cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
2156
Views
0
Helpful
2
Replies

Block SSH from public to Internet router

Hello,

 

I am new to networking. In Internet router I see multiple failed logins from public IP address . Looks like due to misconfiguration , port 22 is open to public and bad guys are trying to brute force.

 

Can you please help me , where exactly the configuration would have gone wrong and how to fix it ?

2 Replies 2

marce1000
Hall of Fame
Hall of Fame

 

 Here's an example article with guidelines ; for your particular issue have a look a the fire walling and acl section :

   https://www.techrepublic.com/blog/data-center/fundamentals-five-ways-to-secure-your-cisco-routers-and-switches/

 M.



-- Each morning when I wake up and look into the mirror I always say ' Why am I so brilliant ? '
    When the mirror will then always repond to me with ' The only thing that exceeds your brilliance is your beauty! '

balaji.bandi
Hall of Fame
Hall of Fame

Not sure what is the device here - if the attempt coming from Public IP address - why not ssh listen only on the internal interface?

 

ip ssh source-interface XXX  

 

other methods you can build ACL.

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help