Community discussions

MikroTik App
 
dfroe

Enforcing WinBox Secure Mode

Sat Jun 04, 2016 10:27 pm

Hello,
to pass security audits, we have to ensure, that administrative access to network devices (like MikroTik RouterBoards) is only possible through secure and encrypted protocols.
For shell access we can use SSH and disable Telnet, for web access we can use HTTPS and disable HTTP, and we can use SNMPv3.
But how to deal with WinBox? Which actually is the most convinient tool to manage RouterOS.
WinBox offers secure connections, but how can I enforce it in RouterOS?
Unfortunately there are no separate services for plaintext and encrypted WinBox, and both use the same TCP port.
This seems to make it quite complicated (if not even impossible) to only allow secure WinBox connections.
Any idea how to achieve this? I'd say this is a basic feature and it is required by most security audits.

kind regards
David
 
taylorc
Member Candidate
Member Candidate
Posts: 102
Joined: Mon Aug 21, 2006 3:42 am

Re: Enforcing WinBox Secure Mode

Fri Sep 23, 2016 10:34 pm

Yes, I would like an answer from Mikrotik on this. It should have been addressed long ago.

Who is online

Users browsing this forum: dandu and 108 guests