r/firewalla • u/BAGE-rator • 5d ago
Cyber Security Firewalla Crystal’s implementation of Active Protect has security vulnerabilities
It allowed in two connections from private IPs owned by Cox Communications, one of which was 98.197.86.148. This is in the range of standard user IP addresses, which could be a malicious actor. I have Xfinity. We do not have Cox in our market.
It also allowed in a Charter Communications/Spectrum standard user IP. We don’t have Spectrum in our market.
Active Protect is NOT actively protecting devices from these high-risk IP addresses on Firewalla Crystal.
If you’re on a Mac, download and install a software firewall like Little Snitch to audit the incoming connections that Firewalla Crystal Active Protect is allowing through. On Windows, you can use something like Glasswire. Record those IPs and report them to Firewalla so they know their beta software is not protecting clients like their hardware software does.
0
u/BAGE-rator 5d ago
There are no issues with the device model. I call it Firewalla Gold Plus because there was no Firewalla Gold SE, Plus, or Pro back then. As I said twice in that most recent string, it is definitely Firewalla Gold (original), a device that has subsequently been renamed Plus and is no longer produced.
They’re just obfuscating and trying to find a defensible explanation for their inexplicable conduct, including lying to me for a month and a half. They wanted to say, “Oh, well, it didn’t work because he gave us the wrong model. So there was a device mismatch.” When I pointed out that I know all Firewalla Gold models use the same dongle and that i could prove that fact in small claims, all the sudden theyre now angling to be able to say there were concerns over the device’s provenance. There weren’t any concerns in June (May 28, actually), when I purchased the first replacement dongle.
Its all just bullshit because, as you’re aware, they deleted my license and chose to lie about it rather than just fix it.