cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1017
Views
0
Helpful
4
Replies

Telnet from PIX

rmv72
Level 1
Level 1

I was very suprised to find that i can't use telnet command from PIX device? Why this functionality is absent?

4 Replies 4

scoclayton
Level 7
Level 7

Why would the functionality be there? Wouldn't it seem ironic to be launching an easily snooped, clear-text connection to another device on your network from your "security device"?

Scott

OK, I'll bite:

1. Because it's convenient to be able to probe tcp ports and grab banners, etc.

2. If security is the reason, why not SSH then?

3. Because sometimes telnet is OK. Wouldn't it make sense to let the user (firewall admin in this case) make that decision?

Simon

Solace
Level 1
Level 1

More lines of code = less secure code

:)

pcomeaux
Cisco Employee
Cisco Employee

I submitted an enhancement request to the Pix team for a customer maybe a year ago for this feature(telnet from pix), along with traceroute and scheduled reloads.

Only scheduled reloads appear to make it in the next major release. This is most likely due to the reasons the others have mentioned.

peter

Review Cisco Networking for a $25 gift card