an experimental build, i'm just providing the news only ^^

This post has been edited by warlove3: Oct 30 2010, 05:01 AM
Netto Hikari
post Oct 30 2010, 11:56 AM

Solution Architect?
*******
Senior Member
2,410 posts

Joined: Jan 2003
From: Selangor


just play around the router till i found this thread. i ask the tm installer b4 wats the use of the remote. they said is next yr round april, there is a service upgrade to enable all port on the huawei MAN modem.

at the moment is just disable the remote management. but for the TR-09 not too sure yet of the functionality as yor site didnt mention bout the purpose of it and just disable it.

just my 2cents.
tuahbuah
post Nov 4 2010, 12:44 PM

New Member
*
Newbie
0 posts

Joined: Nov 2010


please help me...how to configure static ip for unifibiz package,
actually i tried to follow all step to flash ddwrt linksys , but its not function for my static ip..your tutorial is for dynamic ip right?

here my detail
im using ddwrt v24 sp2
linksys wrt54g2 v2
unifibiz 10mbps *fixed ip

help me please
guardians
post Nov 4 2010, 09:14 PM

Getting Started
**
Junior Member
73 posts

Joined: Jan 2010
i cant seem to ask unifi cs to send me my account details (eg. username, password). btw, i asked twice to send email to me but failed to do so.

when unifi workers came to install, they carried a document containing our account details. shouldn't we get a copy of it?
victor.c
post Nov 4 2010, 10:21 PM

New Member
*
Junior Member
44 posts

Joined: Jul 2008
From: Desa Setapak


wow u are pro!
That why 1st time i cant access to my router by using default name and pass... after i reset my router then just i can login.... lucky i reset the router... coz just now i check the remote management is untick!

I think it because im press the reset button tat day and it become untick. If not i'm 67 already lol.~
sup3rfly
post Nov 6 2010, 11:48 PM

Techno Slave
******
Senior Member
1,561 posts

Joined: Jan 2003
From: 秋葉原電気街


QUOTE(Rally63 @ Oct 23 2010, 01:34 PM)
I've got 2 units of DIR615 G2 and both registered name:operator and password: h566UniFi. Check it out.
*
thx for the password... i just gotten my unifi today and i asked about the operator password, he told me they dont have it anymore... luckily i tried ur password and its appear to be working, now i have change the password, disable all the remote access.

guess they will be having hard time troubleshooting when they try to remote into our system as we have disable the remote management and changed the password... lol


teniqcnerd
post Nov 12 2010, 12:44 AM

Getting Started
**
Junior Member
134 posts

Joined: Jan 2008


I am still experiencing signal drop when I am using wireless connection and cost me dearly because when I am downloading and the signal drop my download is consider and the download was incomplete. I have called them twice and they said will do some refreshing and this thing still occurs. Anyone has any idea to solve this issue of mine?

I have another thing to share. I just came back from Hong Kong and one of their company promoting high speed broad package. This is their deal...
7.2MB connection speed / 36 TV channels / all calls free (local I think) and monthly HKD137 ONLY (exchange rate is 2.4 per Ringgit).
Unif@#$ really a screwing all Malaysian.

JinXXX
post Nov 12 2010, 12:47 AM

Look at all my stars!!
*******
Senior Member
2,516 posts

Joined: Feb 2007
From: Uarla Umpur



QUOTE(teniqcnerd @ Nov 12 2010, 12:44 AM)
Unif@#$ really a screwing all Malaysian.
*
now only you know ??

before HK is only an island same excuse with singapore...
teniqcnerd
post Nov 19 2010, 11:30 PM

Getting Started
**
Junior Member
134 posts

Joined: Jan 2008


QUOTE(JinXXX @ Nov 12 2010, 01:47 AM)
now only you know ??

before HK is only an island same excuse with singapore...
*
Yesterday I have another experience with the UniF****
1) I want to purchase a movie with the points given to us even-though
I can review a purchase movie within 24 hours. To my surprise the points
to purchase has change to RM-Ringgit Malaysia. RM8 per movie.
What the F**K?????????????????? vmad.gif vmad.gif vmad.gif
When they change the policy, they even don't have the curtsey's to inform
the client.

2) I wanted to pay the stupid bill through internet banking and I can't register
to my favorite. So I went to TM to pay. When I asked they told me Unifi bill
can only pay through TM point. Another frustration. mega_shok.gif mega_shok.gif


What is Malaysia turning into. A RAJA BERSIONG............ vmad.gif vmad.gif vmad.gif

I am really disappointed I supported Unifi.....
ruffstuff
post Nov 20 2010, 01:10 PM

Look at all my stars!!
*******
Senior Member
3,345 posts

Joined: Jan 2003
QUOTE(teniqcnerd @ Nov 19 2010, 11:30 PM)
Yesterday I have another experience with the UniF****
1) I want to  purchase a movie with the points given to us even-though
    I can review a purchase movie within 24 hours. To my surprise the points
    to purchase has change to RM-Ringgit Malaysia. RM8 per movie.
    What the F**K?????????????????? vmad.gif  vmad.gif  vmad.gif
    When they change the policy, they even don't have the curtsey's to inform
    the client.

2) I wanted to pay the stupid bill through internet banking and I can't register
    to my favorite. So I went to TM to pay. When I asked they told me Unifi bill
    can only pay through TM point. Another frustration.  mega_shok.gif  mega_shok.gif 
What is Malaysia turning into. A RAJA BERSIONG............  vmad.gif  vmad.gif  vmad.gif 

I am really disappointed I supported Unifi.....
*
Well, you really an uninformed user. They already stated by 1st November in their websites, they start charging all the non-free content if you want to subscribe. No more points. You think they will call each of the user to inform this?

For online payments, you can do it by posonine, maybank2u or via credit card through myunifi page.

You should check on thei websites for updates, before start blaming. Sigh.
Cristiano-Ronaldo-7
post Nov 22 2010, 09:10 PM

Regular
******
Senior Member
1,396 posts

Joined: Sep 2004
i've experience alot of problems with my mac and ps3 on unifi. we get disconnected way too easily. some one told me i can fix this by attaching another router to it? is that true? and i need to run the changes as mentioned at the start of this thread by the ts?

thanks would really help. damn annoying, 10mbps also still dc.
teohhanhui
post Nov 23 2010, 12:40 AM

New Member
*
Junior Member
40 posts

Joined: Jun 2005
From: Kuala Lumpur


QUOTE(Cristiano-Ronaldo-7 @ Nov 22 2010, 09:10 PM)
i've experience alot of problems with my mac and ps3 on unifi. we get disconnected way too easily. some one told me i can fix this by attaching another router to it? is that true? and i need to run the changes as mentioned at the start of this thread by the ts?

thanks would really help. damn annoying, 10mbps also still dc.
*
Yes, since that router is not that good. I'd recommend getting a Buffalo WHR-HP-G300N and running official firmware based on DD-WRT on it...

Or, if you want a higher-end model (try to compare the two models): Buffalo WZR-HP-G300NH, which also has official DD-WRT firmware. Cheers =)

This post has been edited by teohhanhui: Nov 23 2010, 12:47 AM
Cristiano-Ronaldo-7
post Nov 24 2010, 12:46 AM

Regular
******
Senior Member
1,396 posts

Joined: Sep 2004
QUOTE(teohhanhui @ Nov 23 2010, 12:40 AM)
Yes, since that router is not that good. I'd recommend getting a Buffalo WHR-HP-G300N and running official firmware based on DD-WRT on it...

Or, if you want a higher-end model (try to compare the two models): Buffalo WZR-HP-G300NH, which also has official DD-WRT firmware. Cheers =)
*
hi thanks for the help. i dont remember the model number.

but my spare router looks like this http://www.google.com.my/imglanding?q=link...=1t:429,r:2,s:0

not the same color though.

and i'm quite noob with computers. am looking for outside help actually. but i might try it out first one more time.

yeah damn pissed off with the stupid router. high speed but cant remain connected.
vergas
post Nov 24 2010, 06:59 AM

Regular
******
Senior Member
1,488 posts

Joined: Oct 2004


QUOTE(Cristiano-Ronaldo-7 @ Nov 24 2010, 12:46 AM)
hi thanks for the help. i dont remember the model number.

but my spare router looks like this http://www.google.com.my/imglanding?q=link...=1t:429,r:2,s:0

not the same color though.

and i'm quite noob with computers. am looking for outside help actually. but i might try it out first one more time.

yeah damn pissed off with the stupid router. high speed but cant remain connected.
*
Since you have a spare router try this setup: http://unifi.athena.my/custom_routers.html
bamboo88
post Nov 28 2010, 07:47 PM

Getting Started
**
Junior Member
67 posts

Joined: Jun 2006
Hi,

I'm just getting my 5MB unifi installed in my house. But I noticed that when I do the speed test (speedtest.net), the web indicate that my IP was from Brunei. The speedtest result gives me about 2MB download. I had reboot/reset the modem but the website still showing that my IP was from Brunei

Had trial withbout another speedtest from unifi website (http://www.unifi.my/unifi/index.php?option=com_content&view=article&id=75&Itemid=269), the result gives me near to 5MB download.

Anyone knows why this happen? Appreciate that if any expert here can advice me.

Thanks.

This post has been edited by bamboo88: Nov 28 2010, 07:48 PM
TSrizvanrp
post Nov 28 2010, 07:52 PM

Getting Started
Group Icon
Elite
195 posts

Joined: Sep 2006



QUOTE(bamboo88 @ Nov 28 2010, 07:47 PM)
Hi,

I'm just getting my 5MB unifi installed in my house. But I noticed that when I do the speed test (speedtest.net), the web indicate that my IP was from Brunei. The speedtest result gives me about 2MB download. I had reboot/reset the modem but the website still showing that my IP was from Brunei

Had trial withbout another speedtest from unifi website (http://www.unifi.my/unifi/index.php?option=com_content&view=article&id=75&Itemid=269), the result gives me near to 5MB download.

Anyone knows why this happen? Appreciate that if any expert here can advice me.

Thanks.
*
The GeoIP database maps some Unifi ranges to Brunei. If you can get 5mbps with the local Malaysian servers you're getting what you paid for
bamboo88
post Nov 30 2010, 09:47 AM

Getting Started
**
Junior Member
67 posts

Joined: Jun 2006
QUOTE(rizvanrp @ Nov 28 2010, 07:52 PM)
The GeoIP database maps some Unifi ranges to Brunei. If you can get 5mbps with the local Malaysian servers you're getting what you paid for
*
The speedtest give me the correct result now...Thanks..
eddie_lim
post Nov 30 2010, 10:19 AM

You Never Walk Alone
Group Icon
Elite
4,024 posts

Joined: Jan 2003
From: In the deepest part of your heart !




Unifi is down... anyone experience it now?
revert to a wireless ISP...
SUSbc_low
post Nov 30 2010, 10:46 AM

New Member
*
Junior Member
28 posts

Joined: Jul 2010
my unifi is down since 1am yesterday, living in kepong area
SUSthieflord
post Dec 4 2010, 04:17 PM

Androdify Yourself!
*******
Senior Member
3,098 posts

Joined: Aug 2010
From: my house



i dont understand at all..
can anyone give me a small kid's explanation to all this?

edit::: ok i finally understand what all this is about.. so basically i just logon to the operator acc, chg both pws untick the 069 thing and remote management then im safe from them sticking their ass in my business?

if i use my own modem router how? am i safe? i dont really need the iptv feature..

2nd edit: damn TS, ur famous
http://www.youtube.com/watch?v=dE_WNxupoDk

This post has been edited by thieflord: Dec 4 2010, 07:48 PM
~~KennyYap~~
post Dec 5 2010, 12:13 PM

New Member
*
Junior Member
48 posts

Joined: Jul 2010
dear guys~~ can any1 guide me how on earth u guys can use ur own routers while using unif? i've tried 3 routers the closest one is WR1043ND with DD wrt firmware yet i still cant manage to run Unifi~~ can any1 pls help me?? icon_question.gif cry.gif
SUSthieflord
post Dec 5 2010, 12:31 PM

Androdify Yourself!
*******
Senior Member
3,098 posts

Joined: Aug 2010
From: my house



QUOTE(~~KennyYap~~ @ Dec 5 2010, 12:13 PM)
dear guys~~ can any1 guide me how on earth u guys can use ur own routers while using unif? i've tried 3 routers the closest one is WR1043ND with DD wrt firmware yet i still cant manage to run Unifi~~ can any1 pls help me??  icon_question.gif  cry.gif
*
go see riz de web.. unifi.athena.my
Fadly
post Dec 5 2010, 12:41 PM

Casual
***
Junior Member
368 posts

Joined: Sep 2009


I've got a hint about this secret account a year ago. I discovered a files in someone's computer that contained all of my internet activities, list of files in my PC and Webcam recordings that i don't know about.
~~KennyYap~~
post Dec 5 2010, 12:42 PM

New Member
*
Junior Member
48 posts

Joined: Jul 2010
QUOTE(thieflord @ Dec 5 2010, 12:31 PM)
go see riz de web.. unifi.athena.my
*
tried everything~~ still cant connect~~ doh.gif
SUSthieflord
post Dec 5 2010, 01:53 PM

Androdify Yourself!
*******
Senior Member
3,098 posts

Joined: Aug 2010
From: my house



QUOTE(~~KennyYap~~ @ Dec 5 2010, 12:42 PM)
tried everything~~ still cant connect~~  doh.gif
*
maybe u did something wrong.. hit the reset button n try again..
booby
post Dec 5 2010, 03:03 PM

oh god why
****
Senior Member
658 posts

Joined: Jul 2008
From: dowan say
how to check my usage?
djhenry91
post Dec 5 2010, 03:25 PM

Slow and Steady
*******
Senior Member
6,779 posts

Joined: Jan 2009
From: SEGI Heaven


QUOTE(booby @ Dec 5 2010, 04:03 PM)
how to check my usage?
*
which kind of usage?
booby
post Dec 5 2010, 03:32 PM

oh god why
****
Senior Member
658 posts

Joined: Jul 2008
From: dowan say
the 60gb limit, search all over the place cant get any idea hmm.gif
hariznasir
post Dec 19 2010, 12:10 PM

New Member
*
Junior Member
27 posts

Joined: Dec 2010
hey pro , could i use the stb with an access point to link it with the
tm router ?
i just want to use the stb upstairs
TSrizvanrp
post Dec 19 2010, 12:50 PM

Getting Started
Group Icon
Elite
195 posts

Joined: Sep 2006



QUOTE(hariznasir @ Dec 19 2010, 12:10 PM)
hey pro , could i use the stb with an access point to link it with the
tm router ?
i just want to use the stb upstairs
*
Get a pair of homeplugs :3
nkarul85
post Dec 19 2010, 01:11 PM

newbies
******
Senior Member
1,480 posts

Joined: Mar 2009
From: puchong, selangor



homeplug expensive tongue.gif
jAkUn
post Dec 19 2010, 03:32 PM

Casual
***
Junior Member
326 posts

Joined: Jan 2005
From: Damansara

QUOTE(nkarul85 @ Dec 19 2010, 02:11 PM)
homeplug expensive tongue.gif
*
homeplug is just RM68 for AZTECH HL106E at LOWYAT.

WAP cost more than that.. tongue.gif
outdoorxplorer
post Dec 19 2010, 03:39 PM

~Money Only Bring Pleasures When You Spent It WISELY!~
*******
Senior Member
2,027 posts

Joined: Jan 2003
From: Kuala Lumpur, MYS


QUOTE(jAkUn @ Dec 19 2010, 03:32 PM)
homeplug is just RM68 for AZTECH HL106E at LOWYAT.

WAP cost more than that.. tongue.gif
*
But need at least 2 to work and may not be economical if more devices are present. Furthermore it takes up a power point unless the passthrough version is purchased and that gonna cost more.

hariznasir
post Dec 19 2010, 11:55 PM

New Member
*
Junior Member
27 posts

Joined: Dec 2010
haha
thx bro ,
almost forgot bout that thing wink.gif
but is there an issue for 3-phase home ?
rclxms.gif

This post has been edited by hariznasir: Dec 19 2010, 11:58 PM
nkarul85
post Dec 20 2010, 04:13 AM

newbies
******
Senior Member
1,480 posts

Joined: Mar 2009
From: puchong, selangor



QUOTE(jAkUn @ Dec 19 2010, 03:32 PM)
homeplug is just RM68 for AZTECH HL106E at LOWYAT.

WAP cost more than that.. tongue.gif
*
pair or single homeplug?

if pair, nice price biggrin.gif tongue.gif
ckl1998
post Dec 25 2010, 04:09 AM

Getting Started
**
Junior Member
225 posts

Joined: Dec 2009
Hi,

I saw all of you discussed only about DIR-615, and disable its TR-069 and remote management.

Bear in mind, for enhanced security, you need to do something on the primary too, that is the modem (FTTH or VDSL2).

If you check on the setting of the modem, TR-069 is enabled.

conversainte
post Dec 27 2010, 04:13 PM

New Member
*
Junior Member
16 posts

Joined: Aug 2008


bro~ if i use custom modem like belkin, and don switch off the TR-069, will i still have security problems?
ebwon1
post Jan 20 2011, 12:21 PM

New Member
*
Newbie
3 posts

Joined: Aug 2009


Thank you so much for this post. Really saved me!
JinXXX
post Jan 20 2011, 12:31 PM

Look at all my stars!!
*******
Senior Member
2,516 posts

Joined: Feb 2007
From: Uarla Umpur



QUOTE(ckl1998 @ Dec 25 2010, 04:09 AM)
Bear in mind, for enhanced security, you need to do something on the primary too, that is the modem (FTTH or VDSL2).

If you check on the setting of the modem, TR-069 is enabled.
*
actually for my opinion it doesn't matter as those devices are "bridging" devices.. the only ppl who can access them directly is TM...

while for the modem/pppoe dialer.. its the whole internet..
Wyxor
post Jan 30 2011, 12:19 AM

Getting Started
**
Junior Member
55 posts

Joined: Feb 2010
Guys, my firmware is 7.09. Must I downgrade it to 7.05?
yothim
post Jan 30 2011, 01:44 AM

Getting Started
**
Junior Member
182 posts

Joined: Jan 2009
hi rizvanrp,

i will be getting the unifi 5mb package this monday and i wan planning to put everything on the first floor while doing a bridging on the top box on the living room.

my question is, can i do a bridging between the default tm router with my tplink W8960N wireless modem router which i am currrently using for my streamyx? or i just get a wireless repeater (WL556E) from aztech to save the hassle?

i'm worried that if i intall up there, iptv wont work. if i install it downstairs, the wifi wont work on my pc in my room. and of course, the drilling
SUSalexcky
post Feb 6 2011, 02:16 PM

business Sifu
*****
Senior Member
842 posts

Joined: Nov 2007


to all the unifi users here,pls advise me is it worth to get the package for my office use?

my office is located at kepong area,shoplot 2nd floor..

cheers
dtdw
post Feb 12 2011, 04:09 PM

Casual
***
Junior Member
425 posts

Joined: Apr 2006


just my super uber security question. how on earth can you access the router if you dont even know the password that has setup BEFORE logging into the router ?

an outsider can nvr log in unless they know the wpa password.
jackylbh
post Feb 14 2011, 10:48 AM

New Member
*
Junior Member
4 posts

Joined: Aug 2007
QUOTE(dtdw @ Feb 12 2011, 04:09 PM)
just my super uber security question. how on earth can you access the router if you dont even know the password that has setup BEFORE logging into the router ?

an outsider can nvr log in unless they know the wpa password.
*
....someone from outside....via your public/dynamic/wan ip..not from inside..=)
dtdw
post Feb 16 2011, 10:26 AM

Casual
***
Junior Member
425 posts

Joined: Apr 2006


err .. question not answered. just so you know i AM referring to outsider, not insider.

its obvious that insider can mess your network easily.

but i have tried even with my own network from an outsider perspective. it is impossible to get pass the first level of security which is the username@unifi > insert password. the password, is set to wpa2 using 8 digit password by the technician.

so this whole point of hoo hah with tmnet setting unifi as security flaw, is pointless.

if you say its to prevent tmnet from messing with your network, then yes, it makes sense. but adding the last part where you state that normal outsider people can tap into your network is bull.

dont even need to say unifi lah. just about any other network can be tapped right so why only unifi made such a hype ?
ruffstuff
post Feb 16 2011, 10:56 AM

Look at all my stars!!
*******
Senior Member
3,345 posts

Joined: Jan 2003
QUOTE(dtdw @ Feb 16 2011, 10:26 AM)
err .. question not answered. just so you know i AM referring to outsider, not insider.

its obvious that insider can mess your network easily.

but i have tried even with my own network from an outsider perspective. it is impossible to get pass the first level of security which is the username@unifi > insert password. the password, is set to wpa2 using 8 digit password by the technician.

so this whole point of hoo hah with tmnet setting unifi as security flaw, is pointless.

if you say its to prevent tmnet from messing with your network, then yes, it makes sense. but adding the last part where you state that normal outsider people can tap into your network is bull.

dont even need to say unifi lah. just about any other network can be tapped right so why only unifi made such a hype ?
*
the flaw is not going into the wireless network. But using the remote function of the d-link router accessing from internet. Once you have unifi user IP, you can easliy remote their router. Username and password are generic to access the router management.
jackylbh
post Feb 16 2011, 11:01 AM

New Member
*
Junior Member
4 posts

Joined: Aug 2007
OMG...... rclxub.gif rclxub.gif rclxub.gif

just my 2 cents worth..

1. Your router/modem is connected to the internet. rite????

2. So when it is connected..your router must have a public IP ...and this is not your private/internal IP...this IP can be viewed by anyone..even by web administrator of any site, anywhere, anytime unless you managed to spoof your ip everytime your're online.

3. so now...if you dont disable the remote management thingie in your modem and change the default operator or admin password to a better one...ANYONE CAN JUST INPUT YOUR WAN/PUBLIC IP IN THEIR BROWSER AND ACCESS YOUR BELOVED WHITE/ORANGE MODEM AND MESS WITH IT. sorry for the caps...

4. the password with the "@unifi" is your unifi account password.That login/password is definitely safe. The password I AM REFERING is your router password...

5. well nonetheless, the risk of your unifi being messed up is kinda small....prevention is better than cure..=)


dtdw
post Feb 17 2011, 09:50 AM

Casual
***
Junior Member
425 posts

Joined: Apr 2006


ok so the big word is remote management.

tried it, and it works.

but only one thing left to do for the hackers : guessing the ip.

there are more than 175 million sequence and numbers (assuming unifi ip starts at 175.x.x.x . that's just one of it, i havent reboot and track the range of ip that unifi has. if it has 5 different starting numbers .. its a hell long time just playing guessing.

not to mention, if there is 175.15.x.x and then after reboot is 175.33.x.x that's already 2 sets of 175 million. and so on.

unless somewhere out there has a program, or that idiot is lifeless, you r in danger. but other than that, you are bloody safe.
Icehart
post Feb 17 2011, 10:20 AM

72.55.191.6
********
All Stars
14,897 posts

Joined: Apr 2005
From: Kuala Lumpur & Selangor


QUOTE(dtdw @ Feb 17 2011, 09:50 AM)
ok so the big word is remote management.

tried it, and it works.

but only one thing left to do for the hackers : guessing the ip.

there are more than 175 million sequence and numbers (assuming unifi ip starts at 175.x.x.x . that's just one of it, i havent reboot and track the range of ip that unifi has. if it has 5 different starting numbers .. its a hell long time just playing guessing.

not to mention, if there is 175.15.x.x and then after reboot is 175.33.x.x that's already 2 sets of 175 million. and so on.

unless somewhere out there has a program, or that idiot is lifeless, you r in danger. but other than that, you are bloody safe.
*
The possibility of hitting you is one in a million then, but do not discount the chances of getting hit.
farkinid
post Feb 17 2011, 10:50 AM

Enthusiast
*****
Senior Member
997 posts

Joined: Feb 2007


QUOTE(dtdw @ Feb 17 2011, 09:50 AM)
ok so the big word is remote management.

tried it, and it works.

but only one thing left to do for the hackers : guessing the ip.

there are more than 175 million sequence and numbers (assuming unifi ip starts at 175.x.x.x . that's just one of it, i havent reboot and track the range of ip that unifi has. if it has 5 different starting numbers .. its a hell long time just playing guessing.

not to mention, if there is 175.15.x.x and then after reboot is 175.33.x.x that's already 2 sets of 175 million. and so on.

unless somewhere out there has a program, or that idiot is lifeless, you r in danger. but other than that, you are bloody safe.
*
Geez for somebody acts like he knows so much about networks you sure don't know much about port scanners.
dtdw
post Feb 17 2011, 11:00 AM

Casual
***
Junior Member
425 posts

Joined: Apr 2006


well apparently, i just did. thank you for hinting. for education purposes i suppose ? but this also naps me free lunch for helping contacts fix the problem.
sakos
post Feb 17 2011, 11:04 AM

Casual
***
Junior Member
334 posts

Joined: Dec 2006


Just to reconfirm for VIP 5, 10 & 20 using the same DIR 615 router rite?
Plan to install for office use, any diff with home package?

edit : sorry for Biz 10 use the same router DIR 615?

This post has been edited by sakos: Feb 17 2011, 11:19 AM
gerrardling
post Feb 17 2011, 12:22 PM

6 STARS
******
Senior Member
1,684 posts

Joined: Apr 2008


how to sniff data sent out or sent in from my unfi router ? just want to check what are the data sent out
farkinid
post Feb 17 2011, 03:20 PM

Enthusiast
*****
Senior Member
997 posts

Joined: Feb 2007


QUOTE(gerrardling @ Feb 17 2011, 12:22 PM)
how to sniff data sent out or sent in from my unfi router ? just want to check what are the data sent out
*
ettercap + wireshark
Icehart
post Feb 17 2011, 03:50 PM

72.55.191.6
********
All Stars
14,897 posts

Joined: Apr 2005
From: Kuala Lumpur & Selangor


QUOTE(sakos @ Feb 17 2011, 11:04 AM)
Just to reconfirm for VIP 5, 10 & 20 using the same DIR 615 router rite?
Plan to install for office use, any diff with home package?

edit : sorry for Biz 10 use the same router DIR 615?
*
They use the same router.
cherroy
post Feb 17 2011, 04:26 PM

20k VIP Club
Group Icon
Staff
25,802 posts

Joined: Jan 2003
From: Penang


For newer firmware 7.09, remote management is disable by default.
TSrizvanrp
post Feb 17 2011, 05:41 PM

Getting Started
Group Icon
Elite
195 posts

Joined: Sep 2006



Lol, some people still say you need to 'guess' the IP. happy.gif

Anyway, as cherroy mentioned, the remote management bug (config.bin exploit and default password) have been patched in firmware 7.09 so I'm closing this thread.

Topic ClosedOptions
 

Change to:
| Lo-Fi Version
0.1176sec    0.37    6 queries    GZIP Disabled
Time is now: 28th November 2025 - 08:14 AM