Announcement Banner

tomrbc

updated

18 years ago

T

tomrbc

80 Posts

0

4043

February 25th, 2009 13:00

How do i enable/disable telnet/ssh for a DS4100?

both command line and web interface?
  • dynamox

    11 Legend

    •

    20419 Posts

    •

    87439 Points

    1640

    0

    Posted February 26th, 2009 10:00

    yeah ..fastboot option is supported. Before you go with the reboot option ..see what support has to say about this.
  • dynamox

    11 Legend

    •

    20419 Posts

    •

    87439 Points

    1159

    1

    Posted February 25th, 2009 13:00

    what fabric OS ? On 6.x you can do this:

    To disable telnet:

    ipfilter --create block_telnet_v4 --type ipv4

    ipfilter --addrule block_telnet_v4 -rule 2 -sip any -dp 23 -proto tcp -act deny

    ipfilter --save block_telnet_v4

    ipfilter --activate block_telnet_v4

    To re-enable telnet:

    ipfilter --delete block_telnet_v4

    ipfilter --save


    ...to do ssh ..change port 23 to 22.
  • tomrbc

    80 Posts

    1159

    0

    Posted February 25th, 2009 13:00

    i read the admin guide, but wasnt' able to find anything except using ipfilter to filter out either telnet or ssh, but is there a way to natively enable/disable either protocol?
  • tomrbc

    80 Posts

    1159

    0

    Posted February 25th, 2009 15:00

    i think it has admin rights, because that's the same account i use to do zoning and the new policy i just created, which blocked me out
  • tomrbc

    80 Posts

    1159

    0

    Posted February 25th, 2009 15:00

    ok, i found the answer to my previous question is yes, i locked myself out, i can connect to console though, but when i try to delete the new rule i just created, it says,

    Not owner of the current transaction

    help!
  • dynamox

    11 Legend

    •

    20419 Posts

    •

    87439 Points

    1159

    0

    Posted February 25th, 2009 15:00

    what commands are you using to remove the rule ?
  • dynamox

    11 Legend

    •

    20419 Posts

    •

    87439 Points

    1159

    0

    Posted February 25th, 2009 15:00

    the account you are using on the console ..does it have admin role ?
  • dynamox

    11 Legend

    •

    20419 Posts

    •

    87439 Points

    1159

    0

    Posted February 25th, 2009 15:00

    you might also try:

    ipfilter ¿-transabort
  • dynamox

    11 Legend

    •

    20419 Posts

    •

    87439 Points

    1159

    0

    Posted February 25th, 2009 15:00

    what if you simply run "ipfilter --save"
  • tomrbc

    80 Posts

    1159

    0

    Posted February 25th, 2009 15:00

    so ipfilter is the only way? bummer

    anyhow, do i have to create another rule to state any other traffic is allowed?