I have collected a few paths that were repeatedly attempted for exploitation this week.
I am using an unusual port, and this is subsequent to the stunnel. Tons of non-HTTP incoming connections have been filtered out.
These were gathered from my home router.
I'm guessing the robots.txt is from...
Yes, I have been using high-numbered ports, specifically those above 5000 and forwarding to local 3389, but attempts to connect persisted. I noticed the same IP address from various locations around the world repeatedly trying to establish a connection.
I'm currently using RDP and providing a few public services for my family. Since RDP doesn't support public-private key authentication, my open ports have been subjected to extensive scanning. It seems like there's always someone on the internet trying to exploit my ports.
To combat this, I've...
I'm glad that you have succeeded.😁
Just like what I have mentioned in the previous commen, maybe the bogus IP is from your up stream, the modem. That's why I wanted to know how your WAN was configured.🤔
I see, thank you for the explanation. It seems you are using wireless link.
Then It should be a moderm hand over the up-stream DHCP, I'm curious about what is the modern's local ip address?
May I know your upstream network configuration? Is it PPPoE or LAN?
That's strange; I've had ac68ux3...
I truly appreciate your help.
If you're interested, there are a few additional scripts available for:
Matrix bot for online notifications
Cloudflare DDNS
PXE server for RPI3/4
socat poor man's http server for WOL
Did any technical difficulties occur with the ISP?
Is the internet...
Congratulations! Good to hear it.
Sorry for the typo, done. Also I have updated the Github link.
Actually, I had done this before you mentioned it. At the bottom of the first post, you can find update logs.
Thank you. I indeed need your help, please.
I have been there. I had a lot of...
Sorry, I forgot to mention that the firstrun_flag was set in /jffs/scripts/init-start. I have updated GitHub.
Let's Conduct Some Diagnostics
1. Ping Test: Ping Computer 1 from Computer 2.
2. Webserver Check: If you are running webservers (such as Emby or Jellyfin) on Computer 1, try to...
Exactly!
I don't use Managed Routes because it broadcasts to all nodes. I want to hide some subnets from being exported to irrelevant nodes and prevent a death loop.
It's my style—definitely a piece from one of my scripts. LOL.
POSTROUTING is used after the routing decision has been made...
For example, suppose you have two routers: the first is the main router with direct access to the internet, and the second is connected to the main router's LAN port and operates on its own IP subnet. It is recommended to install ZT on the main router only. Any device in the LAN with ZT...
Would you mind quote the issues you had? I may have a clue.
The scripts works on later and latest version of ZeroTier also. For ac68u there is no better version rather than 1.4.6.
But to ac86u and ax86u, the latest version of ZeroTier is recommended.
Here is the updated version of scripts...
10.x.x.x/24 is my zerotier network address, for example my router has the ip addresses of 192.168.9.1(eth0) and 10.9.8.4(zt0).
All ip routes are set by the commands. Such as `ip route add 192.168.7.0/24 via 10.9.8.3`
And I made them into scripts and they run either by wan-event or by crontab...