Community discussions

 
snowpro
just joined
Topic Author
Posts: 20
Joined: Thu Apr 10, 2008 3:56 am
Location: Ottawa Canada

cut off all access but winbox

Wed Aug 22, 2012 2:59 am

I have a 450G as main router
I see in log that there are many attempted log in's from telnet and ssh. Addresses from all over the world.
I found a script that locks them out after 3 attempts (Stage 1,2,3 then blacklist)
I already have about 30 addresses in blacklist (two weeks of use)

Is there something better I can do to restrict access to myself only

I only need winbox access
 
User avatar
cbrown
Trainer
Trainer
Posts: 1840
Joined: Thu Oct 14, 2010 8:57 pm
Contact:

cut off all access but winbox

Wed Aug 22, 2012 3:35 am

You can turn off unneeded services in /ip services if you don't need them.
C.Brown

cbrown[at]ravenrocknetworks.com
MTCNA - MTCRE - MTCWE - MTCTCE
MTCSE - TRAINER-0179
 
snowpro
just joined
Topic Author
Posts: 20
Joined: Thu Apr 10, 2008 3:56 am
Location: Ottawa Canada

Re: cut off all access but winbox

Thu Aug 23, 2012 11:14 pm

thanks: I blocked ssh and telnet (disabled in ip services) and yet I still got an
address show up on blacklist (attempt log in ssh)

How can that be
 
User avatar
lordkappa
Member Candidate
Member Candidate
Posts: 133
Joined: Wed May 16, 2012 1:53 pm
Location: Vancouver, Canada

Re: cut off all access but winbox

Sat Aug 25, 2012 3:53 am

Firewall rules still run, even if there is no service listening on that port.

Who is online

Users browsing this forum: No registered users and 27 guests