Physical Security - Craft Interface/LCD Menu - Disable unnecessary functions for your environment - craft-lockout

Information

Most Junos device platforms have either a craft interface or an LCD that can be used for viewing system status and alarms. There are also physical buttons or menu options to perform system control and maintenance functions, like bringing an FPC offline or online, restoring the factory default configuration, etc.

Solution

Disable the craft interface.

user@host# edit chassis
user@host# set craft-lockout

See Also

http://www.juniper.net/us/en/training/jnbooks/day-one/fundamentals-series/hardening-junos-devices-checklist/

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7b.

Plugin: Juniper

Control ID: 1e71ee72169c891701e1fa184d777ca9552a441930fce24eecbf4a7f96d23467