To improve security and prevent attacks to the unused Sockets, TCP 23 and TCP 22, ports for Telnet and SSH services respectively, will be enabled or disabled after corresponding configurations.

zIf the authentication mode is none, TCP 23 will be enabled, and TCP 22 will be disabled.

zIf the authentication mode is password, and the corresponding password has been set, TCP 23 will be enabled, and TCP 22 will be disabled.

zIf the authentication mode is scheme, there are three scenarios: when the supported protocol is specified as telnet, TCP 23 will be enabled; when the supported protocol is specified as ssh, TCP 22 will be enabled; when the supported protocol is specified as all, both the TCP 23 and TCP 22 port will be enabled.

Telnet Configuration with Authentication Mode Being None

Configuration Procedure

Follow these steps to perform Telnet configuration with the authentication mode being none:

To do…

Use the command…

Remarks

Enter system view

system-view

 

 

 

Enter one or more VTY user

user-interface vty

 

first-number

interface views

[ last-number ]

 

 

 

 

 

 

Configure not to authenticate

authentication-mode

Required

users logging in to VTY user

By default, VTY users are authenticated

none

interfaces

after logging in.

 

 

 

 

Configure the command level

 

Optional

user privilege level

By default, commands of level 0 are

available to users logging in to

level

available to users logging in to VTY

VTY user interface

 

user interfaces.

 

 

 

 

 

Configure the protocols to be

protocol inbound { all

Optional

supported by the VTY user

By default, both Telnet protocol and

ssh telnet }

interface

SSH protocol are supported.

 

 

 

 

Set the commands to be

 

Optional

executed automatically after a

auto-execute

By default, no command is executed

user login to the user interface

command text

automatically after a user logs in to the

successfully

 

VTY user interface.

 

 

 

Make terminal services

 

Optional

shell

By default, terminal services are

available

 

available in all user interfaces.

 

 

 

 

 

 

 

Optional

Set the maximum number of

 

By default, the screen can contain up to

screen-length

24 lines.

lines the screen can contain

screen-length

You can use the screen-length0

 

 

 

 

command to disable the function to

 

 

display information in pages.

 

3-3

 

Page 28
Image 28
3Com WX3000 operation manual Telnet Configuration with Authentication Mode Being None, Configuration Procedure