rejetto forum

Someone in LAN spies on me

0 Members and 1 Guest are viewing this topic.

Offline CobraPL

  • Occasional poster
  • *
    • Posts: 1
    • View Profile
No, I am not paranoid/schizoid haha
I just witnessed that SOMEONE from my LAN (behing my router, but still from same provider) started downloading certain file from my server.

I know, I can user user/pass
But still, two things can be handy:
1. https
2. Link obfuscation. So instead of IP:PORT/aaa/Folder, there should be IP:PORT/some_weird_letters_and_digits_hash_maybe
disconnect.me uses something like that. For example, I searched "TESTEST" w/o "" and following link was visible: https://search.disconnect.me/searchTerms/serp?search=5d4fd9af-db13-4b40-a3cc-99484fb1739c

So, sniffing guy cannot see WHAT I share. Both file content and file names will be inaccesible for him.

Is this already implemented ? If not, how about adding such thing.


Offline bmartino1

  • Tireless poster
  • ****
    • Posts: 911
  • I'm only trying to help i mean no offense.
    • View Profile
...
lolz ok :p

1. https you need to use stunnel or other 3rd party program to use the traffic
Silent Plz is doing that iwth  rejeto for httops: http://www.rejetto.com/forum/hfs-~-http-file-server/for-testing-purpose-hfs-beta-279-including-ssl-tools/msg1060372/#msg1060372

2. editing the log and log what, i believe you can get that...

3. Ban the ip!... if its form the lan, ban them

Good luck
With the move to hfs 3.0 and github. I'm using Unraid and HFS 3 as a docker. Any File Mentioned is now removed from my google drive.


Offline rejetto

  • Administrator
  • Tireless poster
  • *****
    • Posts: 13523
    • View Profile
As suggested above, the easiest thing is to ban the single is or the whole LAW if you wish