C H A P T E R
40-1
Cisco Security Appliance Command Line Configuration Guide
OL-12172-03
40
Managing System Access
This chapter describes how to access the security appliance for system management through Telnet,
SSH, and HTTPS (using ASDM). It also describes how to authenticate and authorize users and how to
create login banners.
This chapter includes the following sections:
•
Allowing Telnet Access, page 40-1
•
Allowing SSH Access, page 40-2
•
Allowing HTTPS Access for ASDM, page 40-3
•
Managing the Security Appliance on a Different Interface from the VPN Tunnel Termination
Interface, page 40-5
•
Configuring AAA for System Administrators, page 40-5
•
Configuring a Login Banner, page 40-19
Note
To access the security appliance interface for management access, you do not also need an access list
allowing the host IP address. You only need to configure management access according to the sections
in this chapter.
Allowing Telnet Access
The security appliance allows Telnet connections to the security appliance for management purposes.
You cannot use Telnet to the lowest security interface unless you use Telnet inside an IPSec tunnel.
The security appliance allows a maximum of 5 concurrent Telnet connections per context, if available,
with a maximum of 100 connections divided between all contexts.
To configure Telnet access to the security appliance, follow these steps:
Step 1
To identify the IP addresses from which the security appliance accepts connections, enter the following
command for each address or subnet:
hostname(config)#
telnet
source_IP_address
mask
source_interface
If there is only one interface, you can configure Telnet to access that interface as long as the interface
has a security level of 100.
Step 2
(Optional) To set the duration for how long a Telnet session can be idle before the security appliance
disconnects the session, enter the following command:
Содержание 500 Series
Страница 38: ...Contents xxxviii Cisco Security Appliance Command Line Configuration Guide OL 12172 03 ...
Страница 45: ...P A R T 1 Getting Started and General Information ...
Страница 46: ......
Страница 277: ...P A R T 2 Configuring the Firewall ...
Страница 278: ......
Страница 354: ...17 38 Cisco Security Appliance Command Line Configuration Guide OL 12172 03 Chapter 17 Configuring NAT NAT Examples ...
Страница 561: ...P A R T 3 Configuring VPN ...
Страница 562: ......
Страница 891: ...P A R T 4 System Administration ...
Страница 892: ......
Страница 975: ...P A R T 5 Reference ...
Страница 976: ......