d0m
Occasional Visitor
Hello everyone,
I am running a Asus AC66U with latest Merlin (374.41) at home. Factory reset after latest firmware update.
- I have OpenVPN client configured, so that my internet traffic is routed over VPN (I am in China...
)
- I have "Allow SSH Access from WAN" and "Enable Web Access from WAN" DISABLED. This works, and both is not accessible from outside if I try (and/or portscan) my normal (not the OpenVPN) IP address from outside.
However I started to see some (dropbear) log entries, indicating that someone was probing ssh from outside! Obviously I was surprised to see that my router seems to get these requests at all, because ssh should not be accessible over WAN. I did some scanning and saw that both, SSH and Webinterface are accessible over the Open VPN IP from WAN side! Is this the intended behaviour? How can I block this?
Thanks a lot in advance for any recommendation and help!
Dom
I am running a Asus AC66U with latest Merlin (374.41) at home. Factory reset after latest firmware update.
- I have OpenVPN client configured, so that my internet traffic is routed over VPN (I am in China...

- I have "Allow SSH Access from WAN" and "Enable Web Access from WAN" DISABLED. This works, and both is not accessible from outside if I try (and/or portscan) my normal (not the OpenVPN) IP address from outside.
However I started to see some (dropbear) log entries, indicating that someone was probing ssh from outside! Obviously I was surprised to see that my router seems to get these requests at all, because ssh should not be accessible over WAN. I did some scanning and saw that both, SSH and Webinterface are accessible over the Open VPN IP from WAN side! Is this the intended behaviour? How can I block this?
Thanks a lot in advance for any recommendation and help!
Dom