So you're expected to download some unsigned binary over an untrusted connection and trust that with all your traffic.
Definitely not buying TP-LINK next time. Good to know this there's a bandwidth problem like this!
So you're expected to download some unsigned binary over an untrusted connection and trust that with all your traffic.
Definitely not buying TP-LINK next time. Good to know this there's a bandwidth problem like this!
TP-Link plastic routers have nice cheap hardware and they make it really easy for you to flash it with LEDE/OpenWRT.
Maybe what I wanted to express was more like this: TP-Link has a sloppy attitude towards the security of their stock firmware. It might work, but it is full of security holes. HTTPS and checksums/signatures wouldn't change that.
Maybe they could do everything right with their firmware and provide top notch security and updates. But then their firmware would be a factor for market differentiation and at that point they would be incentivized to put effective code signing schemes in place. Other market players do that. Look at AVM Fritz Box products - nice hardware, security updates for many years and the result is: they are known GPL offenders and have strong code signing in place.
Instead TP-Link delivers you crap firmware on nice and cheap hardware and they don't care what you run on it.
Often acceleration modules on Broadcom, Qualcomm, Mediatek etc are proprietary and without acceleration in OpenWrt/Lede the router is going to be dog slow.
The wifi modules are also proprietary and need be well supported by Openwrt/Lede or you will see throughput drops.
Of late it's just best to use what's in the router and not bother. And we move to faster connections on consumer routers with slow main SOCs the proprietary accelerators will become even more important.
[1]: http://www.etsi.org/technologies-clusters/technologies/regul...
Depends on what your priorities are - high performance or high security.
https://github.com/xdarklight/mktplinkfw3/blob/master/README...
Their firmwares for newer devices do indeed include signature support. A malicious firmware on their server will fail the signature check and not be flashed. Signature checks occur only in the flasher, not in the bootloader, but that would require physical access to the device, at which point all bets are off anyways.