• February 23, 2025, 03:30:49 PM
  • Welcome, Guest
Please login or register.

Login with username, password and session length
Advanced search  

News:

This Forum Beta is ONLY for registered owners of D-Link products in the USA for which we have created boards at this time.

Pages: [1] 2

Author Topic: B1 - SECURITY ISSUE - Port 0-1 shows Closed Not Stealth!TECHS THIS MUST BE FIXED  (Read 29320 times)

cc999

  • Level 2 Member
  • **
  • Posts: 67

If you goto Shields up at https://www.grc.com/x/ne.dll?bh0bkyd2 it shows Ports 0 and 1 Closed but not stealth, This is first time I have seen this. DIR 655 always had stealth on all ports. Any Ideas???

Charlie C
« Last Edit: August 30, 2009, 03:49:11 AM by cc999 »
Logged

cc999

  • Level 2 Member
  • **
  • Posts: 67
Re: SECURITY ISSUE - Port 0-1 shows Closed only Not Stealth!
« Reply #1 on: August 26, 2009, 05:28:27 PM »

I have been searching the internet for a fix, a trick I used to stealth port 113 on a Buffalo router was to port forward 113 to an invalid IP address and it then became stealth. That trick does not work here.

   Dlink moderators this is a huge issue that must be fixed immediatly!
I am very surprised more people are not commenting in this thread.

Charlie C
Logged

claykin

  • Level 3 Member
  • ***
  • Posts: 112
Re: SECURITY ISSUE - Port 0-1 shows Closed only Not Stealth!
« Reply #2 on: August 26, 2009, 06:21:18 PM »

My 825 is setup as an AP so I don't have this issue.  Ridiculous that Dlink doesn't do even the most elementary of tests before they release firmware!
Logged

cc999

  • Level 2 Member
  • **
  • Posts: 67

Here is how I am now stealth on all ports:

Took my DIR 825 and ran cat 5 from modem port to my DIR 655 in one of the 4
ports. The DIR is then connected to my cable modem. Ran test again ALL stealth.
WHY beacuse the DIR-655 is blocking all the ports!

   DLINK techs this is a MAJOR ISSUE and muste be fixed! Please reply.......

Charlie C
Logged

Gadget

  • Level 2 Member
  • **
  • Posts: 59

CC,

You might want to recheck your security settings (be sure to check your PC, not just the router). 

I'm using an 825 (a) and the site you reference says I'm locked down pretty tight.  An "all ports" check comes up completely green (stealth).  A check for shared info reports as follows:
________________________________________
 Your Internet port 139 does not appear to exist!
One or more ports on this system are operating in FULL STEALTH MODE! Standard Internet behavior requires port connection attempts to be answered with a success or refusal response. Therefore, only an attempt to connect to a nonexistent computer results in no response of either kind. But YOUR computer has DELIBERATELY CHOSEN NOT TO RESPOND (that's very cool!) which represents advanced computer and port stealthing capabilities. A machine configured in this fashion is well hardened to Internet NetBIOS attack and intrusion.
 
Unable to connect with NetBIOS to your computer.
All attempts to get any information from your computer have FAILED. (This is very uncommon for a Windows networking-based PC.) Relative to vulnerabilities from Windows networking, this computer appears to be VERY SECURE since it is NOT exposing ANY of its internal NetBIOS networking protocol over the Internet.
_______________________________
The report is good despite my having a port open for my Slingbox and folders shared between computers on my home network.  Bottom line, I doubt it's the router, probably just your settings.

Cheers
Logged

Kanati

  • Level 1 Member
  • *
  • Posts: 24

Gadget, you need to go back to ShieldsUp and run not just the first scan, but the second and third scans as well.

Tests:
1) File Sharing (which is what you ran)
2) Common Ports
3) All Service Ports

You will see that the DIR-825 does not stealth ports 0 and 1.  HUGE security issue that everyone should be concerned about.
Logged

cc999

  • Level 2 Member
  • **
  • Posts: 67

Thats correct RUN the SERVICE PORTS FULL SCAN. You will have 0 and 1 closed NOT stealth.

The DIR 655 is completly stealth so I have to run my 825 thru the 655 for the security.
THIS MUST BE ADDRESSED. LYCAN please reply........

Charlie C
Logged

SBMongoos

  • Level 3 Member
  • ***
  • Posts: 125

Just setup the 825 Rev B1 and then updated the f/w to 2.02NA.  Just ran the All Service Ports test myself and see the same issue.
Logged

Geraner

  • Level 2 Member
  • **
  • Posts: 75

Same issue here for me. Port 0 - 1 are closed, note stealth.
Using DIR-825 HW: B1 with Firmware 2.01EU (Build15) from the German Dlink FTP-server.
Logged
DIR-825 - HW: B1 - Firmware: 2.05WW Build05 Beta01
DNS-323 - HW: B1- Firmware: 1.08 Beta build 05

cc999

  • Level 2 Member
  • **
  • Posts: 67

Does everyone agree with me that this is a very serious issue! Lycan please tell us this will be
resolved. Its a shame I have to go thru the DIR-655 to get the security that the DIR 825 should be
giving us out of the box.

Charlie C
Logged

cc999

  • Level 2 Member
  • **
  • Posts: 67

Claykin,

   Done, just sent Steve an email at the link you provided. Where the heck are the Techs????

Charlie
Logged

claykin

  • Level 3 Member
  • ***
  • Posts: 112

They read the forums, but don't often reply.  Sad!!
Logged

Clint.B

  • Level 1 Member
  • *
  • Posts: 2

I'm curious to know you rate this as such a high security issue...though on your computer what is running (services) on Port 0 and 1 to make it such a high security priority??

-Clint.B
Logged

claykin

  • Level 3 Member
  • ***
  • Posts: 112

Port 0 is probably a non issue, unless the router handles requests to this port incorrectly.  Port 1 is a TCP Multiplexer port used by some flavors of UNIX.  While it should not be a direct threat to PC users, one never knows if an exploit is created to take advantage of this port and when inside the LAN then create havoc otherwise.

All ports should be stealth on a network with no pinholes.
Logged

Kanati

  • Level 1 Member
  • *
  • Posts: 24

There are programs out there that are designed to scan blocks of IP addresses and at each IP address it will scan all ports from 0 through 65535.  If all of your ports are stealthed (including 0 and 1) these special programs won't even know or see that you are there.  If it detects anything at any IP address, even if the ports are closed, the hacker will still see that something exists at that address.  Then it is up to the hacker to take some kind of action.  Atleast, this is the way I see it.

The #1 reason (for me) to have a ROUTER is security.  If I didn't care about security I would have bought a switch or hooked my pc straight up to the modem.

A good router will stealth all ports <PERIOD>
Logged
Pages: [1] 2