I’ve been using Gryphon for a little over a year. I don’t know if there is a better way to do your router. Let’s face it if your router connected to the ethernet and has an admin interface, it is vulnerable! I know because my Xfinity modem has been hacked time and time again!
Setup:
So what is the best way to stay secure? In my opinion having two routers connected, to a modem, that does not have wireless, is the best way to go. Obviously your modem can have a firewall, then you have a router in bridge mode with a different lan, or double NAT it if you want to.
Next you have Gryphon attached to your modem or router in bridge more, attached to your cable/Sat modem, going out.
Controlling Gryphon:
what I do is get everything connected to my router first. That means l leave new device blocking off, until all are connected. You can use, static IP‘s, or DHCP, your choice.
You should probably use a password generator/manager, to put in your network name(SSID) and password.
Using something above 12 digits, in order for it to be a strong password.
I turn off SSID myself, and I use other on my iPhone/iPad in order to connect them to the said network.
Afterwords set block new devices on
I’ll add to this later.