Community discussions

MikroTik App
 
Dave_W
just joined
Topic Author
Posts: 9
Joined: Sat Apr 08, 2006 9:36 pm
Location: Limerick, Ireland

How secure is RouterOS?

Thu Jan 18, 2007 12:17 pm

One of the node owners on our wan has noticed some oddities recently. While logged in on a teminal to a 532 he saw these commands appearing. It seems that someone was logged in with him and was trying something.

VnV4
VoV4
VpV4
VqV4

What I would like to know is if RouterOS has a root account, or has it been disabled? Anyone know?

Dave_W
 
User avatar
sergejs
MikroTik Support
MikroTik Support
Posts: 6697
Joined: Thu Mar 31, 2005 3:33 pm
Location: Riga, Latvia
Contact:

Thu Jan 18, 2007 3:56 pm

All RouterOS accounts are listed in 'user print', there are not any other hidden users.
If you did provide login/password to any person and using strong security password, it is very hard to get access to your router.
To set more secure protection use firewall to drop all packets, that are not from your authorized IP addresses.
 
Dave_W
just joined
Topic Author
Posts: 9
Joined: Sat Apr 08, 2006 9:36 pm
Location: Limerick, Ireland

Thu Jan 18, 2007 4:00 pm

Thanks Sergejs
 
User avatar
nickb
Member
Member
Posts: 406
Joined: Thu Jan 26, 2006 6:24 pm
Location: Southeast Kansas
Contact:

Sat Jan 20, 2007 4:39 am

In my opinion best practice is to go to ip/services and totally DISABLE all services except FTP and SSH, and then restrict those by IP address. If you have more than one subnet that needs to have access, then use rules in the ip/firewall to filter access.

Any router I've forgotten to do this on, within a few days, will have hundreds of thousands of ftp/ssh login attempts!

Also remember to use strong passwords!