Access Security - Disable insecure or unnecessary access services (telnet, J-Web over HTTP, FTP, etc.) - ftp

Information

Access services are considered insecure when communication to the device is unencrypted. Clear-text communications are susceptible to sniffing, replay, and packet capture attacks.

Solution

Disable ftp as an insecure service.

user@host# edit system services
user@host# delete ftp

See Also

http://www.juniper.net/us/en/training/jnbooks/day-one/fundamentals-series/hardening-junos-devices-checklist/

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7b.

Plugin: Juniper

Control ID: 0d146053576062b1da1a2ef8f9a72cdb5237fa9b2e8e6a2cb94a61d9f9e46fc6