cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
Announcements

Welcome to the Cisco Small Business Community

Have a question? Click on a topic board below to get started in the community.
Get the latest news in this issue of the Cisco Small Business Monthly Newsletter

365
Views
0
Helpful
3
Replies
Highlighted
Beginner

RV180W - Max FirewallRules / .cfg file size

Hi Community !

One of the networks we manage is being targeted by chinese hackers/spammers (tons of emails, brute force on every service possible, ...).
That network is equiped with a RV180W which is sufficient for day to day operations.
We decided to implement firewall rules to systematically block every connection originating from chinese networks (lists are available on sites such as : https://www.ip2location.com/free/visitor-blocker)
The list contains 7154 IP ranges to block which would be a real pain to add using the web interface.

I then decided to see if it wasn't possible to edit a exported .cfg file to inject the rules directly in a modified file and restore that file which works when .cfg checksum is set to '0'.

So I wrote a little script that converts the chinese ip ranges to the format used in the .cfg file and injected this into the file and then, imported the file (12Mo ...). The router got stuck and needed a manual poweroff-poweron cylce to restart.

My question is : What is the firewall rules quantity limit and/or .cfg file size limit ?

Thanks in advance !!!

BTW, I will be happy to make the script publicly available when those 'problems' will be fixed.

3 REPLIES 3
Highlighted
Beginner

Re: RV180W - Max FirewallRules / .cfg file size

here's what is logged :
Tue Apr 9 09:02:13 2019(GMT+0100) [rv180w][Kernel][KERNEL] [ 4542.990000] Out of memory: kill process 6923 (cgi) score 2042 or a child
Tue Apr 9 09:02:14 2019(GMT+0100) [rv180w][Kernel][KERNEL] [ 4542.990000] Killed process 6923 (cgi)
Highlighted
Beginner

Re: RV180W - Max FirewallRules / .cfg file size

Removing from the list networks with ranges smaller than 2048 nodes suppressed the 'out of memory' problem.

 

I now have 2586 Firewall rules :)

But I can't add any, using the web gui, I get a 'Can't add configuration to this table. Maximum limit reached.' error, what is that limit, is there something that can be done ?

Highlighted
Beginner

Re: RV180W - Max FirewallRules / .cfg file size

I guess you know software support is passed for the RV180 and RV180W routers.  There is one more year for hardware support.