Page 1 of 1

cut off all access but winbox

Posted: Wed Aug 22, 2012 2:59 am
by snowpro
I have a 450G as main router
I see in log that there are many attempted log in's from telnet and ssh. Addresses from all over the world.
I found a script that locks them out after 3 attempts (Stage 1,2,3 then blacklist)
I already have about 30 addresses in blacklist (two weeks of use)

Is there something better I can do to restrict access to myself only

I only need winbox access

cut off all access but winbox

Posted: Wed Aug 22, 2012 3:35 am
by cbrown
You can turn off unneeded services in /ip services if you don't need them.

Re: cut off all access but winbox

Posted: Thu Aug 23, 2012 11:14 pm
by snowpro
thanks: I blocked ssh and telnet (disabled in ip services) and yet I still got an
address show up on blacklist (attempt log in ssh)

How can that be

Re: cut off all access but winbox

Posted: Sat Aug 25, 2012 3:53 am
by lordkappa
Firewall rules still run, even if there is no service listening on that port.