?
Solved

blocking port 22 to a server on a procurve 5412zl switch

Posted on 2008-10-16
4
Medium Priority
?
668 Views
Last Modified: 2012-05-05
I have a HP procurve 5412zl switch and I'm wanting to block access to TCP port #22 for all subnets but 10.1.1.0 but i'm having no luck. I've been trying an extended access control list but I can only seem to block the port going out from the server. I'm needing to block port access into the server.

Can I block ports this way and how do I do this?
0
Comment
Question by:shook1981
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
4 Comments
 
LVL 8

Expert Comment

by:MrJemson
ID: 22738025
Would probably be easier to configure the firewall on the server for this purpose.
What kind of box are you using? Is iptables installed? running?
0
 

Author Comment

by:shook1981
ID: 22740546
I have my reasons why I want to know how/if the switch can do this. I know how to block outgoing traffic just not the incoming
0
 
LVL 4

Accepted Solution

by:
Adraenyse earned 2000 total points
ID: 24445936
Blocking inbound ports requires that you filter the source port to be larger than 1023 and the destination as 22. The source port will not be 22.

Your better bet is to write the ACL so that it accepts >1023 as source and 22 as destination where the source IP is 10.1.1.0 and then deny all other sources.
0

Featured Post

Free Tool: Path Explorer

An intuitive utility to help find the CSS path to UI elements on a webpage. These paths are used frequently in a variety of front-end development and QA automation tasks.

One of a set of tools we're offering as a way of saying thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

This tutorial will go through the steps required to write a script that will back up the configuration settings of a HP-ProCurve switch. You will need to get the following things to follow this tutorial: Telnet Scripting Tool e.g. TST10.exe …
I eventually solved a perplexing problem setting up telnet for a new switch.  I installed a new Cisco WS-03560X-24P switch connected to an existing Cisco 4506 running a WS-X4013-10GE Sup II-Plus. After configuring vlans and trunking,  I could no…
Monitoring a network: how to monitor network services and why? Michael Kulchisky, MCSE, MCSA, MCP, VTSP, VSP, CCSP outlines the philosophy behind service monitoring and why a handshake validation is critical in network monitoring. Software utilized …
In this video, Percona Solution Engineer Rick Golba discuss how (and why) you implement high availability in a database environment. To discuss how Percona Consulting can help with your design and architecture needs for your database and infrastr…

777 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question