Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

Securing router

Hi,

I have 2800 series router which is directly connected to ISP..

How can secure the router from outside access; pls help me on this as I am totally new to the security concepts

Thanks                  

Everyone's tags (2)
2 REPLIES

Securing router

Securing router

Hello Vishal,

Jimmy has provided you a perfect link to start. Certain things which needs to be considered as part of security

1) Disabling HTTP server. Running HTTP server is highly vulnerable to external attacks. Should be DISABLED !!!

2) IP Finger services to be disabled.

3) ACL to block access to router from internet.

4) Configure SSH

5) TCP & UDP small services must be disabled

5) Denying all RFC 1918 addresses from internet (as you dont expect to see a private address from internet which could be a spoofing attack).

6) Have the Control Plane Policing done to avoid DoS attacks against the CPU.

Link provided by Jimmy has all the neccessary details, but i just thought of highlighting some important once.

Thanks

Vivek

*Please rate helpful posts

180
Views
4
Helpful
2
Replies
CreatePlease to create content