• Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 238
  • Last Modified:

How to permit uses of SSH/Telnet from the Internet on router 1811?

This is using router 1811 for firewall, dmvpn, and off course acl. My co-worker told me that she managed to use telnet/ssh in the internal network. But, when she tried to use ssh/telent thru the Internet, access denied.

How to permit her to use SSH/telnet thru Internet - although I know there might be a security breach out there.
0
Balack
Asked:
Balack
  • 2
1 Solution
 
Sniper98GCommented:
you have to allow ports 22 and 23 "from outside to self" in your firewall configuration and you will need to add entries to your telnet/ssh access lists that permit access from wherever you are connecting from.
0
 
BalackAuthor Commented:
Hi Sniper98G,

Can you show me the commands?
0
 
Sniper98GCommented:
The commands below will allow telnet and SSH through your firewall and add an ACL entry into your telnet ACL. However if you are not very familiar with programing router firewalls in command line I would recommend using the SDM to configure your firewall. You could irrepribly damage your working firewall config if this is done incoreclty and the variables I used may not be correct in your configuation. At the very least back up your current config to a text document before trying any of this.






Insert the network you want to allow access in place of <network>


Firewall:

ip access-list extended R_Man
 permit ip <network> 0.0.0.255 any

class-map type inspect match-any Remote_M
 match protocol telnet
 match protocol ssh

class-map type inspect match-all permit_class
 match class-map Remote_M
 match access-group name R_Man

policy-map type inspect permit_R
 class type inspect permit_class
  pass
 class class-default
  drop

zone-pair security out_to_self source out-zone destination self
 service-policy type inspect permit_R



Telnet ACL:

Access-List <your telnet ACL number> permit <network> 0.0.0.255
0
Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.

Join & Write a Comment

Featured Post

Cloud Class® Course: MCSA MCSE Windows Server 2012

This course teaches how to install and configure Windows Server 2012 R2.  It is the first step on your path to becoming a Microsoft Certified Solutions Expert (MCSE).

  • 2
Tackle projects and never again get stuck behind a technical roadblock.
Join Now