The Wiert Corner – irregular stream of stuff

Jeroen W. Pluimers on .NET, C#, Delphi, databases, and personal interests

  • My badges

  • Twitter Updates

  • My Flickr Stream

  • Pages

  • All categories

  • Enter your email address to subscribe to this blog and receive notifications of new posts by email.

    Join 1,858 other subscribers

At last: WireGuard VPN with FRITZ! | FRITZ!Box 7490 | AVM International

Posted by jpluimers on 2023/09/08

Early spring 2023 I posted Reminder to self: check if FritzOS 7.50 has become available for Fritz!Box 7490 because it would (likely partially) introduce WireGuard support as I knew it had been available for other Fritz!Box devices since december 2022: [Wayback/Archive] Fritzbox: AVM startet die Verteilung von FritzOS 7.50 | heise online

Das Betriebssystem FritzOS 7.50 für Fritzbox-Router ist fertig. Mit dabei sind das Wireguard-VPN und Verbesserungen im Smart-Home-Funktionsumfang.

Finally, early september 2023 my Fritz!Box 7490 devices updated from firmware version 7.29 to 7.57 so apparently it took AVM quite a while to test and stabilise the new features on Fritz!Box 7490.

The final push for 7.57 might actually be a security issue in prior versions that already looks like being exploited according to [Wayback/Archive] AVM: Fritzbox-Firmware 7.57 und 7.31 stopfen Sicherheitsleck | heise online

In Internetforen finden sich Hinweise darauf, dass die mit dem Update geschlossene Sicherheitslücke bereits angegriffen wird. Den Gerüchten zufolge können Angreifer Zugriff durch den HTTPS-Port 443 erlangen und hätten dann Zugangsdaten zur Fritzbox sowie PPP-Zugangsdaten verändert. Dadurch sei kein Internetzugang mehr möglich, und auch der Zugriff auf die Fritzbox werde verhindert. Einzig ein Werksreset helfe dann, um wieder Zugriff zu erlangen.

The odd thing of the upgrade logs is that the fiber connected 7490 mentioning a DSL settings reset, but the DSL connected 7490 didn’t:

  • [Wayback/Archive] 266552049-83f15c6c-89ad-45d7-bf6e-27ebbe68e185.png (781×128)

    The ADSL connected device:

    06.09.23
    01:38:17
    The service provider successfully transmitted settings to this device.
    06.09.23
    01:38:10
    FRITZ!OS updated to 7.57. The previously used version was 7.29. The update was designated by the manufacturer of the FRITZ!Box as necessary for secure and reliable operation. Your FRITZ!Box is configured to have such necessary updates installed automatically.
    06.09.23
    01:38:06
    The system time was updated successfully by time server 2a01:b740:a20:3000::1f2.
  • [Wayback/Archive] 266552832-6424fa02-0115-44f5-b2ae-c42d93ad3ca8.png (785×189)

    The fiber connected device:

    06.09.23
    01:07:54
    The service provider successfully transmitted settings to this device.
    06.09.23
    01:06:34
    The DSL settings for interference resistance were changed.
    06.09.23
    01:06:34
    FRITZ!OS updated to 7.57. The previously used version was 7.29. The update was designated by the manufacturer of the FRITZ!Box as necessary for secure and reliable operation. Your FRITZ!Box is configured to have such necessary updates installed automatically.
    06.09.23
    01:05:57
    The system time was updated successfully by time server 2a05:d014:fc5:9a00:38e:25ed:3c41:88ec.

For my link list, [Wayback/Archive] VPN with FRITZ! | FRITZ!Box 7490 | AVM International linked to these Wireguard VPN articles:

Notes:

  1. AVM urges one to use MyFRITZ! (see links below), but it looks like only an external IPv4 or IPv6 is needed.
  2. The Fritz!Box 7490 does not support all WireGuard possibilities:

Downloads:

More links:

  • [Wayback/Archive] Updating FRITZ!OS | FRITZ!Box 7490 | AVM International
  • [Wayback/Archive] FRITZ!Box 7490 Update news | AVM International
    FRITZ!Box 7490 / FRITZ!OS 7.57
    FRITZ!OS is the software of the FRITZ!Box. Use the online update function to easily download the newest FRITZ!OS version into your FRITZ!Box.

    New performance characteristics:

    • FRITZ!OS 7.56 – with over 150 new functions and useful improvements
    • Mesh Wi-Fi now with dynamic smart repeating for better performance in the home network
    • VPN with WireGuard technology: Simple, fast, and secure connection to the home network from anywhere
    • More convenient telephony: New FRITZ!Fon “Voice” ringtone and block for unknown callers
    • New energy-saving mode can be switched on upon request
    • Simplified replacement of a FRITZ!Box with new wizard
    • Many interesting new Smart home options: Scenes, routines, and lighting sequences
    • The user interface was fine-tuned and rounded out with comprehensive “Help and Info”
    • Many new functions for the MyFRITZ!App and FRITZ!App Smart Home (iOS/Android)
    Filesize:
    37170 KB
    Version:
    FRITZ!OS 7.57
    Date:
    4 September 2023
  • [Wayback/Archive] WireGuard: VPN has never been so easy | AVM International
  • [Wayback/Archive] Setting up a WireGuard VPN between two FRITZ!Box networks | AVM International
    • The FRITZ!Box 7490 does not support the options “Send all network traffic via the VPN connection” and “Only certain devices in the home network are to be accessible over this WireGuard connection”.
    • FRITZ!Box 6590 Cable and FRITZ!Box 6490 Cable do not support WireGuard.
  • [Wayback/Archive] MyFRITZ!Net
    MyFRITZ! is a free AVM service that informs you about the status of your FRITZ! products, available updates, and other news on a regular basis via email. In addition, MyFRITZ! offers you easy and secure access to your own FRITZ!Box over the internet. With MyFRITZ! you can listen to messages on your FRITZ!Box answering machine and check your FRITZ!Box’s call list, access the files (for example photos, music, documents) you manage with FRITZ!NAS, or also adjust your FRITZ!Box settings from anywhere in the world at any time.
    To use MyFRITZ!, all you have to do is register your FRITZ!Box with MyFRITZ!. Your FRITZ!Box only transmits the IP addresses where it can be reached in the internet to the MyFRITZ! service. All of your personal data and passwords are always stored exclusively in the FRITZ!Box and are not transmitted to AVM’s MyFRITZ! service or any other services or providers. Accessing your FRITZ!Box from the internet therefore requires two login processes:
    • Logging into the MyFRITZ! service

      In the first step, you log into the myfritz.net website with your email address and personal MyFRITZ! password. This login information is saved in encrypted form on the MyFRITZ! servers when you create your MyFRITZ! account.
    • Logging into the FRITZ!Box

      After you have been automatically redirected to the MyFRITZ! home page of your FRITZ!Box, log in there using the account information for your FRITZ!Box user account. Neither the FRITZ!Box user account nor the account information is known to the MyFRITZ! service or AVM; instead, this information is stored exclusively in your FRITZ!Box.
  • [Wayback/Archive] Configuring a MyFRITZ! account in several FRITZ!Box devices | FRITZ!Box 7490 | AVM International

Queries:

–jeroen

Leave a comment

This site uses Akismet to reduce spam. Learn how your comment data is processed.