1.2.2 Set 'transport input ssh' for 'line vty' connections

Information

Selects the Secure Shell (SSH) protocol.

Rationale:

Configuring VTY access control restricts remote access to only those authorized to manage the device and prevents unauthorized users from accessing the system.

Impact:

To reduce risk of unauthorized access, organizations should require all VTY management line protocols to be limited to ssh.

Solution

Apply SSH to transport input on all VTY management lines

hostname(config)#line vty <line-number> <ending-line-number>
hostname(config-line)#transport input ssh

See Also

https://workbench.cisecurity.org/files/2936

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-8(1), CSCv6|3.4, CSCv7|4.5

Plugin: Cisco

Control ID: 6f97fa861c9c006b27de774e560aa1cb63aca7556b1045c0101af57183409134