pgaliardo
MIS
- Nov 30, 2004
- 887
I understand that ACL's can be applied to the vty lines to control access to Telnet. My question is this:
If I already have an ACL on the WAN interface that does not allow port 23, is that enough to prevent Telnet access to my router from the outside? I imagine that packets hit the outside interface before ever getting to a telnet line. Is that correct?
If I am incorrect in my assumption, what is the best way to only allow telnet access to my router from the internal LAN (10.0.0.0 network).
Thanks.
If I already have an ACL on the WAN interface that does not allow port 23, is that enough to prevent Telnet access to my router from the outside? I imagine that packets hit the outside interface before ever getting to a telnet line. Is that correct?
If I am incorrect in my assumption, what is the best way to only allow telnet access to my router from the internal LAN (10.0.0.0 network).
Thanks.