cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1509
Views
0
Helpful
2
Replies

Block SSH from public to Internet router

Hello,

 

I am new to networking. In Internet router I see multiple failed logins from public IP address . Looks like due to misconfiguration , port 22 is open to public and bad guys are trying to brute force.

 

Can you please help me , where exactly the configuration would have gone wrong and how to fix it ?

2 Replies 2

marce1000
VIP
VIP

 

 Here's an example article with guidelines ; for your particular issue have a look a the fire walling and acl section :

   https://www.techrepublic.com/blog/data-center/fundamentals-five-ways-to-secure-your-cisco-routers-and-switches/

 M.



-- ' 'Good body every evening' ' this sentence was once spotted on a logo at the entrance of a Weight Watchers Club !

balaji.bandi
Hall of Fame
Hall of Fame

Not sure what is the device here - if the attempt coming from Public IP address - why not ssh listen only on the internal interface?

 

ip ssh source-interface XXX  

 

other methods you can build ACL.

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help