cancel
Showing results forĀ 
Search instead forĀ 
Did you mean:Ā 
cancel
525
Views
10
Helpful
4
Replies

Regarding telnet

ncnaveen_arasu
Level 1
Level 1

Dear team,

Please suggest solution for the below mentined issues.

1)   KA-AGR-DEP-C1941#telnet 74.125.236.133 /source-interface gigabitEthernet 0/1

% telnet connections not permitted from this terminal

How can we enable telnet for the above for testing

2) KA-AGR-DEP-C1941#sh caller

                                                  Active    Idle

  Line           User               Service       Time      Time

vty 132        agri               VTY           00:02:24  00:00:00

Here we are getting the time of our vty login and not the serial link uptime. How can we enable to check the serial link uptime.

3)  CGHSULSOR#traceroute google.com

Translating "google.com"...domain server (164.100.3.1) [OK]

Type escape sequence to abort.

Tracing the route to google.com (74.125.236.129)

  1 10.161.20.69 4 msec 4 msec 4 msec

  2 10.255.232.38 4 msec 4 msec 4 msec

  3 10.255.238.237 40 msec 40 msec 40 msec

  4 10.255.221.225 40 msec 40 msec 40 msec

  5  *  *

CGHSULSOR#telnet 74.125.236.129 80

Trying 74.125.236.129, 80 ...

% Connection refused by remote host

In the above case it's showing refused by remote host. If the port 80 is opened in firewall also if we get this error what will be the issue. As i understood when firewall port is opened we wil get as OPEN

Thanks & Regards,

Naveen

4 Replies 4

Julio Carvajal
VIP Alumni
VIP Alumni

Hello Naveen,

I am going to help you with the ones I know right now. I am pretty busy at the moment

1)For the telnet problem

line vty 0 4

transport output telnet ssh

2) Not sure about second one.. Sorry

3) Regarding telnet to google server...

What kind of firewall do you have in place, What happens if you try to access it from  a web-browser client, does it work?

Regards,

Remember to rate all of the helpful posts

Julio Carvajal
Senior Network Security and Core Specialist
CCIE #42930, 2xCCNP, JNCIP-SEC

Hi Jcarvaja ,

thanks for the reply,

We are using ISA as a firewall. If we access form web browser it's working.

And please try to get an answer for 2nd question

Hi naveen

Point 2 ->i think u have an internet link , if this the case u can find the serial Link uptime from the logs (use a logging server )showing the last port down or protocol down else  u have to enable bgp with your Internet service provider which involves cost and a gud router

point 3 ->i think there is some problem in the nat translation to public IP thats y u are unable to telnet to port 80 .it is working via browser because it might be using some proxy server (check out the lan setting in the browser)

HI Raja, Thanks for the reply.

Point 2 : We are using Leased line connectivity for the remote office, where in for few location it shows the uptime if we give sh caller and for few it will not. So how to enable this to see the uptime.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Innovations in Cisco Full Stack Observability - A new webinar from Cisco

Ā