- cross-posted to:
- news@lemmy.world
- cybersecurity@sh.itjust.works
- cross-posted to:
- news@lemmy.world
- cybersecurity@sh.itjust.works
Could not be happier to have a UDM pro right now.
What does this mean for the ISP supplied units?
I’m thinking exempt based on the FCC language of “designed to be installed by the consumer”. ISP provided routers are usually hooked up by the installer tech. Which makes me wonder which ISP chortled orange man’s balls to get this passed.
At least round here if there’s no wiring to be done the ISP just couriers the boxes and lets the customer plug them in.
They’re always rentals though, correct? It’ll be interesting to see which way it swings, for sure. Stupid stupid rule either way.
I set up service in a new state last year with Comcast and was shocked that there was NOT a rental fee for the router/modem any longer. But idk if that’s them being forced to compete more than they had to in my previous area, or if they cut the fee across the board.
This is so stupid that I can barely even think of a nefarious reason to do it.
It’s so they can more reliably distribute their own backdoors.
But how? America doesn’t make routers. There’s no American routers to put backdoors in!
Doesn’t have to be a hardware backdoor. Router manufacturers can easily push software updates that contain said “backdoor” for the low, low price of licking Trump’s backdoor.
That’ll be part of the “concessions” that foreign made routers make to get approval.
Why the fuck else would the department of defense need to weigh in?
It also allows the DoD and DHS to collect application fees which gives them dark money to play with outside the oversight of Congress.
It would seem to exclude ISP provided routers =/
The few “usa made” routers companies lobbying your president to forbid their competition?
Something is happening, first the age verification and now this. They’re setting up to verify identities online I presume?
I’m more wondering that if all consumer network routers have to be made in the US (e.g. forcing people to use the ISP-provided one), it makes it easier for them to utilise the ISP’s backdoors for monitoring of people’s LANs. If that’s actually the goal, then the next logical step would be to deny anyone access using a third-party router or ISP-provided router that didn’t have their firmware.
The fascists always attack free speech, and our first amendment rights have been under attack from many directions.
They’re setting up to verify identities online I presume?
To track online activities.
To ensure nobody is doing anything the government (or its corporate funders) don’t like.
Look at the Project2025 manifesto and see how much they want people’s activities to be controlled.
You can of course run your own router.
Great, so zero network products can be sold, and we have to dispose of any existing ones in a couple years.
I guess the US won’t have any Internet anymore.
Based on the language, it would seem to exclude ISP provided routers as those are not “designed to be installed by the consumer”. It also excludes anything not SoHo.
I haven’t seen an ISP offer tech installation on anything in years unless the home wasn’t pre-wired. Self installation kits are the norm these days.
Seems like a great opportunity for ISP to start charging whatever they want to install their crap. Don’t want to pay for the installation and use their router? No internet for you!
Look Vlad, I’m doing it too!
Perhaps it’s a fallback plan in case the universal Internet ID thing doesn’t work out. Gotta keep the masses stupid and uncoordinated.
Where did it say we have to dispose of existing ones? It doesn’t say that no products can be sold, and the article specifically says models that have already been approved can continue to be sold. I also think it’s dumb, but it’s important to be accurate.
In an exception to the usual rule, routers included on the Covered List can continue to receive updates at least through March 1, 2027, although the date could potentially be extended.
I guess it depends on what this means here. It COULD mean that you won’t get software updates (security updates) next year.
Lol i love how something so massive was just given an arbitrary 1 year date. We all know it’s because nobody dealing with this has any clue what the impact is, and any that do don’t care because it will probably be making them more money… no way this all happens within a year, and if it does it’s gonna be a shit show.
So consumer grade routers are a security risk, but not ISP switches or server routers? That’s the opposite of what a state level actor would look for.
Brother it is class war so
Isn’t Huawei already banned?
Is it? Because I just saw them available on Amazon and Alibaba. I think I even saw it on Walmart a few weeks ago too.
He is talking about ISP grade hw.
I mean, it’s kind of old news that these consumer routers make up the majority of bot nets, although I doubt requiring them to be US-made will change much.
As I read it, they are scared of the Chinese Communist Party having an “official” back door built in. Not run-of-the-mill criminal bot-nets.
So basically just like… the internet is banned?
You will have the same type of net as China, walled off from the rest of us
This is a good time to remind everyone to avoid any of the major manufacturers. Get pre-built OPEN boxes and install OpenWRT. You performance and capabilities will beat the shit out of any of the other stuff anyway.
Sadly, there were a few great foreign-made manufacturers who had great hardware for this. Technically they aren’t “network routers” and just blank hardware, so probably don’t fall into the idiotic language put forth here.
I’ve got a GLiNet router with OpenWRT, running adguard on it. Best router experience I’ve ever had. I wonder how quick this ruling takes effect, might be smart to buy another while I can lol
YUP. I’ve deployed hundreds of these. They make good hardware, their developers and hardware engineers are quick to respond to customers, and they just make a good product. They even share their board designs, because why not?
Sucks they’re going to be caught in the crossfire here.
Thanks for this recommendation! I just bought one! :-]
And open software will probably have the ability to show up as a “correct” router when that day comes.
Can’t believe this isn’t the top comment.
any recommended resources to learn more? Is this a lay person accessible option?
You can still get GL.inet routers even on Amazon as of right now, and they’re on sale (for obvious reasons).
There’s the OpenWRT One router that is basically just a Banana Pi board.
There’s lots. Just search around.
Raspberry pi?
You would need an expansion module or two… or how many wires you need… I am sitting on on a 16 slot switch… and thinking I might need more…
What does this mean for enterprise hardware, specifically Cisco?
Only consumer products are covered
Nothing, because laws are only for wealthy entities that can afford to pay the tedious fines. Us proletariat poors have to comply with this shit while they look down at us.
Just to spell out what many comments already hint at:
There are no US-made routers. “Made” here refers to companies, not where the stuff is actually made. Even if the plastic housing happened to be made in the US for one or two products, the components are still from far away.
Those few US companies paid MAGA for this.
This is corruption pure and simple.
And also I’m SURE there will be no backdoors installed in these routers. This was a mutual deal to control information, not just a financial one
It’s okay when it’s OUR backdoor, it’s not okay when it’s their speculative backdoor.
Those few US companies paid MAGA for this.
Almost certainly not just a money thing. They very likely also made deals for government access to and control of their devices. This isn’t just corruption. It is fascism.
Are there actually any US-made consumer network routers on the market? All the brands I can think of are pretty much made in Asia these days.
Ubiquiti is an American company, not sure if the tech is really MADE here though, seems like that’d be weird considering the components are all made outside the US anyway.
Ubiquiti may not be considered consumer with regards to this, but it’s pretty unclear so it’s a bit of a gamble.
It would be funny if, like, the UniFi line got banned but the EdgeOS line didn’t just based on target audience
Yeah, it’s all so ambiguous. I switched to them because they were better made and cheaper than the Netgear I was forced to replace after 1.5yrs. It’ll be interesting to see where this ends up. Probably lawsuits. Glad I’m already set for a while, I guess.
The next step is government approved routers with NSA backdoors.
Yep, marketed as very safe, meeting “standards” .
designating all consumer routers manufactured outside the U.S. as a security risk
So this is horseshit, right?
First of all, ALL routers from ANY country are a security risk? Every single other nation is trying to make Spyware for the average American consumer? Doubt.
Second, they are extremely concerned with all consumers’ security from foreign actors to the point it needs an outright ban on hardware to protect us. God forbid I buy an AVM router from Germany and open up my home networking to German Spies. What if they find out I sometimes visit porn websites and yourube!?
Third, that the US government, themselves, are trustworthy and wont force backdoors into systems to allow them unfettered access into private networks, something that they HAVE TRIED TO AND SUCCEEDED TO DO IN THE PAST. And also something that they are very clearly opening the door for with all of these legal pushes toward requiring age verification software and OS’s. They want to ban foreign routers so that you have to buy routers from companies that they can control. They can ask, coerce and force them to give them access behind the scenes for some bullshit excuse (“protect the kiddies”, “law enforcement”, “national security”, “terrorism”), force them to not tell the public, and then “secretly” monitor every device in the entire country. They are almost certainly already doing this with a significant number of US manufacturers and software developers.
Fuck these fascists.
It is entirely true that all models from all manufacturers are compromised by spy agencies. However the worst offender by far is Cisco even though they’re “American”.
It is entirely true that all models from all manufacturers are compromised by spy agencies.
I think there’s a little bit of space between “spy agencies employ systems professionals that know the guts of a component’s security and tricks to bypass it” and “every device firmware has a double super secret protocol for sidestepping all of its security features”.
However the worst offender by far is Cisco even though they’re “American”.
Sure. I’m willing to believe that Cisco, specifically, has relationships with the Five Eyes network such that they make monitoring their traffic easier. Even then, there’s limits. One thing to say techniques exist to bypass security. Another entirely to know what those techniques are and whether they’re practical for application at universal scale.
One of the more chronic problems that big spy agencies have is sifting through all the spam and bullshit and empty chatter. Decryption takes time. And you can’t monitor everything, everywhere, all at once. The bigger sins of Cisco are in how they expedite access on behalf of their agency partners, not that they fail to produce perfectly hack-proof hardware.
I find it unlikely to be about security. Either it is about control or about money (pressure to induce bribery for lifting), or a combination of both.
What’s the play here? Something isn’t making sense.
With the Trump administration, the only thing you can be sure of is that the stated reason isn’t the real reason. Somebody’s got to be getting a payday from this.
Same play as always. Bullies countries and corps to get what he wants. As long as it serves him that’s all he cares about.
Starlink devices are currently the only approved ones.
It’s a money grab. About the only networking companies that build in the us are like Cisco and juniper. Which odds are, you aren’t running at home. This is without a doubt a money grab. Google and Amazon will gladly pay the exemption fee. Some others will as well. This isn’t about security or “pay American”. It’s a money grab.
There will be some meetings with oems, and gold things dropped on his desk, and the exceptions will start being handed out. Same as always.

















