this post was submitted on 16 Nov 2024
159 points (98.2% liked)

Technology

60004 readers
2528 users here now

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related content.
  3. Be excellent to each another!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, to ask if your bot can be added please contact us.
  9. Check for duplicates before posting, duplicates may be removed

Approved Bots


founded 2 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
[–] thejml@lemm.ee 86 points 1 month ago (5 children)

with the US-based security vendor on November 11 urging customers to pull their management interfaces off the public internet or restrict them to known IP addresses.

Why would you EVER put management interfaces on the public internet? What terrible decisions led them down that path? VPN is so quick and easy at a minimum.

[–] qjkxbmwvz@startrek.website 27 points 1 month ago* (last edited 1 month ago)

The network gear I manage is only accessible via VPN, or from a trusted internal network...

...and by the gear I manage, I mean my home network (a router and a few managed switches and access points). If a doofus like me can set it up for my home, I'd think that actual companies would be able to figure it out, too.

[–] Evotech@lemmy.world 9 points 1 month ago (1 children)

I know right, 99% of these caves are against management interfaces too

[–] AmidFuror@fedia.io 9 points 1 month ago (1 children)
[–] corsicanguppy@lemmy.ca 4 points 1 month ago

Saw the writing on the wall, there.

[–] catloaf@lemm.ee 9 points 1 month ago

Management interfaces shouldn't even be accessible from the general LAN.

[–] cyberpunk007@lemmy.ca 2 points 1 month ago

Once I read this I just stopped lol. You almost deserve to be explored if you do this, this is like security 101.

[–] jdeath@lemm.ee 1 points 1 month ago