View Single Post
  #6   Report Post  
Posted to uk.d-i-y
Mr Pounder[_2_] Mr Pounder[_2_] is offline
external usenet poster
 
Posts: 2,018
Default Virgin SuperHub2 and DMZ setting


"David.WE.Roberts" wrote in message
...
On Sat, 15 Feb 2014 12:59:48 +0000, Mr Pounder wrote:

"David.WE.Roberts" wrote in message
...
I now have my Virgin SuperHub2 set to accept incoming calls to a DMZ
(RPi
running a VPN server).

I used 'shields up' to check what the ports were doing.

Now without DMZ turned on everything is stealthed.

With DMZ turned on Port 22 (ssh) and Post 1723 (pptpd for VPN) are both
opened automatically.

The rest go to 'closed' instead of 'stealthed'.

The opening of the two ports seems reasonable for an instant DMZ, but I
am puzzled why the other ports now show as 'closed'.
AFAIK a 'closed' port will show up on a port scan by 'bad people'
whereas a 'stealthed' one will not.

OTOH is I have 22 and 1723 open the router must be standing out like a
sore thumb anyway.

So does the team think that this strategy is O.K. or should I be
looking at a more robust implementation of a DMZ?

Try here free.virginmedia.discussion.general


Well, I looked at the Broadband NG and it was not very active.

The General NG doesn't seem to be about VM at all - more OT that uk.d-i-y
by a factor of about 100.

So I come back to the usually reliable uk.d-i-y and uk.comp.homebuilt
which are usually full of (quite) good advice :-)

The broadband group has been quiet for ages.

There are some learned people on the general group.