NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.

altimac's avatar
altimac
Follower
May 29, 2019
Status:
New Idea

Why HTTPS as default and only option fo remote admin?

Please remove the requirement to use the https:// protocol for remote admin aonnectonis to the Orbi, given that there is no way to insall an SSL cert in a router. All this does is to force us to constatnly bypass the browser warnings about an insecure conneciton. Not sure how there could everr be a use for tthis in the first place and for some reason the Orbi Busienss model router seems to be one of the few that don't allow you to choose the prptocol even thouugh you would think the business model would have MORE features and ptions than the home model. 

3 Comments

  • schumaku's avatar
    schumaku
    Guru - Experienced User

    Well, plain http is dead - can't support your proposal therefore. 

     

    Of course, various abilities are missing for s business class device, like CST generation, automatic certificate renewal, or a basic upload for a custom private key and certificate.

  • Good point, I guess my feature request should have been as you've described, provide for generating a CSR and private key file and then allow us to upload an SSL cert that could be generated from Let's Encrypt or elsewhere. Then connecting via HTTPS might actually make sense.

  • schumaku's avatar
    schumaku
    Guru - Experienced User

    True - integrating Let's Encrypt (to register, install certificate, to renew automatically, ...) would make a great addition.

     

    And then the ability to have to different certificates on the LAN and on the WAN/Internet would make it perfect.