cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
283
Views
0
Helpful
1
Replies

Newbie question

michael.steiner
Level 1
Level 1

I have a 2924 switch in the dmz and it currently has an external IP address. My question is should I have an ip on this device and if so how can I set it up so that

1. It does not respond to pings

2. Only certain IPs are allowed to telnet to it

3. I would like to implement SSH on it if possible.

Also any helpful hints or docs on securing it would be helpful.

Thanks

1 Reply 1

p.krane
Level 3
Level 3

I hope you are having a firewall like PIX. In that case you should configure for Conduit statemet (Or Access lists)to allow some IP and deny all the other IP addresses.

This link has an example for configuring a mail server in DMZ. In your case replace Mail server with the switch.

http://www.cisco.com/warp/public/110/mailserver_dmz.html