Access Security - Disable insecure or unnecessary access services (telnet, J-Web over HTTP, FTP, etc.) - J-Web over HTTP

Information

Access services are considered insecure when communication to the device is unencrypted. Clear-text communications are susceptible to sniffing, replay, and packet capture attacks.

Solution

Disable J-Web over HTTP as an insecure service.

user@host# edit system services web-management
user@host# delete http

See Also

http://www.juniper.net/us/en/training/jnbooks/day-one/fundamentals-series/hardening-junos-devices-checklist/

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7b.

Plugin: Juniper

Control ID: 5c31fa93fc292e58a2190b72b1edaebd5732adca1eaf9ebd03f0ea505ead0af4