cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
357
Views
0
Helpful
5
Replies

Restric telnet access

nawas
Level 4
Level 4

I have MSFC with tons of vlans in them and I can telnet/ssh to any

vlan by typing telnet x.x.x.x. I want to be able to telnet to only

mgmt interface such as loopback0. What is the best way to achieve this?

Is it possible without the ACL?

5 Replies 5

Collin Clark
VIP Alumni
VIP Alumni

Take a look at Management Plane Protection.

http://www.cisco.com/en/US/docs/ios/12_4t/12_4t11/htsecmpp.html

You'll have to use the feature navigator to see if it's available on your particular switch(es).

Hope that helps.

Mark Yeates
Level 7
Level 7

Thank guys for the quick help. I assume the this will work even if I have Hybrid or native code on my 6500. (Of course MSFC will be IOS)

MPP will be IOS only. Currently it is available in T code for routers, but you'll need to check for switches.

Not necessarily, Since CoPP is a relatively new feature it is only available on the newer IOS releases. I don't believe CatOS supports this. What version is your MSFC running?

http://www.cisco.com/en/US/prod/collateral/iosswrel/ps6537/ps6586/ps6642/prod_white_paper0900aecd804fa16a.html

Mark

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card