NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.
Forum Discussion
redstamp
Jun 04, 2016Apprentice
/dbbroker exploit
3 weeks ago I purchased a Netgear ReadyNAS and moved all my files onto it. This week I tried to turn on "ReadyNAS Replicate" under the Cloud tab in the LAN http interface. There were some user cred...
StephenB
Jun 08, 2016Guru - Experienced User
jak0lantash wrote:
The problem with disabling HTTP admin by default is the panic created by the browser WARNING THIS IS UNSECURE CONNECTION, BEWARE, YOU MAY BE GOING TO GET DESTROYED overdone messages warning that the HTTPS certificate isn't signed properly (doesn't match fqdn, etc.).
I understand the user heart attack resulting from the panic, and that is likely why Netgear leaves it enabled.
But the truth is https (with the warning) is more secure than http (without the warning). So if you forward http through your router then you should certainly disable http admin. Businesses probably should disable it too.
It doesn't matter very much if you are a home user who doesn't enable remote web access to the NAS.
Retired_Member
Jun 08, 2016
StephenB wrote:
But the truth is https (with the warning) is more secure than http (without the warning)
That's for sure! ^^
StephenB wrote:
But the truth is https (with the warning) is more secure than http (without the warning). So if you forward http through your router then you should certainly disable http admin. Businesses probably should disable it too.
It doesn't matter very much if you are a home user who doesn't enable remote web access to the NAS.
I actually think the default setting is different on desktop units (HTTP) and on rackmount units (HTTPS) - OS6 of course.
Related Content
NETGEAR Academy

Boost your skills with the Netgear Academy - Get trained, certified and stay ahead with the latest Netgear technology!
Join Us!