- 0
- 0
- 约2.41千字
- 约 7页
- 2022-05-05 发布于北京
- 举报
理解CISCO路由器的安全特征 局域网互联 物理安装中常见的威胁硬件威胁环境威胁电气威胁维护威胁Configuring a Router PasswordConfiguring the Login BannerRouterX# banner login Access for authorized users only. Please enter your username and password. Defines and enables a customized banner to be displayed before the username and password login promptsTelnet vs. SSH AccessTelnetMost common access methodInsecureSSH EncryptedIP domain must be defined key must be generated!--- The username command create the username and password for the SSH sessionusername cisco password 0 ciscoip domain-namecrypto key generate rsa ip ssh version 2 line vty 0 4 login local transport input sshSummaryThe first level of security is physical.Passwords can be used to restrict access.The login banner can be used to display a message before the user is prompted for a username.Telnet sends the session traffic in cleartext; SSH encrypts the traffic. Layer 2 of 2Emphasize: The router has one enable password. Remember that this is your only protection. Whoever owns this password can do anything with the router, so be careful about communicating this password to others. To provide an additional layer of security, particularly for passwords that cross the network or are stored on a TFTP server, you can use either the enable password or enable secret commands. Both commands accomplish the same thing; that is, they allow you to establish an encrypted password that users must enter to access enable mode (the default), or any privilege level you specify. Cisco recommends that you use the enable secret command because it uses an improved encryption algorithm. Use the enable password command only if you boot an older image of the Cisco IOS software, or if you boot older boot ROMs that do not recognize the enable secret command. If you configure the enable secret password, it is used instead of the enable password, not in addition to it. Cisco supports password encryption. Turn on password encryption using the service password-encryption command. Then
您可能关注的文档
- 2015工程热物理热力学文献.pdf
- 2017-主管护fuke护理学练习1.pdf
- 学员课第一章快手新人起步.pdf
- 03.清洁供暖-冀北可再生能源市场化交易执行存在问题及相关建议.pdf
- 化学岛icholand06-13icholand历年模拟14岛题02.pdf
- 新师培训心得.pptx
- 押题卷一西药一押题7.pdf
- 2017年1月市场活动sp中关村.pptx
- 初设公路勘测任务书.pdf
- 建筑设备期中class建筑防排烟.pdf
- (正式版)DB51∕T 1867-2014 《袋栽黑木耳生产技术规程》.docx
- (正式版)DB51∕T 2413-2023 《油橄榄密植丰产栽培技术规程》.docx
- (正式版)DB51∕T 2436-2017 《川菜东坡一品肉烹饪工艺技术规范》.docx
- (正式版)DB51∕T 2396-2017 《农村电子商务服务站(点)服务与管理规范》.docx
- (正式版)DB51∕T 2419-2017 《桢楠扦插育苗技术规程》.docx
- CN105145773B 一种无花果曲奇饼干及其制作方法 (江苏农林职业技术学院).docx
- CN105203825A 微测量电极的制作方法和热电势的测量方法及相关装置 (国家纳米科学中心).docx
- CN105137533B 一种啁啾光纤光栅及其制作方法 (南京航空航天大学).docx
- (正式版)DB51∕T 2453-2018 《巴山新居公共管理指南》.docx
- (正式版)DB51∕T 1892-2014 《川西北地区沙化土地治理技术规程》.docx
原创力文档

文档评论(0)