Skip to main content

ONT Security procedure to restrict remote access and avoiding modem hack issues.


ONT Security procedure to restrict remote access and avoiding modem hack issues.



 MODEL : SY-GPON-1110-WDONT

It has been observed that those ONTs which are not properly configured for security settings can be remotely accessed and a bug is sent in ONTs so that these ONTs start uploading random dummy data choking the uplink of OLT and choking ISP backbone.
Now Syrotech Networks have provided a security patch restricting remote access of this ONT model. I will share patch and procedure in next blog. Till then you can restrict remote access by following below procedure.

Top View of ONT.


Backview of modem showing Model name
Login on web browser http://192.168.1.1 and press Enter
Default Username is admin and Password is stdONU101
Then go to security, port filter and uncheck all ticks from WAN column.
Then change the default password to some new password
Then move to Network, Internet     Delete TR069 connection
Finally reboot the modem through web browser and login if needed with new password. Also kindly change your WiFi SSID and Password.




Comments

  1. Is there any way to use Syrotech ONT As WiFI-Repeater to boost WiFi signal

    ReplyDelete
  2. This comment has been removed by the author.

    ReplyDelete
  3. SY-GPON-1110-WDONT has a new update, 1.0.35-210205

    ReplyDelete

Post a Comment

Popular posts from this blog

SYROTECH OLT initial configuration

Today we are going to configure some initial configurations  in Syrotech OLT and make it reachable to BSNL NIB. Connect the OLT to your PC's Ethernet port and put the OLT default IP 192.168.8.100 in Browser. You can write the Name / installed location of the OLT. you can also check the software version of the OLT and also uptime. For security reasons kindly change the default password for the OLT. Disable the telnet access for OLT as telnet is not safe protocol instead you can use SSH. Now create 119 VLAN in OLT. BSNL is using VLAN 119 as Management VLAN for TIP OLTs. Apply IP to VLAN 119. Add static route Now pass this VLAN to Uplink port to which you have attached BSNL Transmission system. You can check the connectivity by pinging the BSNL provided gateway. Finally save the configuration so that if OLT reboots due to power issue it comes up with same configuration as of before reboot.

Syrotech ONT upgrade procedure

Syrotech ONT upgrade procedure MODEL : SY-GPON-1110-WDONT It has been observed that those ONTs which are not properly configured for security settings can be remotely accessed and a bug is sent in ONTs so that these ONTs start uploading random dummy data choking the uplink of OLT and choking ISP backbone. Now Syrotech Networks have provided a security patch restricting remote access of this ONT model. Below is the path for upgradation of Syrotech ONT and procedure to upgrade. Download the latest security patch firmware from below link : https://www.dropbox.com/s/nwx2onckro5txeg/Syrotech_UPGRADE_Syrotech_BSNL_2_1.0.24-200228.tar?dl=0 Power ON the ONT on UPS supply if possible. Login the ONT using address http://192.168.1.1 Username admin Password  stdONU101                        or changed password if already changed. Then move to Management then Device Management then upgrade and then choose the downloaded file and click start.