U

Visitor

 • 

3 Messages

Saturday, December 4th, 2021 10:24 PM

Closed

Help with ARRIS TG1682G | Config. - A PING REPLY (ICMP Echo) WAS RECEIVED

Dear Group, every so often I check my computer with the Shields Up (www.grc.com), and it always showed "True Stealth". Recently my firmware was upgraded and I tried it just now with the upgraded ARRIS TG1682G and it says "A PING REPLY (ICMP Echo) WAS RECEIVED"

On the website it states:

"Ping Reply: RECEIVED (FAILED) — Your system REPLIED to our Ping (ICMP Echo) requests, making it visible on the Internet. Most personal firewalls can be configured to block, drop, and ignore such ping requests in order to better hide systems from hackers. This is highly recommended since "Ping" is among the oldest and most common methods used to locate systems prior to further exploitation."

This test targets the Router/Modem's firewall and not my personal firewall on my computer".

 
I would like to know how does one go about remedying this in admin.- Router/Modem configurations. Any advise in changing settings would be greatly appreciated.

Thank you kindly.

Problem Solver

 • 

954 Messages

3 years ago

Hello and thanks for reaching out @user_b06e23. I am very sorry, I do not quite understand what you are asking for. Do you mind explaining in more detail what you are trying to do and what functions you are trying to access?

Gold Problem Solver

 • 

26.3K Messages

3 years ago

@XfinityAaron wrote: "... Do you mind explaining in more detail what you are trying to do ..."

The poster's TG1682G XB3 gateway is responding to ping requests from the Internet. The poster wants to know if there is a way to turn these replies off, so that the device does not respond to ping requests from the Internet.

Standalone routers usually have an option like a check box labeled "Respond to Ping on Internet Port" to turn this on and off.

(edited)

Visitor

 • 

3 Messages

3 years ago

Hello.

Thank you kindly BruceW for clarifying the issue.  XfinityAaron, would you please assist me? I would like to know how to configure to block, drop, and ignore such ping requests as mentioned in my original post on the ARRIS TG1682G in Admin. - Router/Modem configurations settings if that is possible to do. 

Do you think it is a security risk as described at "gibson research grc" after running the ShieldsUP test/scan? 

I contacted ARRIS Tech. Support but I was told that they do not offer support for this specific firmware.  I was thinking of contacting my third party security suite software support which comes with firewall but wanted to check with Xfinity Technical Support first,  if it can be done in the firmware instead of attempting to resolve it in my installed firewall's settings.

Thank you for your time and consideration in resolving this issue if it indeed is a security risk.

I would appreciate any advise or help.

Problem Solver

 • 

492 Messages

Thank you @user_b06e23 for sharing that information with us. We are happy to help to make sure things get resolved. If you don't mind, can you log into the modem (10.0.0.1), and check to see if your firewall setting is set to "Typical" Security? If it's not go ahead and apply it and let us know if it helps resolve the problem that you're experiencing on your end! Here is a link on how to login into the Admin tool if needed: https://www.xfinity.com/support/articles/wifi-change-admin-tool

I no longer work for Comcast.

Visitor

 • 

3 Messages

Thank you XfinityJimmy for your post and your kind interest in helping me.  I did not get an email of a new post, I just found your response today. Settings were set by default as "Minimal" Security. I changed both  the IPv4 - to "Typical" Security (Medium), as well as the IPv6 - to "Typical" Security (Medium).  I re-run the "ShieldsUP!! test/scan, and this time, as you may compare results from my first post, the results are different and you resolved my problem! I do indeed appreciate your help.

Current results are below.

With much Respect,

user_b06e23


Now on the website it states:


"Your system has achieved a perfect "TruStealth" rating. Not a single packet — solicited or otherwise — was received from your system as a result of our security probing tests. Your system ignored and refused to reply to repeated Pings (ICMP Echo Requests). From the standpoint of the passing probes of any hacker, this machine does not exist on the Internet. Some questionable personal security systems expose their users by attempting to "counter-probe the prober", thus revealing themselves. But your system wisely remained silent in every way. Very nice."




Official Employee

 • 

1.4K Messages

Glad we could help. If you need anything in the future please feel free to reach back out. The Digital Care Team is here to help 24/7. Please stay safe and enjoy the rest of your evening!

I am an Official Xfinity Employee.
Official Employees are from multiple teams within Xfinity: CARE, Product, Leadership.
We ask that you post publicly so people with similar questions may benefit from the conversation.
Was your question answered? Please, mark a reply as the Accepted Answer.tick
forum icon

New to the Community?

Start Here