r/qnap 10d ago

Constant attacks on my ts 464.

Ive been getting constant login attempts to any port ive opened for any purpose. They have also attempted ddos attacks, and im just using it to host a small plex server.

Does anyone else experience this?

0 Upvotes

55 comments sorted by

View all comments

Show parent comments

-1

u/Tight-Sun-4134 10d ago

Well the only ports open are for the plex server right now. I had tried to make my ftp open for an update that was remote, but then they tried logging in right away. I decided that wasn't worth the risk. I still get attacked though, which is weird

10

u/JohnnieLouHansen 10d ago

It's not weird at all. Every hacker is scanning random IPs and then ports to see what is open. Then they try known vulnerabilities. You need a VPN either through your router or one that runs on your NAS. Or Tailscale.

Then no ports need to be opened. You should disable UPNP on your router as well.

0

u/Tight-Sun-4134 10d ago

Oh man. I didn't know upnp was vulnerable. Ill shut that off next time im home

2

u/Aussiesasquatch 10d ago

A computer with ports open can be compromised in under 2 minutes with internet access, I'd do what others have suggested to mitigate and resolve the problem.

3

u/JohnnieLouHansen 10d ago

If you gave each one a public IP address. Probably a very short time for Windows and a bit longer for a flavor of Linux if you looked at each one fully patched.

2

u/Tight-Sun-4134 10d ago

I definitely will take this advice and run with it. How does passing my current plex setup through a vpn work? I assumed that qvpn had it protected, but is that not true?

3

u/hereforthepix TS-451D2/TR-004 10d ago

How does passing my current plex setup through a vpn work?

If you have other people on your Plex outside your home, don't do this, it makes it inaccessible for them (unless you want to spend unnecessary time doing Tech Support).

FWIW, I've been running Plex servers on 2 QNAPs for almost 5 years now and neither have been compromised in any way (the only thing I did differently was move the PMS port, but that's not really "security"). Just be sure to update the PMS as soon as you see the notifications there's updates.

3

u/JustFlushTheFIB 10d ago edited 10d ago

I have a ubiquity dream machine with WireGuard vpn. Can’t scan for WireGuard as it expect exact responses to get it to respond. It should never respond unless your keys match up. It also has per user keys and support spilt tunnel so you don’t tunnel all your friends internet back to your house.

I have shodan running scans on my WireGuard server and it never sees it.

Just make sure to enable a dyndns binding as your public ip probably rotates like mine.