cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
507
Views
0
Helpful
3
Replies

2821 config - i can telnet direct into enable mode

mulhollandm
Level 1
Level 1

folks

i've recently installed a 2821 and when i telnet to it i find myself in enable mode!

i'm not using a tacas or radius server of any kind and i only have local passwords

i can't see anything on the config specifically enabling this feature

anyone any idea what i'm missing

thanks to anyone taking the time to respond

3 Replies 3

mhussein
Level 4
Level 4

Do you have

line vty 0 4

privilege level 15

configured?

What is the outuput of show privilege?

Regards,

Mustafa

mustafa

thanks for the prompt reply

yes i do - here's a copy of the line vty 0 4 config

line vty 0 4

exec-timeout 3 0

privilege level 15

password 7 ****************

login

transport input telnet

should i change the privilege level

the output from the show privilege is:

Millennium# sh priv

Current privilege level is 15

thanks for your interest and efforts

The default level is 1, which is the normal user mode.

Unless you have a pressing need for this, it is better -security wise- to change it by no privilege level. After that it will not show up in the config because it is the default setting.

Reference

http://www.cisco.com/univercd/cc/td/doc/product/software/ios122/122cgcr/fsecur_r/fothercr/srfpass.htm#wp1017782

Regards,

Mustafa

Review Cisco Networking for a $25 gift card