nanog mailing list archives

Re: Nipper and Cisco configuration results


From: Subba Rao <castellan2004-nsm () yahoo com>
Date: Sat, 4 Apr 2009 04:21:19 -0700 (PDT)

I looked at the configurations yesterday on the routers.  The vty line does not have any "transport" line below it.  
All the routers showing "Rlogin enabled" have similar configuration.

What are the default services that are enabled for vty on IOS 12.4?  I know there are only telnet, SSH and Rlogin.  Is 
there any particular sequence that IOS processes the vty access?

Subba Rao

--- On Thu, 4/2/09, Lee <ler762 () gmail com> wrote:

From: Lee <ler762 () gmail com>
Subject: Re: Nipper and Cisco configuration results
To: castellan2004-nsm () yahoo com
Cc: nanog () nanog org
Date: Thursday, April 2, 2009, 11:31 PM

On 4/2/09, Subba Rao <castellan2004-nsm () yahoo com> wrote:
I am using Nipper for verifying my Cisco configuration.  Nipper is finding
the "rlogin" service that is not in the configuration.  I have searched the
access lists and do not see it anywhere.  The explanation by Nipper about
this finding, "....Telnet protocol implemented by this service...." is
confusing.  Here is the Nipper's output:
  <..snip ..>
Can someone explain why Nipper is saying "Rlogin is enabled" when I do not
see it in the configuration file?  Is there something else that I need to be
looking at?

I played with it a bit - removing the "transport input telnet" on a
vty line got me the rlogin service is enabled.  Add it back & nipper
says it's disabled...

Do you have a "transport input telnet" on each vty?  If not, does
adding it fix the nipper report?

Regards,
Lee


Current thread: