My Domoticz installation was, until now not secured with a user/password. Resulting in a hack and switching on lights in the middle of the night. The used ip numbers are from users in China.
A learning experience.
I have now secured my Domoticz / RaspberryPi installation but in the log I still see entry's from Chinese ip numbers with the notation incoming connection. My questions are:
are the Chinese still capable of fooling around with my devices.
And so yes, what to do to prevent this
Incoming connection from unknown ip adress
Moderator: leecollings
- emme
- Posts: 909
- Joined: Monday 27 June 2016 11:02
- Target OS: Raspberry Pi / ODroid
- Domoticz version: latest
- Location: Milano, Italy
- Contact:
Re: Incoming connection from unknown ip adress
did you forward your Domoticz IP to the utside world?
to protect yourself you can install fail2ban on your rbpi (http://www.fail2ban.org/wiki/index.php/Main_Page)
if you have a programmable firewall and you are familiar with iptables, you can reject incoming connection from those IP you are quite sure are useless
I have a DD-WRT router and I have dropped an entire subnet from UCLA, Shangai, Taipei and Mumbay
to protect yourself you can install fail2ban on your rbpi (http://www.fail2ban.org/wiki/index.php/Main_Page)
if you have a programmable firewall and you are familiar with iptables, you can reject incoming connection from those IP you are quite sure are useless
I have a DD-WRT router and I have dropped an entire subnet from UCLA, Shangai, Taipei and Mumbay
The most dangerous phrase in any language is:
"We always done this way"
"We always done this way"
-
- Posts: 11
- Joined: Saturday 30 January 2016 22:45
- Target OS: Raspberry Pi / ODroid
- Domoticz version: 3.4834
- Location: Netherlands
- Contact:
Re: Incoming connection from unknown ip adress
Thanks for the reply's.
Unfortunately no programmable firewall. However to drop networks, there are a lot, more than 20 different ip adresses (111/5/120/189/103 etc.etc.).
The only thing that worries me is of those vandals have put a backdoor in the os of the rpi. I don't know of that is possible with the active Domoticz application.
So, now busy with the creation of a vpn, to combine the rpi remote with a remote ftp server.
Unfortunately no programmable firewall. However to drop networks, there are a lot, more than 20 different ip adresses (111/5/120/189/103 etc.etc.).
The only thing that worries me is of those vandals have put a backdoor in the os of the rpi. I don't know of that is possible with the active Domoticz application.
So, now busy with the creation of a vpn, to combine the rpi remote with a remote ftp server.
-
- Posts: 11
- Joined: Saturday 30 January 2016 22:45
- Target OS: Raspberry Pi / ODroid
- Domoticz version: 3.4834
- Location: Netherlands
- Contact:
Re: Incoming connection from unknown ip adress
I was looking at the firewall of my internet provider, but never thougt about the firewall in the pi/raspbian. Thanks for the tip.
-
- Posts: 66
- Joined: Tuesday 19 April 2016 23:37
- Target OS: Raspberry Pi / ODroid
- Domoticz version:
- Contact:
Re: Incoming connection from unknown ip adress
I'm using nignix to open my domoticz to Internet. Nginx only ask password from Internet. I have no problems with this setup
Regards
Regards
Fronius plugin
https://github.com/ayasystems/froniusHttp
Solax plugin
https://github.com/ayasystems/SolaxHTTP
Openevse plugin
https://github.com/ayasystems/OpenEVSEPlugin
https://github.com/ayasystems/froniusHttp
Solax plugin
https://github.com/ayasystems/SolaxHTTP
Openevse plugin
https://github.com/ayasystems/OpenEVSEPlugin
Who is online
Users browsing this forum: No registered users and 1 guest