- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
07-07-2022 10:09 AM
Hello!
I have a weird question.. I just can not figure it out. I know by default there are no access rules, therefore blocking, anything incoming. I am running an FPR1010.
I installed an Ecobee Thermostat 2 weeks ago and remotely, I am able to change my internal temperature. How is this possible? I have added no ACL or even know what port it uses. I just open the app and I can change it, remotely.
Solved! Go to Solution.
- Labels:
-
Access Control Server (ACS)
-
Other NAC
Accepted Solutions
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
07-07-2022 10:24 AM
The control and management channel for the ecobee thermostat is initiated from the inside to the outside (cloud). This bypasses the need for a rule on the FPR that allows inbound traffic from the outside because the connection is already established.
This is a common operation for cloud managed devices and why their security is important.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
07-07-2022 10:24 AM
The control and management channel for the ecobee thermostat is initiated from the inside to the outside (cloud). This bypasses the need for a rule on the FPR that allows inbound traffic from the outside because the connection is already established.
This is a common operation for cloud managed devices and why their security is important.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
07-07-2022 10:31 AM
Amazing. I have never even thought about it that way.. But that makes total sense. Of course it brings up a whole new idea of security as you mention.
