NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.
Forum Discussion
Shahab
Mar 24, 2020Apprentice
Change DNS Settings on Orbi
Hi, How do you change the DNS Servers on the Netgear Router administration page? I have an Orbi RBR40 router with 2 RBR30 Satellites and have been experiencing intermittent internet connectivity is...
Shahab
Apr 03, 2020Apprentice
Contacted phone support again just now,agent asked what entries I had in my logs, for ex. if there were any DoS attack entries. I told him I saw the following entries repeatedly:
[DoS Attack: ACK Scan] from source: 104.129.195.15, port 443, Friday, April 03, 2020 16:40:26
He then had me make the following changes:
Disable Port Scan and DoS Protection based on seeing DoS attack log entries
changed MTU from 1500 to 1472
Disable SIP ALG
Said that the DoS attacks were coming from the Cable Modem. Not sure if this opens me up to some vulnerability.
Shahab
michaelkenward
Apr 04, 2020Guru - Experienced User
Shahab wrote:
He then had me make the following changes:
Disable Port Scan and DoS Protection based on seeing DoS attack log entries
changed MTU from 1500 to 1472
Disable SIP ALGSaid that the DoS attacks were coming from the Cable Modem. Not sure if this opens me up to some vulnerability.
Sounds like rubbish to me.
Who did you talk to? Not, I hope, a number you found with a web search. That's dangerous.
Netgear's firmware is great at creating false reports of DoS attacks. Many of them are no such thing.
Search - NETGEAR Communities – DoS attacks
Use Whois.net to see who is behind some of them and you may find that they are from places like Facebook, Google, even your ISP.
Here is a useful tool for that task:
IPNetInfo: Retrieve IP Address Information from WHOIS servers
If these events are slowing down your router, that may be because it is using up processor time as it writes the events to your logs. Anything that uses processor power – event logging, QoS management, traffic metering – may cause slowdowns. Disable logging of DoS attacks and see if that reduces the problem. This does not prevent the router from protecting you from the outside world.