Community discussions

MikroTik App
 
User avatar
GreaterTX
just joined
Topic Author
Posts: 22
Joined: Mon Feb 25, 2019 6:47 am

CHR WAN SSH on by Default?

Mon Dec 30, 2019 9:16 am

I'm still new to CHR and Mikrotik, I setup a CHR on ESXi and I noticed in the logs that there's lots of attempted ssh logins on the WAN connection. Does CHR by default allow SSH and management over the WAN interface? What are the best practices when first setting up CHR if that's the case?
 
oskarsk
MikroTik Support
MikroTik Support
Posts: 60
Joined: Mon May 13, 2019 9:41 am

Re: CHR WAN SSH on by Default?

Mon Dec 30, 2019 12:28 pm

Check under IP>Services to disable ssh or other services.

https://help.mikrotik.com/docs/display/ ... our+router
 
User avatar
GreaterTX
just joined
Topic Author
Posts: 22
Joined: Mon Feb 25, 2019 6:47 am

Re: CHR WAN SSH on by Default?

Mon Dec 30, 2019 10:05 pm

Check under IP>Services to disable ssh or other services.

https://help.mikrotik.com/docs/display/ ... our+router
I want to be able to SSH into the unit on the LAN side, but why does it allow SSH access by default on the public WAN? I don't want to disable SSH completely
 
Sob
Forum Guru
Forum Guru
Posts: 9119
Joined: Mon Apr 20, 2009 9:11 pm

Re: CHR WAN SSH on by Default?

Tue Dec 31, 2019 2:28 am

Unless something changed recently, CHR comes with blank config. There's only dhcp client and nothing else, no firewall. It's up to you to add some.
 
User avatar
Steveocee
Forum Guru
Forum Guru
Posts: 1120
Joined: Tue Jul 21, 2015 10:09 pm
Location: UK
Contact:

Re: CHR WAN SSH on by Default?

Tue Jan 07, 2020 6:20 pm

Check under IP>Services to disable ssh or other services.

https://help.mikrotik.com/docs/display/ ... our+router
I want to be able to SSH into the unit on the LAN side, but why does it allow SSH access by default on the public WAN? I don't want to disable SSH completely
Default config is more or less blank. Mikrotik don't really spoon feed you like other manufacturers do. If you want a firewall that stops SSH from WAN then you need to create it.

Who is online

Users browsing this forum: No registered users and 8 guests