QUOTE(sg999 @ May 29 2010, 12:48 PM)
simple answer ? ur network is open to TM.. This post has been edited by ciohbu: May 29 2010, 03:14 PM
Unifi WARNING TO ALL UNIFI USERS, Threat warning, read inside
|
|
May 29 2010, 03:12 PM
Return to original view | Post
#1
|
![]() ![]() ![]() ![]() ![]() ![]() ![]()
Senior Member
2,104 posts Joined: Oct 2006 |
|
|
|
|
|
|
May 29 2010, 03:34 PM
Return to original view | Post
#2
|
![]() ![]() ![]() ![]() ![]() ![]() ![]()
Senior Member
2,104 posts Joined: Oct 2006 |
QUOTE(Neptern @ May 29 2010, 03:18 PM) Is it even legal for them to monitor your internet usage like that instead of just logs on their side? i am not sure about legal stuff, but if network admin go too far into ur network, i think that's against the privacy .. its like telco monitor wat u talk in every phone call.. |
|
|
May 29 2010, 03:39 PM
Return to original view | Post
#3
|
![]() ![]() ![]() ![]() ![]() ![]() ![]()
Senior Member
2,104 posts Joined: Oct 2006 |
QUOTE(mylinear @ May 29 2010, 03:39 PM) MCMC ? its like reporting BN's MP corruption case to MACC ...lollzzi think the only way we can do now is to disable the account and remote management.. use firewall to block related traffics.. and also spread this in ur blog or fb if u have.. This post has been edited by ciohbu: May 29 2010, 03:41 PM |
|
|
May 29 2010, 05:13 PM
Return to original view | Post
#4
|
![]() ![]() ![]() ![]() ![]() ![]() ![]()
Senior Member
2,104 posts Joined: Oct 2006 |
|
|
|
May 29 2010, 06:02 PM
Return to original view | Post
#5
|
![]() ![]() ![]() ![]() ![]() ![]() ![]()
Senior Member
2,104 posts Joined: Oct 2006 |
QUOTE(night_wolf_in @ May 29 2010, 05:18 PM) im not sure if i should laugh or cry. well..since u claim that u are CCNP (which is one level on top of CCNA) and working under security huh ? u should know that any unknown account in user's router give security thread to the user ? no matter the account is for good or for bad ... thats the simple and basic theory, imagine ur customer found out that u have a secret account in their main router ? If you think they want to spy on YOU by creating a second management account. Then it is big fail for all you guys, pretending to know how internet works. Your Modem/router will be connected a layer two switch. or lets say connected to a port. they can use "SPAN" to see all the traffic you are sending and receiving. But again, doing that to every indivicual will be really tiring. Easier is, run "SPAN" to the uplink, that is connecting the layer two switch to the distribution switch. and bam, they can get all i/o traffic from the whole switch. WAIT. They can add high end firewalls at the uplinks to every area (logical or geographical) or just again SPAN the traffic to the firewalls. AND they practically SEE every traffic you sending. Conclusion is. dont cry a river for a second account your ISP put it. if they did, it is to make your experience better. but if you think you can out smart them. please do. How i know. I'm a CCNP and working under routing/ switching and security for some enterprise. Added on May 29, 2010, 5:19 pm No, they use packet shaping devices for that. and more serious is the remote management enabled... This post has been edited by ciohbu: May 29 2010, 06:06 PM |
|
|
May 29 2010, 06:13 PM
Return to original view | Post
#6
|
![]() ![]() ![]() ![]() ![]() ![]() ![]()
Senior Member
2,104 posts Joined: Oct 2006 |
QUOTE(night_wolf_in @ May 29 2010, 06:07 PM) ya. it is management. there is no security issues to worry about. the moment you connected to the internet with your own router/modem with only your account, you are screwed by anyone who wants to screw you. i think the main topic here is the security thread by having remote management enabled and having a 2ndary admin account which is invisible to the user.. It is remote mangment of the ROUTER/MODEM. so if someone who is very smart, go play with the settings, then internet doesn't work. they dont have to send a guy to fix it. and dont tell me there are no people who screw their own modem then swear at tmnuts. this great discovery is not worth the rant. If you think you know better than ISP bout network and security. then do what you want to do. Otherwise, i suggest keeping things the way they are. its the same as windows.. now since everyone knows it, they can choose whether to disable it or not.. This post has been edited by ciohbu: May 29 2010, 06:18 PM |
|
|
|
|
|
May 29 2010, 08:56 PM
Return to original view | Post
#7
|
![]() ![]() ![]() ![]() ![]() ![]() ![]()
Senior Member
2,104 posts Joined: Oct 2006 |
QUOTE(rizvanrp @ May 29 2010, 08:25 PM) Oh no, CCNP's and their logic ._. ya...i also cannot tahan with the last line..when he put he is CCNP..lolzzSo please, I get that you're a CCNP and you could build your own Internet if you wanted but you and I both know that leaving an embedded Linux based router with SSHd wide open to the internet while its routing all your Internet traffic is a bloody bad idea and its highly exploitable. I wouldn't write a thread like this unless I've already done the attacks and understood the implications. I'm glad you know how to setup networking hardware and advanced routing protocols but when it comes to security you seem to be completely 'blur'. You really think that BusyBox can only 'play with the settings' and cut you off the net? Lol, you need to get off IOS and into embedded Linux. It's stupid assumptions like this which created this mess in the first place. You have a VLAN capable router here with a full embedded Linux distro running on it and you assume all it runs is a PPP daemon. Bloody laughable. There's no way such a cheap device could have a webserver with a PHP interpreter huh? Maybe you should work on that CEH soon This post has been edited by ciohbu: May 29 2010, 08:56 PM |
|
|
May 29 2010, 09:41 PM
Return to original view | Post
#8
|
![]() ![]() ![]() ![]() ![]() ![]() ![]()
Senior Member
2,104 posts Joined: Oct 2006 |
QUOTE(night_wolf_in @ May 29 2010, 09:00 PM) so you want to tell me. that by disabling that other management account. and cause you know how to give a good password for your own user account. your modem/router is secured? if u are really ccnp, u should know that nothing is 100% secured, u deal with enterprise a lot in ur work rite? i believe u do disable some unnecessary cisco router services such as bootp .. and giv ur router a AAA authentication .. ya.. it is not secured but at least its better than nothing.. same goes to this unifi router. the first thing in security, there is no security. Even if you unplug your system from the internet. there is possible of security attacks. Believe me. if someone wants to use that box you have for hacking. they would have done it long time ago. so when it comes to, should ISP make an account for them to access your box to assist you. or should they close it. They rather make an account. If later on they can't control the situation cause all the boxes turned into bots. then it is their issue to solve. Just know that by disabling that account, you are not safer than when it was open. cheers i notice that ur ideology is kinda funny.. that "if someone wants to use that box you have for hacking. they would have done it long time ago " .. This post has been edited by ciohbu: May 29 2010, 09:42 PM |
|
|
May 30 2010, 12:28 AM
Return to original view | Post
#9
|
![]() ![]() ![]() ![]() ![]() ![]() ![]()
Senior Member
2,104 posts Joined: Oct 2006 |
QUOTE(darkskies @ May 30 2010, 12:23 AM) Yup it's their death trap to get user into Unifi. After enough users they won't listen to anymore complaints and continue to do like what they do to streamyx users. Somemore it's a 2yrs contract which u must be vary of. The price doesnt sounds cheap when u terminate within 2 years. the worst thing is u have to pay + u will have high blood pressure dealing with their customer service within this 2 years |
|
|
Jun 3 2010, 12:19 AM
Return to original view | Post
#10
|
![]() ![]() ![]() ![]() ![]() ![]() ![]()
Senior Member
2,104 posts Joined: Oct 2006 |
TM..TM... stil think malaysian is stupid..
and credit to those ZTE's network engineer hired by TM + TM CCIEs .. This post has been edited by ciohbu: Jun 3 2010, 12:38 AM |
|
|
Jun 3 2010, 07:53 AM
Return to original view | Post
#11
|
![]() ![]() ![]() ![]() ![]() ![]() ![]()
Senior Member
2,104 posts Joined: Oct 2006 |
|
|
|
Jun 3 2010, 01:14 PM
Return to original view | Post
#12
|
![]() ![]() ![]() ![]() ![]() ![]() ![]()
Senior Member
2,104 posts Joined: Oct 2006 |
QUOTE(unker @ Jun 3 2010, 12:57 PM) Dear Riz, TMnut screw us since dial - up and streamyx era.. lolzzAgain, thanks for all that you're doing. M'sia is such a screwed up place, full of rhetorics like the bullshit 1MalangSial and now TM Nut is screwing us conned-sumers. Lucky for us, we have you to make this country a much better place. What you've suggested to me sounds complicated. I'll need to check with TM and get them to come over. Then, work with them on changing the accessibility and password. Have a great day ahead!!! |
|
Topic ClosedOptions
|
| Change to: | 0.0187sec
0.30
7 queries
GZIP Disabled
Time is now: 6th December 2025 - 07:01 AM |