IPv6 being issued by BSNL Broadband!

  • Thread starter Thread starter Ameen
  • Start date Start date
  • Replies Replies 346
  • Views Views 63,489
I give an example of how upnp with firewall can be danger....
You have very high quality firewall and have public IP and have upnp enabled.
You got a pendrive in your computer from your friend. It is infected with a virus and you insert it in one of your computer. Assuming the antivirus fails to detect and computer is infected.

Now the real trouble starts. This infection can instruct your router to open all ports from 1 to 65k and leads to expose your device to world. The upnp will happily open all ports as its main function is to open all ports on demand from any of internal devices of router. With this there are chances of DNS attack , virus can disable your computer firewall and can lead to dns hijack. Like user wanted to go to a social media website and as dns is changed in your local pc, you land to a fake social media website and there you may enter your real password.

So in principle the upnp with strong firewall is good for protection from outside, but if any internal device is compromised, the upnp can be dangerous.
 
To open only one port you can use port forward / port trigger , but not upnp or dmz.
 
I give an example of how upnp with firewall can be danger....
You have very high quality firewall and have public IP and have upnp enabled.
You got a pendrive in your computer from your friend. It is infected with a virus and you insert it in one of your computer. Assuming the antivirus fails to detect and computer is infected.

Now the real trouble starts. This infection can instruct your router to open all ports from 1 to 65k and leads to expose your device to world. The upnp will happily open all ports as its main function is to open all ports on demand from any of internal devices of router. With this there are chances of DNS attack , virus can disable your computer firewall and can lead to dns hijack. Like user wanted to go to a social media website and as dns is changed in your local pc, you land to a fake social media website and there you may enter your real password.

So in principle the upnp with strong firewall is good for protection from outside, but if any internal device is compromised, the upnp can be dangerous.
It's 2020, even Windows Defender has a near-perfect score in protection: Test Microsoft Defender 4.18 for Windows 10 (201615)

You need to be an ignorant computer user who lacks common sense to get infected via USB in 2020 when simple measures can be taken.

My Windows systems haven't been infected in over 12 years.

Once again, UPnP is perfectly safe if the user isn't stupid.
 
Good news guys. I'm able to connect to office VPN after buying new router. We should never buy entry level routers for wfh. One I bought was dual band router, not so costly. Sharing pic here. Thanks guys for the help. You guys are awesome. Bsnl should fire all employees in support team and hire you guys instead.
 

Attachments

  • Screenshot_20200708-093515.webp
    Screenshot_20200708-093515.webp
    48.4 KB · Views: 256
I am using this C60 since 2018 and is very good. I have V2 EU version. I think you may have got V3 version....It has Accesspoint option in dashboard itself.
 
Good news guys. I'm able to connect to office VPN after buying new router. We should never buy entry level routers for wfh. One I bought was dual band router, not so costly. Sharing pic here. Thanks guys for the help. You guys are awesome. Bsnl should fire all employees in support team and hire you guys instead.

C6 is also a good choice , I am using that here.
 
Back