Connecting to n-devs-smb.tplinkcloud.com AND n-deventry-smb.tplinkcloud.com - UNACCEPTABLE
My OPNSense FW is blocking connection back to
n-devs-smb.tplinkcloud.com
n-deventry-smb.tplinkcloud.com
This is unacceptable to have this calling home and it looks like using smb across the internet, clearly unsafe and since I don not use cloud based is a breach in GDPR since I have not authorised said software from connecting to these domains. Also looks like developer entry points!!
Please advise that this will be taken out on the next firmware upgrade or of required, then only those whom choose to use cloud based solution\updates and so forth.
- Copy Link
- Subscribe
- Bookmark
- Report Inappropriate Content
@mehmeh Yeah GDPR was the wrong word
- Copy Link
- Report Inappropriate Content
Can you see if this behaviour can be disabled for those of us who do not use cloud features.
This is filling up my firewall logs and has become the top offender, something it shouldn't be and is worse than a insecure home cam phoning home to mothership China!
Thank you
- Copy Link
- Report Inappropriate Content
Dear @Pugs,
Pugs wrote
Can you see if this behaviour can be disabled for those of us who do not use cloud features.
This is filling up my firewall logs and has become the top offender, something it shouldn't be and is worse than a insecure home cam phoning home to mothership China!
Upon this thread, I know that you have the following Omada devices.
OC200 v1 Firmware Version: 1.9.3 Build 20210914 Rel. 39903
EAP245 V3 Firmware Version: 5.0.4 Build 20211021 Rel. 57494
Except for the devices above, do you have any other Omada devices in the network?
If yes, may I know the model number and firmware version?
- Copy Link
- Report Inappropriate Content
why would it matter which devices are used ? are you look at a tailormade solution to only remove it in the devices that are used by pugs ?
or omada devices in general ?
I have switches , router , etc....
- Copy Link
- Report Inappropriate Content
Your "top block domains" look like pi-hole ad blocks? If so, I'd like to say I am frustrated about the ad-block update rules, I need to manually add lots of sites to my white list. I browser some Quora alike sites and its rules blocking them. When I finished adding rule update URLs, I know I am being lazy and did not scrutinize every URL and rule, but some sites are friendly fired. Some rules are simply blocking unknown sites or some URLs that involve certain words. Pi-hole's amazing, I love it. But, gotta take the bad with the good. No rule is perfect and kills all the ads.
- Copy Link
- Report Inappropriate Content
@Fae Hi, yes I have a
EAP225(EU) V3.0 on V 5.0.7
EAP245(EU) V3.0 on V 5.0.4
OC200 V1 ON V4.4.6, FW 1.9.3
- Copy Link
- Report Inappropriate Content
@Tedd404 Nope its Adguard running on OPNSense.
Nothing to do with adverts, its being blocked (and conveniently seen via Adguard for the purpose of this exercise) because it shouldn't be making the connection since I'm not signed up to anything cloud based and therefore it shouldn't be 'phoning home'. If you use cloud then yes, your choice and you take your chances with your network, likewise if you don't use the cloud then it should not connect to those sites without warrant.
- Copy Link
- Report Inappropriate Content
- Copy Link
- Report Inappropriate Content
Dear @Pugs,
Pugs wrote
Any update on this please?
Sorry for the delayed response as it takes some time to confirm the information.
Regarding the concern that Omada devices have the behavior of connecting to the tplinkcloud esp when you don't use TP-Link cloud services, here is what happened:
In order to cooperate with the Omada Cloud-Based Controller to achieve Zero-Touch Provisioning, Omada devices will connect to the tplinkcloud by default. Meanwhile, to know their activation status for future overall maintenance, Omada devices will periodically connect to the tplinkcloud. But TP-Link can guarantee that we do not upload any user data during this process.
We are deeply sorry for the inconvenience caused by this behavior. Your feedback has been reported to the relevant departments for further evaluation. Now it's confirmed that TP-Link will add an option to disable the behavior in the next firmware that adapts to SDN Controller v5.2, so as to satisfy your demand for completely disconnecting devices from the cloud.
Kind note: this post will be actively updated once there is a new Controller firmware available, welcome to subscribe~
Thanks so much for your great cooperation and patience. Hope you could enjoy the Internet with TP-Link products!
- Copy Link
- Report Inappropriate Content
- Copy Link
- Report Inappropriate Content
Information
Helpful: 4
Views: 8531
Replies: 50