Page 1 of 1

Security issue on GD board with IP Trunk

Posted: 03 Jul 2006 16:44
by frank
I made a test today...

I opened my GD board to the internet.
Ports open:

UDP 1718
UDP 1719
TCP 1720

UDP/TCP 1024 - 65535


Guess what.. The box got hacked: It restarted a couple of times, I lost all of my boards (because GD restarted), and now i can't reboot it anymore...

I had a tape in between the router and the box, and I saw all kind of attacks that I will not be able to provide here.. But I'll try again if I have time, and demonstrate it ..

Posted: 03 Jul 2006 18:01
by cavagnaro
It seems to me very obvoius, those ports are very common, maybe if you configure security with netadmin -m ?
Also, i think it's better if a firewall do the NAT to the OXE and it handles the security allowing only the other node to go inside.

Posted: 03 Jul 2006 20:33
by frank
I opened those ports for VoIP / IP trunking with people from the internet.
Actually, I am not sure this is due to an attack... I'll make some more researches...