1.6.5 Ensure 'Telnet' is disabled

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

Disables the telnet access to the security appliance in the case it has been configured

Rationale:

Telnet is an unsecure protocol as username and password are conveyed in clear text during the administrator authentication and can be retrieved through network sniffing.

Solution

* Step 1: Run the following to remove the telnet access

HOSTNAME(CONFIG)#NO TELNET 0.0.0.0 0.0.0.0 _<interface_name>_

* Step 2: Run the following to remove the configured telnet timeout

HOSTNAME(CONFIG)#NO TELNET TIMEOUT _<configured_timeout>_

See Also

https://workbench.cisecurity.org/files/1903

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7, CSCv6|9.1

Plugin: Cisco

Control ID: 933e34f300e316ea8bef6f798936c9c6dd3e28fd9b733b0546fc494cdc6c1ece