cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1438
Views
0
Helpful
4
Replies

Block Telnet

Waheed Bahaduri
Level 1
Level 1

Hello Experts,

I want to create a custom-signature to block all TELNET traffic going across my IOS IPS. I tried alot but it didnt work for me. i created a sig with String-Tcp engine > added regex and telnet port=23  but it does not work.

can any one help me, plz ?

4 Replies 4

Seeker123_2
Level 1
Level 1

What you have posted is blocking telnet through normal router ios .  but my question was how to block telnet through IOS IPS.

mark.barrett
Level 1
Level 1

Try using Atomic IP engine, for any packet using TCP/23 drop the packet.

There's also some signatures which detect Telnet over non-standard ports which you might consider turning on.

I used Atomic ip engine aswell,  but that is also not working.  i tried droping all packets for TCP/23 but it is not blocking telnet traffic.       but on other hand if i try blocking the whole ip then telnet will be blocked.  but if i try blocking only port tcp/23  it does not get any effect

any help,  this is a ccie lab question and i have to work it out asap

Review Cisco Networking for a $25 gift card