NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.
Forum Discussion
JosephNg
Jan 28, 2021Aspirant
Poor router security RBR750 or firmware (V3.2.16.22_1.4.9)
Hardware Version | RBR750/RBK752 |
Firmware Version | V3.2.16.22_1.4.9 |
GUI Language Version | V3.0.0.51_2.1.30.3 |
First of all, there is no AX4200 or RBR/RBK75 available for me to pick.
First time Netgear user (or otherwise 1x year ago Netgear user), I have been with Dlink, ASUS and TPLINK over time. System stability and the detail system control/configuration are the two key priorities for selection. Friends of mine have been Orbi fans since the AC series. I think I should have a trial when I want to upgrade to Wifi 6.
I have to say, Orbi system control/configuration is the worst I have ever experienced.
1) Very limited system configuratoin option.: DHCP lease period, Real time bandwidth consumption with breakdown of each devices, individual master/slave 2.4/5G on/off selection, Same/Different SSID per master/slave, wifi channel width, wifi change range, Traffic priority/QoS. None of above exists.
2) Access control fraud: from netgear explanation, each device can request DHCP regardless whitelist/blacklist. And it claims the blacklisted device can be blocked network traffic. This is basically wrong if anyone understands about simple networking. Yes the router can block you from going out to the internet because it has to go through layer 3. Internal network is layer 2 and you can already communicate with all whitelisted devices without reaching the router (This is tested). Due to that, I am going to test the manual IP address mapping over to the mac address and limit the DHCP pool to 0 (if possible)
The first week AX42000 user...
1 Reply
- JosephNgAspirant
Followed up on adding reserved IP address mapping over to mac address and Access Control:
1) I think I was wrong to comment that granting IP address to a device causing the device not to be able to block. The layer 2 (same subnet) blocking should be via mac address. Thus technically Netgear's explanation should be validate although layer 2 traffic should be blocked by mac ACL blacklist.
But the issue now verified should be both RBR/BRS do not block the mac address on the layer 2 level in the blacklist. Only RBR blocks the IP or mac address going out to WAN on the layer 3 level.
2) I managed to add all allowed devices into the DHCP IP reservation list. And then set the starting IP and ending IP the same. And such IP address is already in the IP reservation list thus causing unreservated device not able to obtain the IP address from the router.