[c-nsp] Best way to secure vty access

Jon Allen Boone ipmonger at delamancha.org
Mon Apr 18 16:29:06 EDT 2005


Folks,

   I want to give someone access to an IOS device, but I want to put 
limits on what other devices they can telnet out to.  What's the best 
way to do this?

   I thought of applying an ACL on the "outbound" interface that 
permitted telnet initiation only to certain IP addresses, but that 
would limit everyone on the device.

   Is there a user-specific means to lock down what remote hosts they 
can access?  The IOS version is 12.3(11)T.

--jon



More information about the cisco-nsp mailing list