yi-hack-v5 icon indicating copy to clipboard operation
yi-hack-v5 copied to clipboard

RTSP URL Insecure even with Password Set in Config Tab

Open aX1Mus opened this issue 2 years ago • 4 comments

Is there a way to force password authentication on the RTSP URLs? The Authentication section of the Config tab mentions the username and password for RTSP, ONVIF, and HTTP, however, any connections to RTSP URL without credentials is successful. If I can somehow lock down the RTSP via an IP or user I would like to move my ZoneMinder to GCP or AWS. Is there something undocumented I am missing?

aX1Mus avatar Jul 27 '21 14:07 aX1Mus

Same here. Looks like a bug.

LinoBarreca avatar Aug 23 '21 09:08 LinoBarreca

@aX1Mus password is not there yet but I am working on it

alienatedsec avatar Oct 05 '21 18:10 alienatedsec

same for me, any updates? @alienatedsec

hudak0va avatar Apr 05 '22 11:04 hudak0va

@hudak0va I know that I have not been active for a while, but my MSc is now finished, and I will slowly get back to this project. I cannot promise anything this month as I am going on a long holiday (well deserved).

I also need to move my development rig and adopt updates and changes from the past six months before getting fully back into it - looking forward, but please be patient for a little while

alienatedsec avatar Apr 05 '22 11:04 alienatedsec

The next release, 0.3.7(?) is to support username and password on RTSP.

alienatedsec avatar Dec 05 '22 20:12 alienatedsec

This issue has been stale for 30 days - it will be closed within the next 7 days if not updated

github-actions[bot] avatar Jul 07 '23 06:07 github-actions[bot]

Resolved with https://github.com/alienatedsec/yi-hack-v5/discussions/248

alienatedsec avatar Jul 07 '23 06:07 alienatedsec