Help with a security issue/solution.

Post new topic   Reply to topic    DD-WRT Forum Index -> Advanced Networking
Author Message
gaspatcho
DD-WRT Novice


Joined: 18 Feb 2023
Posts: 5

PostPosted: Sat May 20, 2023 18:21    Post subject: Help with a security issue/solution. Reply with quote
I am getting a lot of hacking attempts coming into my dd-wrt router. I have a list of IP addresses that I would like to allow to connect and would like to reject any incoming TCP connections or incoming UDP packets that have public IP addresses that are not in my list. I still need to be able to send UDP packets or do outbound TCP connections to any public address. The closest thing I have been able to find is the IPTABLE commands but cannot find any detailed explanation of how to use it (the IPTABLE scripts have too many buzzwords that I don't understand). Is there a way to do what I'm looking for? If so, how should I go about it.

Summarize: Reject any incoming TCP connection who's source address is not in my list. Discard any incoming UDP packet that is not in my list. Allow any outbound TCP connection to any address. Allow any outbound UDP packet to any address. It would also help to optionally log any rejections but it's not a requirement.

I am willing to help a dd-wrt expert with documetation to explain some of the terminology being used so others can use it more easily.
Sponsor
egc
DD-WRT Guru


Joined: 18 Mar 2014
Posts: 12877
Location: Netherlands

PostPosted: Sat May 20, 2023 18:36    Post subject: Reply with quote
Unless you deviated from defaults everything trying to connect to your router is not allowed, that is what the default firewall is for.

Provided you are running a current build e.g. 52569 and do not have remote administration enabled.

_________________
Routers:Netgear R7000, R6400v1, R6400v2, EA6900 (XvortexCFE), E2000, E1200v1, WRT54GS v1.
Install guide R6400v2, R6700v3,XR300:https://forum.dd-wrt.com/phpBB2/viewtopic.php?t=316399
Install guide R7800/XR500: https://forum.dd-wrt.com/phpBB2/viewtopic.php?t=320614
Forum Guide Lines (important read):https://forum.dd-wrt.com/phpBB2/viewtopic.php?t=324087
dale_gribble39
DD-WRT Guru


Joined: 11 Jun 2022
Posts: 1927

PostPosted: Sat May 20, 2023 18:40    Post subject: Reply with quote
Anything targeting your WAN would be a result of one of your LAN clients navigating where it probably shouldn't. By default, outside of enabling the limit telnet, ssh, etc. in the firewall settings, there is little to no attack surface as sir @egc has already stated.
_________________
"The woods are lovely, dark and deep,
But I have promises to keep,
And miles to go before I sleep,
And miles to go before I sleep." - Robert Frost

"I am one of the noticeable ones - notice me" - Dale Frances McKenzie Bozzio

<fact>code knows no gender</fact>

This is me, knowing I've ruffled your feathers, and not giving a ****
Some people are still hard-headed.

--------------------------------------
Mac Pro (Mid 2012) - Two 2.4GHz 6-Core Intel Xeon E5645 processors 64GB 1333MHz DDR3 ECC SDRAM OpenSUSE Leap 15.5
Display posts from previous:    Page 1 of 1
Post new topic   Reply to topic    DD-WRT Forum Index -> Advanced Networking All times are GMT

Navigation

 
Jump to:  
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum
You cannot attach files in this forum
You cannot download files in this forum