Access Security - Disable insecure or unnecessary access services (telnet, J-Web over HTTP, FTP, etc.) - rlogin

Information

Access services are considered insecure when communication to the device is unencrypted. Clear-text communications are susceptible to sniffing, replay, and packet capture attacks.

Solution

Disable rlogin as an insecure service.

user@host# edit system services
user@host# delete rlogin

See Also

http://www.juniper.net/us/en/training/jnbooks/day-one/fundamentals-series/hardening-junos-devices-checklist/

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7b.

Plugin: Juniper

Control ID: e9249733c06865951a24d4ce565d6ed55be277f8b5592f0c165870482544fbab