Not allowed to management Deco M9 plus remotely

This thread has been locked for further replies. You can start a new thread to share your ideas or ask questions.
12

Not allowed to management Deco M9 plus remotely

This thread has been locked for further replies. You can start a new thread to share your ideas or ask questions.
12 Reply
Re:Not allowed to management Deco M9 plus remotely
2020-05-08 08:55:23

@6b6561 Did you have a look at what (outbound) traffic the Decos were using? I.e., is there a reason you mention 443 explicitely?

  0  
  0  
#12
Options
Re:Not allowed to management Deco M9 plus remotely
2020-05-08 11:28:45

@Cellloh I didn't dig that deep into it, but at least DNS, NTP and HTTPS outbound. DNS is used to verify "internet connectivity" from the Decos.

 

The Deco remote management requires that the Deco is able to establish an outound connection on port 443 to TP-Links servers. I have blocked this connectivity as I'm not that keen on having a connection that I have no control over open from TP-Link, as this is a possible "backdoor". It's still possible to manage the Decos from a device on my local LAN.

 

 

  0  
  0  
#13
Options