08-03-2011 09:53 AM - edited 03-07-2019 01:32 AM
A vulnerablitiy scan of some of our IOS devices report that the devices are running a 'vulnerable ISAKMP service' on port 500. These may be false positives because there is nothing configured on the devices that use ISAKMP. So if I can show that the devices are not listening on TCP port 500, I can put this report to bed.
08-03-2011 10:13 AM
Hi,
This command should do the trick: show control-plane host open-ports
Regards.
Alain.
04-29-2024 12:13 PM
Hi Alain,
Would you know is there a similar command for XE?
James
08-03-2011 08:14 PM
Yup that correct. The command is :
Router# show control-plane host open-ports
Please refer this link also for more explanation:
http://packetlife.net/blog/2008/dec/3/listing-open-sockets-ios/
Cheers
Sweta
Please rate the content if it was useful.
08-04-2011 03:37 AM
Jeff
Just a quick question. What device is it that you are checking ?
Oh and port 500 for IKE will be udp not tcp.
Jon
08-04-2011 06:46 AM
The 'show control-plane ....' command is not available on the devices in question. Here are two of them:
7206 router IOS 12.3(16a)
6509 IOS 12.2(17d)SXB8
I know these are really old IOS codes so maybe the fix is to upgrade them.
08-04-2011 10:52 AM
I'm not sure.......but another such smililar command show tcp brief all might be available.
06-13-2024 09:59 PM
For cisco ios-xe :- show tcp brief all
will show all tcp port that are open.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide