And when I was a kid, I never thought math was important ;0more importantly anyone who can hack a modern update vpn would have no issue with a dahua nvr
And when I was a kid, I never thought math was important ;0more importantly anyone who can hack a modern update vpn would have no issue with a dahua nvr
I have a VPN set up on my network and I have all cameras blocked from accessing the Internet via the router.
Do you think I need to block my NVR from accessing the Internet as well via the router?
In the router. The firewall is your friend.You do this in the router, or set a false gateway address in the camera?
Sent from my iPhone using Tapatalk
I'm still battling my firewall to correctly work (my lack of iptables knowledge is not helping matters) but if I manage to get it working I can post up a script.In the router. The firewall is your friend.
Sorry to resurrect this thread.. but i just wanted to add something. VLAN's might not be easy for everyone, but the truth is that VLAN's are the most ideal way to be secure with any IP Camera and you can open 100 ports on that vlan, it does not matter because they can't do shit to your network. Fact is, its safer than a VPN solution.
No you are not because they have access to your cams, not only can they see and hear but also delete footage and disable cameras...... best solution is a vlan and VPN together...Sorry to resurrect this thread.. but i just wanted to add something. VLAN's might not be easy for everyone, but the truth is that VLAN's are the most ideal way to be secure with any IP Camera and you can open 100 ports on that vlan, it does not matter because they can't do shit to your network. Fact is, its safer than a VPN solution.
ok yes thats a better solution that only having a VLAN. Thanks for pointing that out. However convenience is a problem with VPN if you already use a general VPN on your phone, you have to disconnect and connect to home VPN everytime you want to check cameras which sounds like a pain in the ass. But sometimes you need to sacrifice time and convenience for security.No you are not because they have access to your cams, not only can they see and hear but also delete footage and disable cameras...... best solution is a vlan and VPN together...
Yes it is possible.Is it possible to acces your vlan network through a VPN connection? Or is the vlan always seperated from the internet?
Use your managed switch to create the two VLAN's as you said. From there, you keep all your cameras and NVR on VLAN2, then setup a VPN server on that same VLAN2 and forward the VPN port only. This will separate your traffic from your normal network (VLAN1).I assume i need a managed switch and make 2 vlan's. One for my home network and internet acces. And the second for my ip cams and nvr. Right? I have a router from my internet service provider. I will disable the Wi-Fi on that. Connect a Asus rt-86u. Lan port to wan on the Asus. The Asus gets ip from isp router dhcp. Have to enable dmz on the isp router. So all traffic goes through the Asus router.
Will setup vpn server on the Asus. Behind the Asus i need a managed switch. Right?
When i am connected with the vpn, iam like at home i understand. Its inside traffic. If i make a static root so vlan1 and vlan2 can talk. Vlan 2 i dont setup the internet gateway. But then i can still acces the vlan2 through vpn with my phone? Do i understand it Right? Or is there a better solution? I have a dahua poe switch(not managed) and the Asus rt86u. Dont have the managed switch. Do i need it for network safety???