cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
882
Views
0
Helpful
4
Replies

Simple Telnet question on ASA

AQUALUNGAMERICA
Level 1
Level 1

On an ASA Firewall, I am using 8.4(5). Is Telnet disabled by default? I only want to use SSH from an inside interface which I know how to configure using the AAA command and establishing an RSA Modulus key.

Thank you

Carlos                  

3 Accepted Solutions

Accepted Solutions

Jouni Forss
VIP Alumni
VIP Alumni

Hi,

To my understanding the Telnet isnt allowed by default.

But more importantly there is a very specific limitation related to its use that applys always.

You CANT use telnet on the "outside" interface with "security-level 0" UNLESS that Telnet connection is coming inside a VPN connection (VPN  Client or L2L VPN)

This limitation is because unlike SSH, Telnet naturally aint secure by itself.

- Jouni

View solution in original post

jocamare
Level 4
Level 4

Telnet and SSH disabled by default.

So, rest assured, you can just enable SSH and telnet will remain disabled.

View solution in original post

No problem,

Please mark the question as answered or ask more if needed

- Jouni

View solution in original post

4 Replies 4

Jouni Forss
VIP Alumni
VIP Alumni

Hi,

To my understanding the Telnet isnt allowed by default.

But more importantly there is a very specific limitation related to its use that applys always.

You CANT use telnet on the "outside" interface with "security-level 0" UNLESS that Telnet connection is coming inside a VPN connection (VPN  Client or L2L VPN)

This limitation is because unlike SSH, Telnet naturally aint secure by itself.

- Jouni

Jouni,

Thank you for the reply and the lesson. Much appreciated.

No problem,

Please mark the question as answered or ask more if needed

- Jouni

jocamare
Level 4
Level 4

Telnet and SSH disabled by default.

So, rest assured, you can just enable SSH and telnet will remain disabled.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card