Restricting access to GenieACS (TR-069) – unexpected incoming device

Hi everyone,

I’m completely new to GenieACS. I’ve just deployed it on my server, and this morning I noticed that a device tried to connect to it:

  • Serial number: qNsTAEhUzv

  • Product class: DISCOVERYSERVICE

  • OUI: DISCOVERYSERVICE

  • Manufacturer: DISCOVERYSERVICE

The thing is, I haven’t yet configured my test firmware to point to my server via TR-069, so this really surprised me a bit. My server is publicly accessible on port 7547, so I assume that might be the reason.

Now I’m a bit confused about what to do next. How can I make sure that only the devices I actually want are able to connect to my GenieACS server?

Is there any good guide or best practices for securing and properly configuring GenieACS in this case?

I’d really appreciate any advice, as I’m a bit stuck and not sure how to proceed further.

Don’t do that :). Enable authentication.

1 Like

In addition to what akcoder recommended, you can also restrict access to only your public range of IPs at the OS level or on your firewall.

DR

1 Like