• May 06, 2025, 04:41:13 PM
  • Welcome, Guest
Please login or register.

Login with username, password and session length
Advanced search  

News:

This Forum Beta is ONLY for registered owners of D-Link products in the USA for which we have created boards at this time.

Author Topic: External port scan indicates udp port 111 is open, how do I block it on DIR-655  (Read 6288 times)

sfitt

  • Level 1 Member
  • *
  • Posts: 3

External port scan indicates udp port 111 is open, how do I block it on DIR-655
Logged

FurryNutz

  • Poweruser
  •   ▲
    ▲ ▲
  • *****
  • Posts: 49923
  • D-Link Global Forum Moderator
    • Router Troubleshooting

This maybe open for a reason:
http://www.grc.com/port_111.htm

What are your SPI setting set for currently?
Logged
Cable: 1Gb/50Mb>NetGear CM1200>DIR-882>HP 24pt Gb Switch. COVR-1202/2202/3902,DIR-2660/80,3xDGL-4500s,DIR-LX1870,857,835,827,815,890L,880L,868L,836L,810L,685,657,3x655s,645,628,601,DNR-202L,DNS-345,DCS-933L,936L,960L and 8000LH.

sfitt

  • Level 1 Member
  • *
  • Posts: 3

I am aware of the Sun Remote Procedure Call, however there are no Unix or Linux based systems on the network. SPI is Enabled, UDP Endpoint Filtering is Address Restricted , TCP Endpoint Filtering is Port And Address Restricted.
Logged

FurryNutz

  • Poweruser
  •   ▲
    ▲ ▲
  • *****
  • Posts: 49923
  • D-Link Global Forum Moderator
    • Router Troubleshooting

What Hardware version is your router? Look at sticker under router.
What Firmware version is currently loaded? Found on routers web page under status.
Logged
Cable: 1Gb/50Mb>NetGear CM1200>DIR-882>HP 24pt Gb Switch. COVR-1202/2202/3902,DIR-2660/80,3xDGL-4500s,DIR-LX1870,857,835,827,815,890L,880L,868L,836L,810L,685,657,3x655s,645,628,601,DNR-202L,DNS-345,DCS-933L,936L,960L and 8000LH.

sfitt

  • Level 1 Member
  • *
  • Posts: 3

Hardware Version: B1   Firmware Version: 2.00NA
Logged

FurryNutz

  • Poweruser
  •   ▲
    ▲ ▲
  • *****
  • Posts: 49923
  • D-Link Global Forum Moderator
    • Router Troubleshooting

Hmm. I have the same Version at home. I will have to check on this when I get home.
Most research on line results in a lot of information regarding blocking on OSs and not pertaining to routers. I might presume that it's open for a reason since Unix and Linux bases OSs might need it open and Dlink might push this to the operators and users of those OSs to block it in the OS and not the router. So not sure if there is a way to block it on the router...you might be able to set up a Port Forward rule and select Deny All. Use 111 for BOTH TCP and UDP and Deny ALL.

http://www.sans.org/security-resources/idfaq/blocking.php

http://www.wilderssecurity.com/showthread.php?t=303979
Logged
Cable: 1Gb/50Mb>NetGear CM1200>DIR-882>HP 24pt Gb Switch. COVR-1202/2202/3902,DIR-2660/80,3xDGL-4500s,DIR-LX1870,857,835,827,815,890L,880L,868L,836L,810L,685,657,3x655s,645,628,601,DNR-202L,DNS-345,DCS-933L,936L,960L and 8000LH.