Documentation
Onboarding
Getting Started
Power & Battery
Hardware & Components
Build & Assembly
Radio & RF Design
Frequencies & Regulations
Firmware & Software
USB & Connectivity
GPS & Navigation
Morse & Communication
Modes & Operation
Field Operations & Rescue
Building Effectively
Build Variants
Project & Reference
Docs Firmware & Software WiFi and Security

WiFi and Security

Edit on GitHub

How the open access point works, its limits, and safe practices around CONFIG mode

WiFi and Security

Overview

CONFIG mode starts an open WiFi access point - no password - serving the dashboard on 192.168.4.1. This is deliberate (a password you must remember defeats field configuration) but it has real security implications.

The Design

AspectValue
SSIDAegisBeacon
EncryptionNone (open)
Dashboard authNone
Range~10 m indoor
Auto-revert5 minutes without a client

Threats

ThreatRealistic?Mitigation
Someone changes your configOnly within ~10 mUse CONFIG only at home/trusted spots
Payload snoopingConfig contains no secretsNo private data stored
Firmware tampering via WiFiNot supportedNo OTA/update endpoint exists
JammingPossibleRadio is off in CONFIG anyway

Safe Practices

  1. Enter CONFIG only where you trust the surroundings.
  2. Save and reboot as soon as the settings are applied.
  3. Never leave the beacon in CONFIG during a deployment.
  4. Prefer configuring at home, in the car, or at a hut - not on a public square.