ROS 3.16
RB230
Current Routerboard Firmware 1.3.8
The Only configuration is nat, Public IP and a gateway and Queues. The router is a test machine for a inhouse bandwidth management system using the ROS API.
Problem: The router goes under a SSH attack and we experience a symptom where we cannot get into the router anymore using normal username and passwords, SHH and Winbox are both affected. At this point, the router accepts admin and no password. Issuing a reboot from ssh/winbox locks the router up and it must be manually power cycled. At this point everything returns to 'normal'. I do not have a console output yet of the reboot lockup at this point.
I have since put on firewall rules for SSH to see if it happens again, but I"m concerned about a huge security flaw in ROS concerning SSH in that our experience with this problem leaves a router open. I have few other routerboards I would like to specifically test this issue with to provide Mikrotik with more ammo, but if they haven't already seen the issue, I've had it happen now four times on me. I'll send a supout once i get the chance but it has been interfering with the development of the project.