NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.
Forum Discussion
zollen
Oct 03, 2021Aspirant
Possilbity getting hacked with a short admin password?
I have been using my ORBI (RBR50) for sometime, My admin password is relatively short knowing that Anywhere Access is disabled. Do I have still to have to worry about getting hacked remotely? How do I know for sure remote login is disabled? Is it possible to allow only local login? Should I change my admin password?
(almost) Yes. Any of the web "open ports" web sites will identify ports that are forwarded to internal hosts as long as the internal hosts have the port ready to accept connections.
For example, suppose I forward port 80 (http) to 192.168.1.22. If there is a computer at 192.168.1.22 with port 80 ready to accept connections, then those web sites will say, "Port 80 is open". If there is no computer at 192.168.1.22, or whatever is there will not accept connections on port 80, then those web sites will say it is not open.
Hope that makes sense.
3 Replies
- CrimpOnGuru - Experienced User
No, you cannot be hacked remotely. The Orbi rejects all connection attempts (on all ports, including port 80 - http and port 443 https).
At one time, there was a different form of Remote Management set up through the Advanced Tab, Advanced Setup menu. When I looked just now, that option does not appear on my Orbi. If that option is enabled (somehow), it definitely opens a port to the internet which would immediately get hammered with connection attempts.
- zollenAspirant
Thanks for the quick reply. Would any online PC security test able to identfy any open ports on my router?
For example
https://www.grc.com/x/ne.dll?bh0bkyd2- CrimpOnGuru - Experienced User
(almost) Yes. Any of the web "open ports" web sites will identify ports that are forwarded to internal hosts as long as the internal hosts have the port ready to accept connections.
For example, suppose I forward port 80 (http) to 192.168.1.22. If there is a computer at 192.168.1.22 with port 80 ready to accept connections, then those web sites will say, "Port 80 is open". If there is no computer at 192.168.1.22, or whatever is there will not accept connections on port 80, then those web sites will say it is not open.
Hope that makes sense.