Common security practices are to keep a router for as long as it’s receiving security patches. Once it’s EOL, then replace it.

I have a Gl.iNet router using the latest firmware that just released recently. However, the router is based on OpenWRT and is running v21.02 when the latest OpenWRT official version is 24.10.3. On OpenWRT’s website v21.02 is considered EOL.

So should this router be considered EOL? Should the whole company not be worth buying from since everything sold is immediately EOL? I don’t understand enough about cyber security to know how significant the jump is from v21.02 to v24.10.3.

PS. I know these routers can be flashed with straight OpenWRT but this is for the sake of my thought experiment.

  • rezad@lemmy.world
    link
    fedilink
    English
    arrow-up
    2
    ·
    17 days ago

    openwrt uses linux kernel that is very near latest (LTS) release. they kinda have to do this for support added for new devices and new wifi standard and so on.

    a company that supports its own limited product range doesn’t need newest kernel that much. because contrary to popular belief most kernel changes are not security related. and their devices don’t change hardware wise.

    but having said all of that if I were you and my device was supported by openwrt, I would probably migrate to openwrt and be free of a small company limited support.

    • sic_semper_tyrannis@lemmy.todayOP
      link
      fedilink
      English
      arrow-up
      1
      ·
      15 days ago

      Okay, that makes sense. I do have another router with OpenWRT that I’m learning. Once comfortable enough I’ll switch it over.

      • rezad@lemmy.world
        link
        fedilink
        English
        arrow-up
        2
        ·
        15 days ago

        some router have some features that are not in openwrt. like (hard) speed limits per device and some other management apps. they are not magic apps married to hardware and if someone wanted he is free too create them in openwrt himself.

        but if you don’t need any of those niche apps(features) then going to openwrt (if your device is officially supported) makes a lot of sense.

        if you use premade images from openwrt (I make images with their image builder) there is not much of learning curse besides some jargon (sysupdate, binray, repo).

        in last years I used openwrt and then added the apps that I usually install on it after an upgraede and just make an image and upload that to device. but that is in the future and is not noob way to do it (it is not hard but it is not just click-and-done)

        one of the reason that I went that way was because the default image didn’t include webui (you heard that right) because of size constraints and wifi was disabled by default (for security so that user had to enable it and add custom password).

        now those steps are included in official image.