top | item 18342607

(no title)

stephengillie | 7 years ago

We need an internet of firewalls. I dislike tech legislation, but sometimes I think all networked devices should be required to have an internal firewall.

discuss

order

georgyo|7 years ago

Many of these devices have to listen for something. Mdns, http, printer, etc. Having a firewall does nothing when you have to open up the ports that are being exploited anyway.

lrem|7 years ago

Well, they don't need to listen to everyone that knocks. I'm sure we would be delighted when devices would only talk to clients with valid certificates from the vendor, right?

Edit: disclaimer: I work for Google, but my only contact with the home ecosystem is having a Chromecast.

snarfy|7 years ago

This reminds me of a product idea I had a while back - a sandboxed wifi router that plugs in to your existing router. When you setup your IoT devices, you point them to the sandbox. I figure this already exists, and nobody cares.

davefp|7 years ago

I'm somewhat surprised that home router manufacturers haven't started shipping models with a built-in IoT guest network that has its own VLAN.

Incidentally it's concerns such as those raised in the article that drove my decision to use zigbee or z-wave devices for my HA setup where possible.

hrktb|7 years ago

naive question: would it be realistic to filter who gets to talk to who, on wich protocols at the router level ?

I guess basic rules could be setup, but would there be a higher level way for that kind of orchestration

mavhc|7 years ago

A much better LAN firewall will be needed, can also mean you can easily get rid of 1 to many NAT with IPv6. It would have to be self learning for any hope of adoption by the mass market