Potential security risk (NTP port 123)

This thread has been locked for further replies. You can start a new thread to share your ideas or ask questions.

Potential security risk (NTP port 123)

This thread has been locked for further replies. You can start a new thread to share your ideas or ask questions.
Potential security risk (NTP port 123)
Potential security risk (NTP port 123)
2019-03-20 18:21:58
Model: Archer C1200  
Hardware Version: V2
Firmware Version: 2.0.2 Build 20180118 rel.38979 (EU)

Testing my routers firewall today and it seems whenever it's set to optain time automatically, port 123 is closed (a.k.a. actively responding to requests) instead of NOT responing to requests. I'm pretty sure it's not supposed to do that.

 

  0      
  0      
#1
Options
2 Reply
Re:Potential security risk (NTP port 123)
2019-03-26 10:16:51

Hi,

 

Port 123 are the service ports of NTP server, while as a client regarding to NTP server, we won't open them.

 

We did several experiments based on your feedback, there is no response by sending a UDP message to 123 and the Syn of TCP, so it should be safe at the moment.


Also please tell us what the scanning tools you used for this test are and whether it is convenient to provide them to us.

 

On our side, we need  evaluate the criteria for judging this scanning tool. 

 

Good day. 

  0  
  0  
#2
Options
Re:Re:Potential security risk (NTP port 123)
2019-03-29 20:58:18
ShieldsUP! by Steve Gibson. https://www.grc.com/x/ne.dll?bh0bkyd2
  0  
  0  
#3
Options