11.2.4.5 packet tracer - configuring secure passwords and ssh

Upload: parthpatel

Post on 24-Feb-2018

262 views

Category:

Documents


0 download

TRANSCRIPT

  • 7/25/2019 11.2.4.5 Packet Tracer - Configuring Secure Passwords and SSH

    1/2

    Packet Tracer Configuring Secure Passwords and SSH

    Topology

    Addressing Table

    Device Interface IP Address Subnet Mask Default ateway

    G0/0 255.255.255.0 N/A

    NIC 255.255.255.0

    Scenario

    The network administrator has asked you to prepare!!!!!!!!!!!!!!!!!!!!!!!!!!!!!for deployment.Before it an !e onneted to the network" seurity measures must !e ena!led.

    "e#uire$ents

    Confi#ure I$ addressin# on!!!!!!!!!!!!!!!!!!!!!!!!!!!!!aordin# to the Addressin# Ta!le.

    Console into!!!!!!!!!!!!!!!!!!!!!!!!!!!!!from the Terminal on $C%A.

    Confi#ure I$ addressin# on!!!!!!!!!!!!!!!!!!!!!!!!!!!!!and ena!le the interfae.

    Confi#ure the hostname as!!!!!!!!!!!!!!!!!!!!!!!!!!!!!.

    &nrypt all plainte't passwords.

    _________________(config)# service password-encryption

    (et a stron# seret password of your hoosin#.

    (et the domain name to!!!!!!!!!!!!!!!!!!!!!!!!!!!!!%co$)ase%sensiti*e for sorin# in $T+.

    _________________(config)# ip domain-name [[R1Name]].com

    Create a user of your hoosin# with a stron# password.

    _________________(config)# username any_userpassword any_password

    Generate ,02-%!it (A keys.

    &ote In $aket Traer" enter the crypto key generate rsa ommand and press &nter to ontinue.

    _________________(config)# crypto key generate rsa

    Blok anyone for three minutes who fails to lo# in after four attempts within a two%minute period.

    1 20, Ciso and/or its affiliates. All ri#hts reser*ed. This doument is Ciso $u!li. $a#e 'of (

  • 7/25/2019 11.2.4.5 Packet Tracer - Configuring Secure Passwords and SSH

    2/2

    Packet Tracer Configuring Secure Passwords and SSH

    _________________(config)# login block-for 180 attempts wit!in 1"0

    Confi#ure the 3T4 lines for (( aess and use the loal user profiles for authentiation.

    _________________(config)# line vty 0

    _________________(config-line)# transport input ss!

    _________________(config-line)# login local

    (a*e the onfi#uration to N3A6.

    Be prepared to demonstrate to your instrutor that you ha*e esta!lished (( aess from

    !!!!!!!!!!!!!!!!!!!!!!!!!!!!!to!!!!!!!!!!!!!!!!!!!!!!!!!!!!!.

    Isomorph I7!!!!!!! !!!!!!! !!!!!!!

    1 20, Ciso and/or its affiliates. All ri#hts reser*ed. This doument is Ciso $u!li. $a#e (of (