Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:
edgeos



Security Basics: access-list outside_access_in permitting ssh from specific hosts/ip's

access-list outside_access_in permitting ssh from specific hosts/ip's

From: <secrookie_at_gmail.com>
Date: Mon, 12 May 2008 20:46:27 +1000

I have 3 access lists to permit ssh.

The following permits ssh from any hosts thru my pix to port tcp/22.
Works great.

  access-list outside_access_in line 12 permit tcp any interface
outside eq ssh log 6 interval 300 (hitcnt=1)

I now want to increase the security and only permit hosts from abc.com
and aaa.bbb.ccc.ddd coming thru tcp/22. Do these access-lists look
correct? I tried them but it doesnt appear to work.

  access-list outside_access_in line 12 permit tcp host abc.com
interface outside eq ssh log 6 interval 300 (hitcnt=0)
  access-list outside_access_in line 13 permit tcp host
aaa.bbb.ccc.ddd interface outside eq ssh log 6 interval 300 (hitcnt=0)

regards
secrookie
Received on May 12 2008

[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]