Which option is the Cisco recommended method to secure access to the console port?

Which option is the Cisco recommended method to secure access to the console port?

Which option is the Cisco recommended method to secure access to the console port?

A.
Configure the activation-character command.

B.
Configure a very short timeout (less than 100 milliseconds) for the port.

C.
Set the privilege level to a value less than 15.

D.
Configure an ACL.



Leave a Reply 2

Your email address will not be published. Required fields are marked *


Maluco Beleza

Maluco Beleza

Where is it recommended by Cisco? Should be C.

Patrick

Patrick

There is no good answer here. From 300-115 CCNP Switch OCG page 425:

Secure the switch console: In many environments, switches are locked away in wiring closets where physical security is used to keep people from connecting to the switch console. Even so, you always should configure authentication on any switch console. It is usually appropriate to use the same authentication configuration on the console as the virtual terminal (vty) lines.

I would choose D as the console port can be accessed from a device such as a remote access router acting as a reverse telnet server. An ACL can be configured on this reverse telnet server to control who can reverse telnet to the console port.