×

Thomson TG585v7 Hell

Thomson TG585v7

This is quite possibly the worst router I’ve had to deal with, maybe not the worst but its certainly up there, top 5.

The issue I had was I wanted to forward ports 80 and 443 through it to a web server. So, I did as you’d expect, used its interface, Applications and Gaming (urgh, I hate this on a router used in a workplace) and set to forward HTTPs and HTTP to the server. Well, HTTP worked but HTTPs was a no go. I tried again, this time using the Secure Web Server option which was also there but mapped the same ports for 443. Still no go.

After hours, almost a full man day I found out I needed to telnet into the device (after creating myself a different admin account so I know the username and password) and then run these command:

service system ifdelete name=HTTPs group=wan
saveall

I’m assuming that what this does is turn off the web interface listening on port 443 on the wan interface which stops bypassing my attempts to forward it.

And before anyone mentions it, no there isn’t a way to do this in the web interface, or change the management ports.

I hate Thomsons.

475 comments

comments user
carwan

Hey lee i did the thing in telnet but when i check the router logs it only says that i made a /saveall and dosent register the

ip config natloopback=enabled

it dosent register and my NAT is still Strict :S can you please help me.

comments user
[deXter]

^ Yeah, how can we check if the natloopback thing worked? Also, are the settings preserved after a router reboot?

comments user
lee

You should know the natloopback has worked when you are able to access devices on your network using your external IP address. This is only there so that if for example as in my case you’re running a webserver you can connect to your WAN IP address and get to it too as well as directly to your web server.

With regards to the two router situation [deXter] I’m at a loss I’m afraid. I wouldn’t ever put two routers between each other though, sounds like you need a switch rather then that netgear to be honest.

comments user
Adrian Lovell

Further to my post on 1st May 2009, O2 have remotely changed passwords for all their Thomson TG585 routers (unless you had manually locked them out), and passwords are now set to the serial number for both accounts. Serial number is printed on the base of the device and looks like: CPXXXXXXXXX, where X is an a letter or number). Usernames remain Administrator and SuperUser.

Full details: http://service.o2.co.uk/IQ/SRVS/CGI-BIN/WEBCGI.EXE/,/?New,KB=Companion,question=ref%28user%29:str%28Broadband%29,CASE=20236

comments user
Alex Macfarlane Smith

Has anyone noticed any issues with the TG585v7 where the DHCP server will (after a few days/weeks) stop responding to DHCP requests? If I change to using statically allocated IPs or reboot the router then the internet connection part of it still works fine.

comments user
lee

Alex Macfarlane Smith, I’ve seen problems with the v5 release of the speedtouch modem stopping serving DNS requests. Personally, I don’t rate the speedtouch modems at all from experience and what people have said here about them.

comments user
Elvin

Hi Lee, i have a problem in blocking downloads or a site in my router TG585v7, im a gamer and everytime someone dowloads all of us playing the game is disconnected or laggy. i want to block whoever is downloading from our boarders so we can play smoothly. i just want the site (ex. limewire) to be block but he can still browse other websites. can you show me how to do it using thomson.

thanks!

comments user
Kevin

I didn’t have all the tools mentioned here to find my telnet port but posts about user.ini suggested I might find my port number within and I did.

I’d taken a backup of my configuration so I opened the resultant user.ini and searched for “telnet”, finding:

modify name=TELNET state=enabled port=54333

Telnet to port 54333 then worked straight off.

Hoping this helps.

Kevin

comments user
lee

Thanks for that Kevin, and good thinking :)

comments user
Gary

I’ve read this whole entry and I’m still not sure how I could bridge the Thomson TG585v7 to another wireless router. I tried and at first I thought I had it, but then it all went out on me.

Could anyone please tell me in a simple explanation how to bridge the Thomson to a Linksys WRT54GL?

Any help is greatly appreciated.

comments user
jake

can someone help me i need the username and password for thomson TG585V7 PLEASE

comments user
lee

Which passwords have you tried so far? Also, which usernames have you tried?

comments user
jake

username admin and password admin

Administrator (blank)

that’s all

comments user
lee

Then read back through the posts on here as there are several more to try. Not least:

User: Administrator
Pass: (serial number from router)

comments user
Chris W

Hi Lee. Very pleased a goggle search brought your blog up.

I’m trying to help a technophobic friend get the best out of his equipment for his business. He’s an architect. Simple network I thought, create a VPN, so he didn’t need to keep moving large files between laptop and desktop.

Telecom, NZ twisted his arm to use the Thomson TG585 v7. I’veonly ever used Netgear and Linksys Cisco for my clients.

Keep getting Error 800 when the laptop tries to connect to the desktop.

I have no idea how to check my port settings and allocations but am savvy enough to work from resources. Could you help me out please?

comments user
Matt

Hello, I had inital problems with this router. But after a few details I have found this to be the best (Except using DMZ easily). For me this is the Only router which does not need to be rebooted every single week. Thats the main reason I like it.

if you login with the best account, “Administrator” is not the best. Creating yourself a “root” access and unlocking the “Standard” firewall details via telnet. You have full – proper access. This took me half a day to do, though!

The easiest way is I found is to download the config via…
192.168.1.254/cgi/b/bandr/?be=0&l0=1&l1=1&tid=BACKUP_RESTORE

add yourself “add name=root password=_CYP_xxx role=root hash2=xxx” using the hash password of the known admin account (your serial number). And upload it back again, then reboot. The ‘role=root’ is the important one.

(Guessing here) but in telnet – if you use something like “:firewall level modify name=Standard readonly=disabled” that should unlock the firewall configuration.

Matt

comments user
Matt

Does anyone know where to find out…. how many concurrent connections this thing can handle. Like how many port 80’s to remote servers in can remember in its nat table?

Matt

comments user
Paul Smith

Hi Lee,

My ISP has supplied me with this Thomson TG585 v7 when I regraded to ADSL2.

Since the router change I am unable to connect to my work VPN (PPTP)

I have tried disabling the Firewall in the router however it will still not connect. It simply times out at the Verifying Username and Password stage and returns error 619. It has been suggested that a firewall is blocking the IP protocol 47 (GRE).

Any ideas?

comments user
lee

I don’t know what to say. I just connected to a VPN fine using my girlfriends Thomson router. I don’t have one of my own, as I’ve have replaced it by now. I’d have a look for any options like VPN passthrough or anything like that. Sometimes there is a little VPN checkbox.

comments user
lee

You’re going to have to fill in some gaps for me. There is a big gap around the requiring a VPN to share files between two computers for example. I’m assuming these aren’t on the same network?

comments user
Chris W

Hi Lee, Happy to oblige.

Topography, desktop running XP Pro, and Office 2000. Sits behind Thomson for internet access.

Thomson provides wireless access to internet and print sharing for one more desktop and the laptop.

Laptop is used remotely by owner on sites around the country. File sizes and numbers are largeand numerous that are updated. I figured a VPN would provide a secure and practicable mode of communicating with the Office, allowing the files to remain on the desktop/server, making file management simple and easy to track.

Laptop uses a Telecom XT USB modem.

I set up a VPN connection at the desktop, and client on the laptop.

When trying to establish a connection the reported error is 678.

I need to better understand the IP addresses. At the moment the Thomson appears to be set to automatically set them. The Desktop LAN connection is automatic too. However I can determine the desktop IP address from the Thomson Gateway screen. I have told the laptop client connection that IP address.

We have installed nmap and discovered/verified the following Ports are enabled.

PORT STATE SERVICE

21/tcp open ftp

80/tcp open http

443/tcp open https

1723/tcp open pptp

Please advise me how to config the IP addy’s. And what other aspects of Thomson setup I may need to activate. I have followed Joe’s instructions for activating TELNET to the letter too.

comments user
lee

If you’re using a VPN even though the files are on the server/desktop PC they will still need to be downloaded and cached before they will be able to edit them. In this situation there are two easy options, there are lots in total but two easy ones.

1) Port forward 3389 to the desktop and use Windows Remote Desktop
2) Use a service such as LogMeIn or GoToMyPC

I would prefer option 2 and use LogMeIn as they have a free version. That would be easiest and would keep all the information on the desktop at home.

comments user
Adey

Like Lee I hate this router!! It is the second s**t router from Thomson that I have had to deal with the first being the speedtouch 330. Next time I change ISP im going to make sure I ask what router goes with their package.
hopefully Thomson will go bust in the meantime and stop afflicting us with their rubbish products.

comments user
Jake

My solution for forwarding port 80 was a bit different. I had to delete the HTTP:80 entry using the port map ‘mapdelete’ function accessed through the CLI menu..

I’ve still got the port 80 forward entry listed and set up through the web interface.

I have no idea why this worked. Bit of a noob. But it did. :-)

comments user
Alex

Hi, i hope you can help me!!

With this tupid thompson TG585 v7 router i am finding it incredibly hard to block a certain user on my local network. I know his ip address 192.168.1.66 and his mac address but i cant seem to block him access to the wireless network. When ever i click “allowed on WAN” it just unticks soon after.

Incase you are wondering the only reason we dont him on the netowork is because he is just 1 of 6 housemates who refuses to contribute to the Broadband bill but still uses it!! so we want to block him!!

Any help would be greatly appreciated!! as i am going mental!!

thanks
ALex

comments user
lee

Is he using Wireless then? There would be a few options:

1) If no’one else uses wireless, turn it off
2) if he is on LAN unplug his cable
3) turn off DHCP and require static IP addresses of a none standard number, for example 10.10.10.X and put your router (default gateway) on some other odd address like 10.10.10.200 then he will need to get connection to the network and work out its IP address structure
4) if he IS on wireless as in 1) change the WPA key and don’t give it to him.

Please come back to me with answers to the above.

Thanks

comments user
Alex

First of all thanks for replying.

We are all on the wireless connection in the house. And the only problem is that we could easily change the key and not tell him, but long story but his girlfriend would throw a wobbely if we wouldnt tell him…(house politics and all that) So as they both no nothing about computers, we just wanted a way to block him so he just thought his computer was no longer working! Normally I would just use mac address filtering but out router being…awful doesnt have this capability!!

Many thanks!

comments user
Alex

I thought maybe i could add a firewall rule, but im not really understanding the adding of firewall rules on this router, seems a very odd router!

comments user
lee

It’s not going to work, simple as. If actively not giving him access to the internet is going to cause problems, what makes you think that doing it behind his back isn’t going to cause problems? Non-technical or not, he is going to suspect something is wrong and you’ll be back to the problem of his girlfriend kicking off.

You’ve got more problems then this router, my suggestion is, ask him to pay and explain unless he does, there will be no internet access. I would also write this down and get him to sign it.

comments user
Alex

ha, fair enuogh man well said. We were just trying to keep contoversey to a mininum! Thanks for your time

comments user
lee

No problem, sorry I couldn’t be more use though.

comments user
John

Just before xmas I moved from Sky to Tiscali. I have a big problem with the Broadband or router because when I work from home and connect to the office via VPN, I have limited access to what I can do for eg I can access outlook but not shared drives and intranet. Having tried for weeks now troubleshooting I have got nowhere. Does anyone know what the problem is? Apparently Tiscali routers (Thomson TG585 v7) come pre-configured and the settings cannot be changed and interestingly they are now saying they do not support VPN’s. Having talked to the IT guys at work they are saying it is down to Tiscali as the ISP may somehow be blocking a port or some other thing. However Tiscali have stated that they do not block ports and that if I can connect to the internet generally then there must be aproblem with my VPN – this is not the case as it works from a friends Broadband connection. I am so confused and this is causing me major issues with working from home whcih I need to do reguarly. Can anyone please help? I am not technical and Tiscali are proving to be the most irritating company I have had the misfortune to deal with. Thanks in advance.

comments user
lee

It could depend on how locked down your router is. My girlfriend has a Tiscali supplied router so the next time I’m at hers, if I remember, I’ll take a look. My friend has the same router supplied by O2, this is VERY locked down, you can’t even backup the configuration on it. Very annoying!

Failing that, it could be worth purchasing another router to try and see if it works fine then. You would however need to get the username and password out of Tiscali/TalkTalk.

comments user
John

Thanks Lee – much appreciated. I have the Netgear router that Sky supplied when I was with them and I know that this didn’t have the same problem. Do you think it would be difficult for me to get the username and password from Talk Talk? Assuming I have these, then what steps would I need to take to get the internet working and my VPN working as it used to? Sorry if this sounds stupid, but I’m not that technical!

comments user
lee

Not difficult at all once you’ve got the settings. It will probably require resetting your old device and hoping that its a generic one allowing you to change the username and password. If its been customised for Sky, so for example it would only allow a username with sky in the name, then we may need to reflash it to make it a factory issue one. Not too hard, but we’ll cross that bridge when we come to it.

For now, tell me the Netgear router model number, should be under it, more then likely starts DG and get the username and password for your internet connection off talktalk (just say you’re upgrading your router or something, they should tell you no probs) and we’ll go from there. I don’t need to know the username and password, keep that to yourself :)

comments user
John

Thanks again Lee. Its a DG834GT. In the meantime I’ll try and get the username and password.

comments user
lee

Hello John, the setup guide to follow is pretty much going to be like this:

ftp://downloads.netgear.com/files/DG834Gv4_RMsrc_13Sep07.pdf

Try it, see how you get on. Let me know if you get stuck.

comments user
John

Hi Lee, I now have the username and password from Tiscali. Having looked at the link above – I’m not sure where to start with getting the netgear router to accept these details? Is it possible to ‘talk through’ the various steps? Thanks again.

comments user
haz

still finding this page useful. thx mate

comments user
greg@sicherheit

Does my mac adresse change if I upgrade my computer with some other hardware? For example change the graphic card?

comments user
lee

The mac address for a network card is hard coded onto a chip on the card. Only if you changed your network card, be it wireless or wired, would that change. If your network card is on your motherboard then you would need to change the whole motherboard for that to change. If you plugged another network card in, then it too would have a mac address, different to your current one.

Why do you ask?

comments user
Will Daniels

Hi Lee, you’re my hero :) Thanks for posting this, I was about to boil my head over this one. Wasted 3 hours today already but you saved me. What a ridiculous router :@ Cheers!

comments user
lee

No problem, another satisfied visitor :)

comments user
Robert Tolton

Hi there lee,

While it’s not entirely subject to your article, I was wondering if you would be willing to help me with some telnet Static Routing on one of these routers (TG585v7).

Any help would be appreciated, and can contact you over email if you’re prefer.

Thanks,

comments user
lee

Hello Robert, to be honest I’ve not dealt much with these routers recently and short of re-reading the manual regarding static links, I wouldn’t be much help.

Apologies.

comments user
John

Hi Lee, I have had my Sky router firmware (Netgear DG834GT) upgraded to accept netgear firnware as opposed to Sky’s so that my tiscali username and password is accepted. Although it shows as connected in my system tray, I cannot get onto the internet. I have played around with the router config settings all to no avail since I cannot get a sucessful test page coming back.

Any ideas would be greatly appreciated. Cheers

comments user
lee

Are you able to connect to the router? If you are, what is the status of your internet connection on the router, does it say connected? What lights are on the front of the router too?

If it says its connected, I’d try this:

from your computer, open a command prompt (for Windows thats Start -> Run -> CMD -> OK)
type:

ping bbc.co.uk
PRESS ENTER

if that doesn’t work try:

ping 212.58.224.138
PRESS ENTER

IF neither of these work then it looks like your ADSL isn’t connected. The router that this page is discussing however is the Thomson router, is the DG834GT firmware compatible with the Thomson?

comments user
O2 User

@Paul Smith:

If you haven’t solved your VPN issue yet: If you have a TG585v7 that is an O2 Wireless Box II with firmware 7.4.20.5, you may resolve your issue by downgrading to 7.4.20.4. You can get it at: http://www.o2help.co.uk/router-upgrade-firmware/

See also thread here:
http://forum.o2.co.uk/viewtopic.php?t=31944

comments user
Alexander

Hi Lee,

I’ve spend several days readin and trying to solve my problem with the TG585v7. Im trying to connect to Xbox live, specifically to play Halo 3 in multiplayer (meaning to play with my friends), but my Nat is in strict mode and it does’n’t let me connect with my friends. I’ve open all the ports: 3074, 88, 53, 80, 2303 & 2302 that i’ve read have to do with the xbox 360. Still my Nat is strict. Have you seen, heard or found a solution for this problem. Thanks for your help.

Regards,
Alexander

Post Comment

This site uses Akismet to reduce spam. Learn how your comment data is processed.