NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.
Forum Discussion
sascha_52
Apr 03, 2022Aspirant
GS308E Access Management Site
Hello, I currently used two GS305e at different locations at home. Between the switches I used a trunc-connection with VLAN 101 (192.168.2.0/24) and VLAN 200 (192.168.10.0/24) on Port 5. Port 5 i...
schumaku
Apr 03, 2022Guru - Experienced User
It's not the first time reading about this suspect button the GS308E and probably the similar EP and EPP variants, while the GS305E work as expected.
For completeness, please add the exact model and the current firmware installed on the two switch models.
Will try to create some awareness with Netgear again. In case the switches are newer, also create a support ticket please, too.
For completeness, please add the exact model and the current firmware installed on the two switch models.
Will try to create some awareness with Netgear again. In case the switches are newer, also create a support ticket please, too.
- sascha_52Apr 03, 2022Aspirant
used firmware:
GS305e V1.0.0.5
GS308e V1.00.11GR ; V1.00.03GR testet also
- schumakuApr 03, 2022Guru - Experienced UserYeZ can you please make switch engineering investigate again please?
- waxarApr 18, 2022Tutor
I have encountered the same problem with the GS308E switch. There are two major issues with the web management interface's traffic:
- Outgoing web management traffic is broadcast on all ports regardless of the incoming port (wow!).
- Outgoing web management traffic is always untagged.
Having outgoing web management traffic on all ports is a major security breach and must be addressed asap!
The following is the traffic captured by mirroring one tagged port (a trunk) to another tagged port (a monitor) while the web management console is being accessed. 192.168.1.1 is the router, 192.168.1.11 is the GS308E switch. Note how all outgoing traffic (from the GS308E's perspective) is untagged while incoming traffic from VLAN 1 is tagged. Currently, I am forced to use PVID=1 on the trunk port on the router in order to be able to access the management interface.
Related Content
NETGEAR Academy
Boost your skills with the Netgear Academy - Get trained, certified and stay ahead with the latest Netgear technology!
Join Us!