cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
357
Views
5
Helpful
1
Replies

accessing switches via SSH

Amafsha1
Level 2
Level 2

Hello, I have a couple Nexus 9k switches that have a good amount of interface IPs (SVIs) on them that are used part of the VPC process running between the 2 N9ks.  

 

If I take any of those SVIs IP addresses and put in the IP into putty, I can SSH into the switch.  Since there are so many IP interfaces on those switches; then in turn there are so many ways to access the N9ks via SSH.  How do I limit this so only typing the mgmt address of the switch I can access the switch?

1 Reply 1

Dennis Mink
VIP Alumni
VIP Alumni

try this:

 

https://www.cisco.com/c/en/us/td/docs/switches/datacenter/sw/best_practices/cli_mgmt_guide/cli_mgmt_bp/connect.html

 

or you could put an acl on every SVi, you dont want to connect to, to deny port 22.

 

personally I would worry more about the source IP that is trying to connect than what it is trying to connect TO

Please remember to rate useful posts, by clicking on the stars below.

Review Cisco Networking for a $25 gift card