NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.
Forum Discussion
Daali
Jan 01, 2011Aspirant
Accessing WG302 via http since the year changed?
I am getting a "Self Certificate" page since this morning accessing my WG302's.

Any insight?

Any insight?
75 Replies
- PSHAspirantI hope Netgear are going to address the same issue for the dual band AP - WAG302. This appears to be affected in the same way - see separate thread.
- ngddennis1AspirantOK here is the word from NETGEAR.
The WG302V1 and the WAG302v1 are both made end of life in 2006 and it is not possible for them to release any new update. "its not that we don't want to we cant". The only way to overcome this issue is to not let the Access point update its time. there are a couple of ways you can do this.
1) Block outbound NTP request or block the access points from getting out to the Internet.
2) Change the DNS settings in the Access point so they can not resolve externally for the NTP server.
you can do this by establishing a SSH session or a console cable and connecting to the device.
it will prompt you for the user name and password. this is what ever you have already set in the Access point.
once logged in run the following commands.
set system dns primary 0.0.0.0”
set system dns secondary 0.0.0.0”
reboot”
The AP will reboot with the factory time of 2006 and now you can get into the Graphical U. - jmizoguchiVirtuosothanks for the updates... this should help many of the user visits here! :)
- DaaliAspirant
ngddennis wrote: OK here is the word from NETGEAR.
The WG302V1 and the WAG302v1 are both made end of life in 2006 and it is not possible for them to release any new update. "its not that we don't want to we cant". The only way to overcome this issue is to not let the Access point update its time. there are a couple of ways you can do this.
1) Block outbound NTP request or block the access points from getting out to the Internet.
2) Change the DNS settings in the Access point so they can not resolve externally for the NTP server.
you can do this by establishing a SSH session or a console cable and connecting to the device.
it will prompt you for the user name and password. this is what ever you have already set in the Access point.
once logged in run the following commands.
set system dns primary 0.0.0.0”
set system dns secondary 0.0.0.0”
reboot”
The AP will reboot with the factory time of 2006 and now you can get into the Graphical U.
Option 2 works and is the best solution, other than paying for the DD-WRT firmware at this time.
Thanks for the help! - rilexAspirantIf you can get to a shell on these devices (e.g. /bin/ash, /bin/bash, something), check out replacing /etc/server.pem (assuming it exists) with your own self-signed certificate (e.g. using selfssl.exe from download.microsoft.com). I wonder if the device comes with wget, I see mine does (wnap210, so not exactly the same).
- ngddennis1Aspirant
rilex wrote: If you can get to a shell on these devices (e.g. /bin/ash, /bin/bash, something), check out replacing /etc/server.pem (assuming it exists) with your own self-signed certificate (e.g. using selfssl.exe from download.microsoft.com). I wonder if the device comes with wget, I see mine does (wnap210, so not exactly the same).
There is no access to the file system on this version of the device from the shell you only have access to commands its not using busy box like many of the newer devices that netgear is producing does. - rilexAspirantBummer! :(
- FakGooseAspirantHi...me again. We had just made all our 185 v1 WG302's able to update their time as there were flaky RADIUS issues when clients accessed the NPS server thru the v1 WAPs. Things did anecdotedly seem better after they were up to date. If we set these all back to the old dates, I am concerned this will create a problem again. Do you know if this may be something to be concerned with?
- FakGooseAspirantOkay, I did not want to look, but just did and the version 2 WAPs in use at our business (about 200) have certs that expire 10/15/2012 at 3:25:58pm. They are on 5.2.3na firmware. Have you heard of anything regarding the version 2's being fixed to prevent this cert expiration issue or do you think we are looking at the same issue in 1 3/4 year?
- ngddennis1Aspirant
FakGoose wrote: Okay, I did not want to look, but just did and the version 2 WAPs in use at our business (about 200) have certs that expire 10/15/2012 at 3:25:58pm. They are on 5.2.3na firmware. Have you heard of anything regarding the version 2's being fixed to prevent this cert expiration issue or do you think we are looking at the same issue in 1 3/4 year?
The Engineering team is aware of this and will be updating the certificate in the WG302v2 device to extend the certificate in the device. they have not given a date when it will expire or when it will be updated. however it is likely that it will be with the next firmware update for this device.