QUOTE(Anime4000 @ May 17 2024, 10:35 PM)
Another Update:Take note that D-Link ONR has always on, always connect IoT Cloud (D-Link Air), that connect via Internet, VLAN 209 and OMCI
If you concerned about security (zero-day exploit, calling home), this IoT Cloud cannot disabled
from UART Boot Logs:
CODE
0m.................................
PK : [redacted]
DN : [redacted]
DS : [redacted]
PID : Your company name
MID : Your module name
URL : https://iot-auth-global.aliyuncs.com/auth/bootstrap
SM : TLS + Guider
TS : 2524608000000
.................................
[prt] Loading the CA root certificate ...
[prt] ok (0 skipped)
[prt] Connecting to /iot-auth-global.aliyuncs.com/443...
[prt] dns server: 223.5.5.5
send dns request message failed: : Network is unreachable
[prt] dns server: 223.6.6.6
send dns request message failed: : Network is unreachable
[prt] dns server: 8.8.8.8
send dns request message failed: : Network is unreachable
[prt] getaddrinfo error[1], res: Bad value for ai_flags, host: iot-auth-global.aliyuncs.com, port: 443
...
[prt] dns server: 223.5.5.5
send dns request message failed: : Network is unreachable
[prt] dns server: 223.6.6.6
send dns request message failed: : Network is unreachable
[prt] dns server: 8.8.8.8
send dns request message failed: : Network is unreachable
[prt] getaddrinfo error[2], res: Bad value for ai_flags, host: iot-auth-global.aliyuncs.com, port: 443
...
<repeated>
UART Log: https://gist.github.com/Anime4000/94613ee7f...bf1586f9edf92e3 About that, I have share the ubi_apps, tr142 and /bin/ccom_linkkit to my PON group,
one big issue:
IoT run as root privilege
Usual overflow can exploit the D-Link and grant you root environment,
This D-Link has ARM64 4 Core at 1GHz, pretty strong processor and run iptable filter, for example: Mapping WAN/CGNAT/Mgmt to LAN (like proxy) from any port to 139/445 to access Windows Share
I attempt to eradicate any IoT found, this d-link can be found in shodan.io once scan parameter is iron-out,
so far now caught in bootloop, this need to address first.
but using custom firmware will invalidate warranty moment plugging PON and O5
For now, use old ONU to keep network safe
More Info:
https://forum.lowyat.net/index.php?showtopi...ost&p=109824064