NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.
Forum Discussion
FDWAL
Dec 07, 2021Aspirant
AX6000 / AC4000 constant disconnects
Hello there, wanted to see if I can get some help here before I contact support. I had an AC4000 and out of the blue I had constant disconnect issues. They usually last 30 seconds to 1 min ma...
michaelkenward
Dec 07, 2021Guru - Experienced User
Netgear's firmware is great at creating false reports of DoS attacks. Many of them are no such thing.
Search - NETGEAR Communities – DoS attacks
Use Whois.net to see who is behind some of them and you may find that they are from places like Facebook, Google, even your ISP.
Here is a useful tool for that task:
IPNetInfo: Retrieve IP Address Information from WHOIS servers
If these events are slowing down your router, that may be because it is using up processor time as it writes the events to your logs. Anything that uses processor power – event logging, QoS management, traffic metering – may cause slowdowns. Disable logging of DoS attacks and see if that reduces the problem. This does not prevent the router from protecting you from the outside world.
You might get more help, and find earlier questions and answers specific to your device, in the appropriate section for your hardware. That's probably here:
Nighthawk Routers with WiFi 6 (AX) - NETGEAR Communities
I will ask the Netgear moderator to move your message.
In the meantime you could visit the support pages:
Support | NETGEAR
Feed in your model number and check the documentation for your hardware. Look at the label on the device for the model number.
You may have done this already. I can't tell from your message.
I mention it because Netgear stopped supplying printed manuals and CD versions some years ago and people sometimes miss the downloads.
FDWAL
Dec 07, 2021Aspirant
Thank you so much for your time and response.
Yeah I looked over the Documentation before.
My connection never slows down at all. It just dies instantly. And it comes back just as sudden 30 seconds to 1 minute later. When I look over the logs it seems as some of the IP's I looked up are in Asia and some are in the USA.
If I check " Disable Port Scan and DoSProtection", will this only turn off the logs or will this turn off the protection all together? I seen this recommended on some other threads on here but didnt want to disable it as I wasnt sure which exactly it does.
- michaelkenwardDec 07, 2021Guru - Experienced User
FDWAL wrote:
If I check " Disable Port Scan and DoSProtection", will this only turn off the logs or will this turn off the protection all together? I seen this recommended on some other threads on here but didnt want to disable it as I wasnt sure which exactly it does.
There are two settings. One disables the logs:
Advanced >> Administration >> Logs >> Known DoS attacks and Port Scans
the other disables the protection.
Advanced >>Setup >> WAN Setup
Many people run without DoSProtection and with no ill effects.
There is some debate as to what each achieves. The aim appears to be that either of these operations can involve processor power. If that overloads the router, then you can see the slow down and disruptions that you describe.
This is mostly conjectural. Trial and error – or suck it and see – seems to be the strategy.
- FDWALDec 07, 2021Aspirant
Here is a screenshot of what my ISP send me after they put the switch in to monitor my network. It seems as if the router keeps rebooting or something as it is kicking eth1 port out all the time.
So it is definitely not the ISP.
I put a ticket in with Netgear and see what they say. I might have to switch to a different brand if they cant fix it as it is 2 different Netgear devices with the same issue.
Thank you for your help.- FDWALDec 07, 2021Aspirant