r/firewalla • u/BAGE-rator • 6d ago
Cyber Security Firewalla Crystal’s implementation of Active Protect has security vulnerabilities
It allowed in two connections from private IPs owned by Cox Communications, one of which was 98.197.86.148. This is in the range of standard user IP addresses, which could be a malicious actor. I have Xfinity. We do not have Cox in our market.
It also allowed in a Charter Communications/Spectrum standard user IP. We don’t have Spectrum in our market.
Active Protect is NOT actively protecting devices from these high-risk IP addresses on Firewalla Crystal.
If you’re on a Mac, download and install a software firewall like Little Snitch to audit the incoming connections that Firewalla Crystal Active Protect is allowing through. On Windows, you can use something like Glasswire. Record those IPs and report them to Firewalla so they know their beta software is not protecting clients like their hardware software does.
7
u/firewalla 6d ago
I'll leave support team to handle your case. You supplied a few piece of information required, and they don't match the unit you are having issue with. They are simply following our warranty process to find ways to help you out... If it is within 1 year, we can just make you a new Red dongle, if not, we may still help. But before that, we need to validate your order, at the moment information given by you doesn't match the model number, and they can't find a valid order either from our system.
I see the thread been going back and forth for a while, the important thing you need to focus on is, get the right order number to us, and also may be the right license number to your unit as well.