[c-nsp] IOS listen on ports 1720 and 5060

Robert Blayzor rblayzor at inoc.net
Mon Dec 26 12:28:05 EST 2005


After recently upgrading some 7200's to the following IOS rev:

Cisco IOS Software, 7200 Software (C7200-IK9S-M), Version 12.3(14)T5,
RELEASE SOFTWARE (fc2)


I noticed that the routers are listening on ports 1720 (H.323) and 5060
(SIP) by default and I cannot figure out how to disable these services.

Aside from the obvious and wrapping them up with an access-list or
firewall rule, is there a way to simply turn them off in the routers?

I've tried things such ad:

no telephony-service
gatekeeper
  shutdown
no gateway


And yet the services still listen, at least on the routers loopback
interfaces... I've not checked other interfaces but I assume the same.

-- 
Robert Blayzor, BOFH
INOC, LLC
rblayzor\@(inoc.net|gmail.com)
PGP: 0x66F90BFC @ http://pgp.mit.edu
Key fingerprint = 6296 F715 038B 44C1 2720  292A 8580 500E 66F9 0BFC

Press Ctrl-Alt-Del now for IQ test.


More information about the cisco-nsp mailing list