cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
6892
Views
0
Helpful
3
Replies

TFTP Server on Cisco Router/Switch

CartoGraph
Level 1
Level 1

Hello,

 

I saw, by using a port scan, that the tftp upd port is open.

 

Is there any threat?

It is possible to turn it off?

 

Thank You!

 

 

PORT   STATE         SERVICE
69/udp open|filtered tftp
Nmap done: 1 IP address (1 host up) scanned in 0.45 seconds

 

3 Replies 3

shimenoy
Spotlight
Spotlight
Hi :)

Sometimes these vulnerabilities are also present, so you should disable it if you don't need it.
e.g. https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20150722-tftp

Please see "Workarounds".

Thank for your reply,

 

I have no tftp-server lines in my configuration.

 

NR01#show running-config | i tftp
NR01#show running-config | i ftp
NR01#

 

 

Even so, the port seems to be open.

 

Any clues why and how can I turn the service off since I do not need it?

 

Regards.

Well, I also tried nmap with my c890(15.1(4)M1), but 69/udp is closed.
Can you post the result of the following command?

# show control-plane host open-ports
Review Cisco Networking products for a $25 gift card