ccnet-WI: disable QNAP telnet listener (port 13131) once SSH is confirmed stable #29

Open
opened 2026-07-14 16:25:50 +00:00 by claude-bot · 0 comments
Collaborator

Telnet on port 13131 was enabled 2026-07-13 to diagnose/fix the QNAP's broken SSH host keys (see docs/ccnet-wi-site.md). SSH is fixed and working. This unencrypted, unauthenticated-by-default admin channel should be disabled once SSH is confirmed stable across a few days of normal use -- it's a real exposure on hardware that can no longer be patched. Disable via the QTS web UI (Control Panel > Network & File Services > Telnet/SSH) or the equivalent config toggle, then confirm nothing is listening on 13131.

Telnet on port 13131 was enabled 2026-07-13 to diagnose/fix the QNAP's broken SSH host keys (see docs/ccnet-wi-site.md). SSH is fixed and working. This unencrypted, unauthenticated-by-default admin channel should be disabled once SSH is confirmed stable across a few days of normal use -- it's a real exposure on hardware that can no longer be patched. Disable via the QTS web UI (Control Panel > Network & File Services > Telnet/SSH) or the equivalent config toggle, then confirm nothing is listening on 13131.
Sign in to join this conversation.
No milestone
No project
No assignees
1 participant
Notifications
Due date
The due date is invalid or out of range. Please use the format "yyyy-mm-dd".

No due date set.

Dependencies

No dependencies set.

Reference
copper/ccnet-prod-devops#29
No description provided.