[c-nsp] Feedback on upcoming removal of FTP access to secured software

Jon Lewis jlewis at lewis.org
Tue Sep 14 22:17:33 EDT 2010


On Tue, 14 Sep 2010, Gert Doering wrote:

> Hi,
>
> On Tue, Sep 14, 2010 at 09:00:01AM -0400, Jason Gurtz wrote:
>> This is a poor decision and should be reconsidered; Cisco should be
>> expanding, not reducing FTP access.  One should be able to login via ftp
>> with their CCO ID/password and download full encryption software.  If
>> business needs dictate, then via FTP over SSL or a similar secure,
>> ftp-like protocol such as sftp (part of ssh).
>
> Full ACK.

Same here.  This is nuts.  For several years I managed a large network 
from a poorly connected remote office.  My typical method for IOS upgrades 
was (and still is) to navigate to the point of being ready to download the 
needed image from the web site, then do the actual download using wget on 
our server (via an SSH session) where we actually store/serve images.

Downloading IOS images to my workstation (whereever it may be) makes no 
sense.

----------------------------------------------------------------------
  Jon Lewis, MCP :)           |  I route
  Senior Network Engineer     |  therefore you are
  Atlantic Net                |
_________ http://www.lewis.org/~jlewis/pgp for PGP public key_________


More information about the cisco-nsp mailing list