Great Circle Associates Firewalls
(March 1997)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: RE: cisco routers and intruder detection
From: Ken Kempster <kempster @ monarch . rnb . com>
Organization: Republic National Bank
Date: Mon, 24 Mar 1997 13:44:06 -0500 (EST)
To: snyder @ co . santa-barbara . ca . us
Cc: firewalls @ GreatCircle . COM, John Snyder <snyder @ co . santa-barbara . ca . us>
Comments: ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Comments: Internet Message: Sender identity is not verified.
Comments: ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
In-reply-to: <33330602 . 1E3A @ co . santa-barbara . ca . us>

On 21-Mar-97 John Snyder wrote:
>I'm in the middle of a discussion on the use of Cisco routers as part of
>a firewall implementation.  I have been confronted with the claim there
>are not any detection mechanisms that can alert one to attempted  logins
>to the router.  
>
>It appears that Cisco routers do not support the idea of individual user
>accounts.  It does seem to support up to 16 levels of security each
>protected by a password.  I cannot find anything in Cisco documentation
>that helps me in detecting attempts to log on to the router.  It seems



>someone could continuously attempt logins trying to guess passwords
>without anyone ever knowing.

why not just disable telnet to the router and configur it 
from the local port..



>
>Is their anything native in the router IOS to help here or is a separate
>TACACS server a requirement.
>
>Thanks in advance for any knowledge in this area.
>
>John Snyder
>

|~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~|
|  Ken Kempster               kempster @
 monarch .
 rnb .
 com    |   
|  Network Systems Engineer          _\|/_                |
|  Republic National Bank            (o o)                |
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~oOO-(_)-OOo~~~~~~~~~~~~~~


References:
Indexed By Date Previous: Re: x25 tools?
From: Corneliu Tanasa <cornel @ logicnet . ro>
Next: RE: cisco routers and intruder detection
From: Luis Alberto Barraza del Castillo <lbarraza @ infosel . com . mx>
Indexed By Thread Previous: Re: cisco routers and intruder detection
From: Todd Graham Lewis <lists @ reflections . eng . mindspring . net>
Next: Re: cisco routers and intruder detection
From: Adam Shostack <adam @ homeport . org>

Google
 
Search Internet Search www.greatcircle.com