Specifications

9-58
Cisco MGX 8800/8900 Series Software Configuration Guide
Release 5.1, Part Number OL-6482-01, Rev. A0, January 25, 2005
Chapter 9 Switch Operating Procedures
Managing Telnet Access Features
Login:
password:
mgx8830a.1.PXM.a >
-> local IP 172.29.52.56, next hop at 172.29.52.88
-> local IP 172.29.52.88, connected to server at 172.29.52.56
mgx8830b.1.PXM.a >
Enabling and Disabling Telnet Access
The Cisco MGX switches include a Telnet server that enables easy, insecure access from Telnet client
software running on a workstation or on another Cisco MGX switch. When using Telnet to access a
switch, all user ID, password, and session management information is transferred between the client and
the switch using clear text. Clear, or unencrypted text can be read by network analysis and snooping
tools.
If you are using SSH client software to access Cisco MGX switches, consider disabling Telnet client
access so that the switch accepts only secure sessions. To disable Telnet client access, enter the
cnfndparms command, select option number for Telnet Access To Node Disabled, and confirm the
action (Y) as shown in the following example:
PXM1E_SJ.7.PXM.a > cnfndparms
PXM1E_SJ System Rev: 04.09 May. 08, 2000 22:50:01 GMT
MGX8850 Node Alarm: NONE
NODE CONFIGURATION OPTIONS
Opt# Value Type Description
---- ----- ---- -----------
1 3600 16bit Decimal SHM Card Reset Sliding Window (secs)
2 3 8bit Decimal SHM Max Card Resets Per Window (0 = infinite)
3 Yes Boolean Core Redundancy Enabled
4 0x0 8bit Hex Required Power Supply Module Bitmap
5 0x0 8bit Hex Required Fan Tray Unit Bitmap
6 0 8bit Decimal Trap Manager Aging timeout value(Hour(s))
7 atm0 8bit Decimal Primary IP interface for Netmgmt
8 lnPci0 8bit Decimal Secondary IP interface for Netmgmt
9 Yes Boolean Auto Setting of Cellbus Clock Rate Enabled
10 Yes Boolean Inband Node-to-Node IP Connectivity Enabled
11 0 8bit Decimal 0 No Gang, 1 Left, 2 Right, 3 Both Present
12 0 8bit Decimal Card Switchover on Backcard FRU mismatch
13 No Boolean Card-to-Card High Priority LCN Disabled
14 No Boolean Telnet Access To Node Disabled
Enter option number (1-14): 14
NODE CONFIGURATION OPTIONS
Opt# Value Type Description
---- ----- ---- -----------
14 No Boolean Telnet Access To Node Disabled
Enable/Disable telnet access to this node. If option set to:
Yes: Telnet access to this node is disabled. This
forces all incoming telnet connections to be rejected by
the node's telnet server. Use of another protocol such as SSH
is needed to remotely log into a terminal session on the node.
No: Telnet access to this node is enabled. This is the default.
Incoming telnet connections will be accepted by the node's
telnet server. Use of other protocols such as SSH are still
supported for remotely logging into a terminal session on the
node.
Enter value for option 14 (Y/N): y