{"id":835,"date":"2016-04-30T01:15:28","date_gmt":"2016-04-29T16:15:28","guid":{"rendered":"http:\/\/loreatec.jp\/e\/blog\/?p=835"},"modified":"2016-04-30T01:17:23","modified_gmt":"2016-04-29T16:17:23","slug":"ubiquiti-router-disable-wan-access-to-gui","status":"publish","type":"post","link":"https:\/\/loreatec.jp\/e\/blog\/?p=835","title":{"rendered":"Ubiquiti router disable WAN access to GUI"},"content":{"rendered":"<p>If you do not plan to change settings on your ubiquiti router remotely it is a recommended security measure to disable SSH and graphical interface (GUI) access from the Internet. By default anyone that knows your public IP can try to log-in using the GUI or SSH.<\/p>\n<p>The commands to disable the above as as follows:<\/p>\n<p>configure<br \/>\nset service gui listen-address 192.168.0.1<br \/>\nset service ssh listen-address 192.168.0.1<br \/>\ncommit<br \/>\nsave<br \/>\nexit<\/p>\n<p>(192.168.0.1 is the default gateway, if you LAN gateway is not 192.168.0.1, you should change the IP to match your LAN gateway IP).<\/p>\n<p>It is also possible to disable SSH completely from the GUI. Click on system tab and un-check ssh access. This will block SSH completely wont work even from your LAN, , only the GUI will remain accessible.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>If you do not plan to change settings on your ubiquiti router remotely it is a recommended security measure to disable SSH and graphical interface (GUI) access from the Internet. By default anyone that knows your public IP can try to log-in using the GUI or SSH. The commands to disable the above as as [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_monsterinsights_skip_tracking":false,"_monsterinsights_sitenote_active":false,"_monsterinsights_sitenote_note":"","_monsterinsights_sitenote_category":0,"_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[183],"tags":[],"class_list":["post-835","post","type-post","status-publish","format-standard","hentry","category-cisco-networking"],"jetpack_featured_media_url":"","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/loreatec.jp\/e\/blog\/index.php?rest_route=\/wp\/v2\/posts\/835","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/loreatec.jp\/e\/blog\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/loreatec.jp\/e\/blog\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/loreatec.jp\/e\/blog\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/loreatec.jp\/e\/blog\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=835"}],"version-history":[{"count":3,"href":"https:\/\/loreatec.jp\/e\/blog\/index.php?rest_route=\/wp\/v2\/posts\/835\/revisions"}],"predecessor-version":[{"id":838,"href":"https:\/\/loreatec.jp\/e\/blog\/index.php?rest_route=\/wp\/v2\/posts\/835\/revisions\/838"}],"wp:attachment":[{"href":"https:\/\/loreatec.jp\/e\/blog\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=835"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/loreatec.jp\/e\/blog\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=835"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/loreatec.jp\/e\/blog\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=835"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}