From what I understand all incoming WAN traffic is disabled by default in the firewall so they should not be able to see the web portal.

The only way I could imagine they could identify your device would be via:

  1. The MAC address via OUI lookup
  2. Discovery packets emitted by the router

For option 1 look into MAC spoofing, use the MAC of one of your connected devices (any it doesnt matter).

For option 2 would need to see if/what discovery protocols are being run (I have not looked myself) and either disable them or explicitly block them in the firewall.

Apologies if I am way off here, I just got mine yesterday but I’ve been working in networking for most of my life.

---- edit ----

The OUI lookup is a dead giveaway:

94:83:C4 GL Technologies (Hong Kong) Limited

I would put dollars to donuts that spoofing the MAC of one of your phones/devices will get around the problem.

2 Likes