Navigation » MPC Club Community Board > Archive > MPC Archive > Archive NAS Storage » Security Vulnerabilities in ALL Synology Products

Notices

» Slysoft Recommended!
1 CLick BD and DVD backups
Download AnyDVD HD!
For Blu-Ray and DVD!
» Log in
User Name:

Password:

Not a member yet?
Register Now!
» Stats
Members: 85,435
Threads: 29,403
Posts: 248,067
Welcome to our newest member, -Cherry-
» MPC Club Advertisers and Sponsors
Reply
 
Thread Tools
Old 05-04-08, 16:26   #1
Belial
Premium Potential
TIP: Upgrade to Premium
Active Member
 
Join Date: Jan 2004
Posts: 26
Contribution: 0.01%
Thanks: 0
Thanked 0 Times in 0 Posts
Downloads: 0
Uploads: 0
Default Security Vulnerabilities in ALL Synology Products

To anyone who owns a Synology product (or is thinking of buying one), and if you care about the security of your network, your computer and your data, I strongly suggest you read this report:

http://isisblogs.poly.edu/2008/04/04...logy-products/

I hope Hi-Jack also takes these issues into consideration when reviewing Synology products.

ps. I am in no way affiliated with either Synology or the person who wrote the report. I just followed his reports on the Synology forums and thought some of you would be interested.
Belial is offline   Reply With Quote
Advertising
Advertising temporarily disabled
Old 07-04-08, 21:39   #2
Hi-Jack

Think Tank
 
Hi-Jack's Avatar
 
Join Date: Nov 2003
Location: Belgium
Posts: 23,322
Contribution: 9.39%
Blog Entries: 12
Thanks: 22
Thanked 3,435 Times in 601 Posts
Downloads: 0
Uploads: 0
Default

5) We are currently working on a release for May, where most of the security concerns raise by dguido should be addressed.
6) All development is subject change without notice.
7) After the security updates in May, the Synology firmware should meet the needs of both camps.

We catched that thread and let it play our for now...
We will be in touch with dguido after the release and if any security holes are
further detected, we will be in touch with Synology about them. I agree however
with some comments made that indeed there are security issues but none of
hte level that it would compromise the whole system if properly defended and
inaccessible towards the Internet...

We not underestimate the issues but they not make part of the review. (Goes over my head). If we feel it's appropriate, we will add some weight into the balans for Synology to fix these beyond any doubt...

Data must not only be safe by using RAID but also defended against abuse
by not making things to easy leaving security wholes...!! Some requests made by some people however are plain ridiculous. If you want a NAS as a fort, you should go in a total different price range but not expect a 200-500$ NAS servers to be as secure as a 5.000$ device.

dguido is right about some issues and Synology accepted to address these.
That others list up to 30 settings to be added for configuring security would more render the servers useles for home use than it would benefit anyone... Some just purchased the wrong device...

My 2 cents...
Haven't read all threads but we know Synology is occupied with the issues...
(and these issues exist on other NAS servers as well)

We are following the progress...

Enjoy
__________________
Regards
Hi-Jack
___________________________________________
MyMovies for NMJ: Starts here!
Slysoft: 1 Click Backup for BD and DVD
MPC's Recommended Stores
Hi-Jack is offline   Reply With Quote
Old 17-07-08, 00:58   #3
crashnburn
Premium Potential
TIP: Upgrade to Premium
Active Member
 
Join Date: Jun 2008
Posts: 36
Contribution: 0.01%
Thanks: 0
Thanked 0 Times in 0 Posts
Downloads: 0
Uploads: 0
Default

Did this get resolved?
crashnburn is offline   Reply With Quote
Old 12-08-08, 00:01   #4
Belial
Premium Potential
TIP: Upgrade to Premium
Active Member
 
Join Date: Jan 2004
Posts: 26
Contribution: 0.01%
Thanks: 0
Thanked 0 Times in 0 Posts
Downloads: 0
Uploads: 0
Default

chrashnburn, I think it depends on what you mean by "resolved". This page sets out the path for fixing the security issues:

http://www.synology.com/enu/forum/vi...p?f=115&t=7803
Belial is offline   Reply With Quote
Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Synology® Releases DSM 2.1 Firmware Update Amended Security frode3 Synology NAS servers 0 08-04-09 05:06
Synology opens Telnet on their products!! Hi-Jack Archive NAS Storage 0 02-10-07 09:41
DVD with CSS Security sweaty23 Archive PVR and DVR 2 16-08-06 09:23
Security on DP-588 Ozle Archive PVR and DVR 2 05-09-05 11:54
DVD Security? jacksprat General Archived Topics 2 27-03-05 08:16

» MPC top List...

TOP 5 Regular media players

  • Popcorn Hour C-300 (81%)
  • Mede8er Med500x2 (80%)
  • Dune SMART (D1) (65%)
  • HDI Dune Base 3.0 (52%)
  • DViCo TViX X-Roid (00%)

TOP 5 Hybrid media players

  • HDI Dune BD Prime 3.0 (75%)
  • HDI Dune HD SMART B1 (74%)
  • PoPCorn Hour C-200 (68%)
  • HDI Dune MAX (54%)

We do not recommend currently...

  • Xtreamer products
  • Hantech products
  • MViX products
  • DviCo products
  • HDX products
Powered by vBadvanced CMPS v3.2.1 - twisted by vbTwist and Hi-Jack (MPC Club)