rabblerouser <(E-Mail Removed)> hath wroth:
>Thanks for the helpful reply, Jeff.
>
>The reason why I want to disable logging is that I'm doing sensitive
>work at the moment, and the last thing I want right now is someone
>tracking down the websites I'm visiting intentionally or
>unintentionally. As the router is in use by 5-6 other people I cannot
>really deny access to it, tho noone would mind if I disabled the
>logging feature.
Note: I hate the word "access" because it's so vague and ambiguous.
Your 5-6 users can "access" or use the router all they want to get to
the internet or wherever. However, unless they have the router admin
password, they cannot "access" the web based configuration pages and
the log files within the router. Of course, that assumes that you
haven't granted "access" to these users to the router configs.
However, if these users can "access" the router configuration pages,
then they certainly can "access" the log files.
As I recall, the various Netgear routers have a "clear logs" button.
You could write a script in your favorite scripting language, to
regularly login to the router, go to the log page, hit the "clear
logs" button, logout, and exit. This may cause some contention
problems with other users that may simultaneously "access" the router
configs. Only one web connection at a time. Otherwise, just cycle
the power erratically to flush the logs.
You can also poison the log file by filling it with useless entries.
Hitting a few thousand random web pages will surely fush the FIFO
buffer and drive any snoopers nuts.
Also, I vaguely recall that some manufacturers have an oddity in the
logging. I don't know if Netgear qualifies. If you setup a syslog
server on the log page, the local logging window shows blank. It
becomes an either/or situation. Either local or remote logging, not
both. If you point to a non-existent syslog server, nothing
detrimental happens. You can also point it to your own IP address.
However, if your users have "access" to the router config, they can
defeat this trick.
--
Jeff Liebermann
(E-Mail Removed)
150 Felker St #D
http://www.LearnByDestroying.com
Santa Cruz CA 95060
http://802.11junk.com
Skype: JeffLiebermann AE6KS 831-336-2558