Oleg trying to remove Security failure in NAT firewall rules
discussion in russian at here http://wl500g.info/showthread.php?t=6595
Hi,
is there any change list for OLEGs FW versions??
Yesterday I have found new WL500gp-1.9.2.7-7f-pre8.trx at http://oleg.wl500g.info/gp but I haven't found any info elswhere abou this version.
ric.
Oleg trying to remove Security failure in NAT firewall rules
discussion in russian at here http://wl500g.info/showthread.php?t=6595
trying
We adjust ASUS WL as I have described above.
ISP gives IP 10.7.14.88 (MAN).
The router joins on PPTP and receives IP 212.1.xxx.xx (external IP).
We go to the neighbour's computer. At it on computer IP 10.7.14.89. The neighbour of the Internet does not have (no many -no Internet), balance negative, on VPN does not start up. We do at the neighbour's comptuter:
And we check at his computer:Code:route add-host ya.ru gw 10.7.14.88 route add-net 192.168.0.0/24 (my internal network) gw 10.7.14.88
ping 192.168.0.254 (internal IP of my router)
ping 192.168.0.8 (internal IP of my computer)
ping ya.ru
All is accessible!
p.s. sorry for my bad english
Oi, don't trust your neighbours, right?
Mav, is the problem valid only for the same subnet, or should we think
abour wider areas?
What if i usually get for example 202.165.21.x as my external IP, and
in this case I'll put a DROP on all incoming packets coming from 202.165.21.*
(except my gateway, which should have a fixed IP I guess), as a temporary
solution?
Anyway what's the status of pre8 now?
Thx,
BB
i don't know what happen if use 202.165.21.x
now our user check it and report that bug is solvedstatus of pre8 now?
( dont remember set up options - Internet Firewall - WAN & LAN Filter - Packets(WAN to LAN) not specified will be: DROP)
i think Oleg will realese soon this pre*
From your permission, I try translate Oleg's message (http://wl500g.info/showpost.php?p=39127&postcount=6) about firmwares:
The final release of Oleg's firmware will be available of all type devices, but now firmware available for Delux and Premium series only.
Firmwares available here: http://oleg.wl500g.info/gp/
Shortly changelist:
-pre8: Resolved problem with security hole in NAT and firewall MAN->LAN
(http://wl500g.info/showthread.php?t=6595)
-pre9: Fixed problem with blocked signal SIGALRM for process, started from post-mount file (and other). Example, this bag was present in ping command
(http://wl500g.info/showthread.php?t=5345)
-pre10: Changes in PPTP+DHCP configuration (http://wl500g.info/showthread.php?t=6868)
If you need, i can try to translate more detail...
PS: Sorry for my poor English (
Last edited by Tronix; 01-11-2006 at 09:43.
----
With best reagards,
Sergey.
Thanx for the info Tronix, this detail level is okay for me. Would be nice if Oleg will somewhere keep the chnagelist, i.e. in the http://oleg.wl50g.info/gp/
Can anyone let him know ...
ric.
2 bbaccsi: As far as i know, all versions with prefix "pre", include pre7 - it's beta versions. Final Release version of Oleg's firmware will be appear in the near future. But all "pre" versions is stable, on how many it is possible.
2 calaba: ok, I shall let to him the know.
Last edited by Tronix; 02-11-2006 at 11:06.
----
With best reagards,
Sergey.