change ssh port?

I'm changing the port ssh on my cisco 850 (ios v12.4 (4) T4)

I found the following instructions: http://www.cisco.com/en/US/products/ps6350/products_configuration_guide_chapter09186a00804831de.html#wp1020480

but most I've read this, I think that just speaks of reverse ssh.

I want to change the port on which the router is listening to ssh sessions. is this possible? should I just before a foreign port to the internal ip address on port 22?

I have a router Cisco 800 Series running 12.3 (7) T7 and have managed to change my SSH port by using something similar to the information provided in the link that you referenced.

I don't remember where I found the config info, but it's here:

Router (config) # ip port ssh 2229 62 Rotary

Router (config) # access - list 129 allow tcp 0.0.0.x x.x.x.x any eq 2229

Router (config) # line vty 0 4

Router (config-Line) # access - class 129 in

The first line sets the SSH port to 2229 - choose any port that is not in conflict with something important

The rotating group is arbitrary and is NOT related to a given line VTY number

The access list prevents all ports to access the router - fill the mask subnet and generic appropriate

That's all there is to it. I tried several simultaneous sessions using the same number of port without problem.

The only thing to watch is AAA. If you follow the example of your link using the 'login authentication default' statement, you need to enable AAA using 'aaa new-model' and follow with an order specifying where passwords will be checked.

This could be 'aaa authentication login default group Ganymede + local' If you use a GANYMEDE server + with a downturn in the local database on the router, or something as simple as "aaa authentication login default" local to use the local database on the router.

Hope this helps!

Please provide your comments so that I know if it worked for you.

Thank you!

VRS

Tags: Cisco Security

Similar Questions

  • standard no ssh ports

    Okay... here's...  I've changed ssh server is running on a non-standard port.  I changed it in/etc/ssh/sshd_config as I noticed that I need to change it to etc/vmware/firewall/services.xml.  After this, I restarted ssh as well as disabled, enabled ssh into esx firewall and restarted the firewall.  Everything works very well.  I now ssh into my host on the other port... perfect working.  The only thing is virtual Center.  When I look at the configuration of the virtual host center he said than sshServer runs on port 22... I know that this isn't... I can't ssh into the box on this port.

    I know that's not that big of a deal since everything works the way it should be, I wondered why the changes that I made do not appear in the virtual Center... any help would be appreciated.

    Hello and welcome to the forums.

    Try a service mgmt-vmware restart on one or more hosts and see if that helps.  If not, try to restart the VirtualCenter server as well.

    Good luck!

  • Manager profile - can I change the Port?

    Dear community,

    I have a little problem. A customer uses an OSX Server (to El Capitan. 10.11.2 + Server Version 5.0.15).

    The problem is, there is an Exchange Server that uses Port 443, so I can't use this port.

    My first test was a Port Forwarding of incoming: 8443 to macserver:443. I can reach the server, but when I log in, then it redirects me to the default 443 ssl port.

    I have checked the ssl httpd configuration, took a look in other apache-configs... changed ports 443 to 8443... but without success...

    How do you do that? Someone had the same problem?

    Thanks in advance

    No you can not change the ports using the Profile Manager. Even if you could change the ports at the end of the Profile Manager server, you have absolutely no chance of being able to change the equivalent settings built into iOS etc devices.

    Having two or more public IP addresses different so that the Exchange Server can have its own without conflict with the Profile Manager is an option that most of the larger organizations would use.

    It maybe by using a reverse proxy server could also be an option. The reverse proxy server would transmit 443 traffic to any server, it is by looking at the URL, for example exchange.domain.com:443 gets sent to this server and the mdm.domain.com:443 is passed to the other.

    NGINX is the main reverse proxy server software.

    PS. If it is not possible to overturn or transmit proxies the other ports used for profile, i.e. the NPP ports Manager, it is possible to reverse proxy standard web ports 80 and 443.

  • Web application server - how to change the Port

    When installing LabVIEW, OR adds a process called "Application Web Server" (among a long list of other items) at startup.  It became an issue for our Windows users want to run our real application of Web server on their local computer.  My temporary work was about just disable the Web Application Server in the trunk to the port (8080) are available for other items.  My questions are the following:

    First of all, what kind of impact I look at developing LabVIEW programs?  This process is necessary if I want to work on the network applications?

    Second, it is possible to change the port number of the Web app server to avoid any problems that may exist?

    The Web Application Server is used by LabVIEW Web Services - only if you are not using/writing/developing LabVIEW Web Services, then it will not affect you.

    To change the port, open the Web-based Configuration utility NOR (normally on something like http://localhost:3582 /) and under "Web Server Configuration", you should see "Application Web Server" and you can select which port should be used.

    You can also access it Max by right click on "My System" and selecting "Web Configuration.

  • Change the Port number of e-mail outgoing "587" as required to use the Comcast e-mail

    When my email out through Comcast did not all Comcast more, technical support told me that I had to change the number of Port for outgoing in Windows Live Mail beta 110 to 587.

    Worked well, until I had a system crash.

    When I reinstalled Windows Live Mail, I could fine is no longer the 'Tools' button in the status bar and by result cannot change the port number.  So, I can't send emails from Comcast of Windows Live Mail.

    The inbound port setting is apparently correct already, as I had no reception bad don't mail... sending mail.

    I hope it will work for you.  I use Windows Live Mail 2009.

    If you look on the left side of the window, you will see the name of your e-mail account.  (Underneath there is Inbox, drafts, sent items, etc.)
    You'll want to right-click on the name of the mail account. (Right above where it says Inbox.)
    Then you'll want to click on properties.
    A properties box opens.  You'll want to click on the tab "Advanced" on the right side of the Properties window.
    The first area is the SMTP (outgoing) port number.  You just want to change it in 587.

  • g71340 - us: how to change usb port g71340 - us for laptop

    How can I change a usb port on the hp g71340 - us for laptop? There are two ports on the right and a port on the left. one of the two ports on the right side is broken

    @billboddy ,

    Hello and welcome to the HP support forums.  Unfortunately for change your ports USB requires a motherboard change.  That would require a repair.

    Please contact our technical support at the 800-474-6836. If you do not live in the United States / Canada region, please click the link below to get help from your region number. http://WWW8.HP.com/us/en/contact-HP/WW-phone-assist.html

    Thanks again for posting and have a great day.

  • Nexus1000v: Change "max-ports" disruptive?

    Hello

    I ve change "max-ports" in a port-profile vethernet.

    This command causes a disturbance on the other virtual machines?

    Version of Nexus 1000v 4.2 (1) SV1 (4)

    Thank you!

    Andreas

    Andreas,

    Increase the number of port with the max-port setting does not affect existing traffic.

    http://www.Cisco.com/en/us/docs/switches/Datacenter/nexus1000/SW/4_2_1_s_v_1_4_a/port_profile/configuration/guide/n1000v_portprof_2create.html#wp1074403

    HTH

    Padma

  • How to change the port not MDS?

    I want to change the port default is 8080 of my MDS.

    Where should I change?

    Thanks in advance,

    Bala.

    Change the value in the rimpublic.property file, you find in MDS/config

  • Is ACS 4.2 - possible to change the port of replication?

    Hello

    try to find out if she some tweek to change the port of TCP/2000 ACS replication to something else.

    I know that it is possible to make a different map policy or not to inspect the skinny Protocol in order to avoid the conflict, but not the solution I'm looking for. I was wondering if anyone knows of a different way to change the port of 4.2 ACS replication.

    Hello

    What is the version of the CSA, you run?

    If you then run ACS 4.2.1.15

    Problem : ========= ACS replication port re-configuration. Resolution : ============ Please follow the following steps: 1.       Interface configuration > Advanced Options > Check the checkbox ACS Communication Port Configuration. 2.       System Configuration > service control > Configure the Port to be used for the ACS Internal Communication (choose any port between 2010 to 2025)

    Regards,
    Anisha

    P.S.: please mark this thread as resolved if you think your query is answered.

  • Change the port Windows 8

    I always have problems with my DVD ROM.  Only manufacturer of drives will run, I tried several fixes and nothing has worked, it is for those who have this problem and changed the parameters of the port, the problem was solved quickly.  So, will someone Please instruct me how to change the Port settings.  I would like to set up the DVD player as a main.  I have a laptop HP Pavilion g7.  Please help; This problem has plagued me for weeks!

    In fact, there is nothing wrong with the discs. The question seems to be somehow related to theparameter "Legacy" OS. If I turn the setting reads all disks.  Now I just need to know EXACTLY what all the BIOS settings should be for the machine, for example I know now to disable "Secure Boot", but what of the rest of the parameters be.

  • Change the port number of the IOM servers

    How do I change port number of servers IOM to 14000 to some other port after installation/configuration and use of the server for more than a year.

    Connect to the weblogic console and stop the server instance managed IOM. Select the IOM server instance and change the port. Start it up again, then EM to change all internal references to the new port. Also change any other application integrated to reflect the change of port.

  • After changing the port (1521 to 1525 in listener.ora and tnsnames.ora) OEM: the database is down

    Hello

    I'm installing Oracle Database 11 g 2 (11.2.0.4) on Oracle Linux 7.1.

    In short, what I'm trying to do now is changing the default port of 1521 to 1525.

    So I stopped the listener (lsnrctl stop) and then changed my listener.ora and tnsnames.ora:

    Listener.ora

    listener.ora # Network Configuration file: /u01/app/oracle/product/11.2.0/dbhome_1/network/admin/listener.ora

    # Generated by Oracle configuration tools.

    LISTENER =

    (DESCRIPTION_LIST =

    (DESCRIPTION =

    (ADDRESS = (PROTOCOL = CIP)(KEY = EXTPROC1521))

    )

    (DESCRIPTION =

    (ADDRESS = (PROTOCOL = TCP (PORT = 1525))(HOST = localhost))

    )

    )

    ADR_BASE_LISTENER = / u01/app/oracle

    tnsnames.ora

    tnsnames.ora # Network Configuration file: /u01/app/oracle/product/11.2.0/dbhome_1/network/admin/tnsnames.ora

    # Generated by Oracle configuration tools.

    BI =

    (DESCRIPTION =

    (ADDRESS_LIST =

    (ADDRESS = (PROTOCOL = TCP (PORT = 1525))(HOST = localhost))

    )

    (CONNECT_DATA =

    (SERVER = DEDICATED)

    (SERVICE_NAME = bi)

    )

    )

    And then changed the local_listener:

    SQL > ALTER SYSTEM SET LOCAL_LISTENER = "(ADDRESS = (PROTOCOL = TCP)(HOST=localhost) (PORT = 1525))";

    SQL > ALTER the REGISTRY SYSTEM;

    Finally, I started the listener (lsnrctl start) again.

    Then I tried to connect using Oracle SQL Developer to the customer. The port of 1525 works perfectly well.

    The problem is, when I open the OEM (Oracle Enterprise Manager), it says: "the database is down. Please specify the credentials of the host to access the restart and database diagnostic tools," which is like this: http://imgur.com/oKLPW65

    So I logged on the account of the host, and it shows that the database instance, listener and the agent is all down like this: http://imgur.com/Bzr84bz

    It seems that the port used by the OEM is always 1521.

    What should I do? Can someone help me solve the problem?

    Thanks in advance.

    UPDATE:

    After changing the emoms.properties & the targets.xml (thanks to Elisabeth), you will need to reconfigure dbconsole using emca.

    So what I'm doing is decreasing the config:

    $ emca - deconfig dbcontrol db-rest drop

    and then create again:

    $ emca - create config dbcontrol db-rest

    Voila.

    Best regards

    Jerry Antonius

    Hello

    Try to change the port numbers in the following files

    Don't port no 1521 to 1525

    $ORACLE_HOME /_SID/sysman/config/emoms.properties

    oracle.sysman.eml.mntr.emdRepPort = 1525 (before 1521)

    $ORACLE_HOME /_SID/sysman/emd/targets.xml

    (Before 1521)

    (Before 1521)

  • SSH port forward in upcoming white

    I am trying to set up a connection to database via a hopserver using SSH port forwarding, as described in the article by Jeff SSH Tunnel with #SQLDev 4.1 EA1 and ai2 side by side .  I have screenshots, but don't want to publish sensitive information in the forum - where the descriptive text instead.

    I have 4.1.0.18 SQL Developer build HAND - 18.37 (ai2), identical to his article.

    My laptop with SQL Developer (internal corporate network)

    My-jmpbox-01 (linux hopserver that I can ssh to)

    prod-db-01 (Server database DB on port 1521 of housing)

    From my laptop, I can't not directly to the prod-db-01.  First of all, I must first SSH to my-jmpbox-01.

    Therefore, in the developer SQL 4.1 ai2, here's what I'm trying to do:

    Display-> SSH

    click right-> new host SSH SSH hosts

    Host = my-jumpbox-01

    Port: 22

    Click OK

    Back to the host SSH window

    my_unix_user@my-JumpBox-01 right click-> TEST


    Enter your regular LDAP password

    Click OK

    Back to the host SSH pane:

    Click right my_unix_user@my-jumpbox-01 -> New Remote Port Forward

    Name prod-db-01

    Host: prod-db-01

    Port: 1521

    automatically assign the remote port

    Ok

    should now look like this:

    prod-db-01. right click-> CONNECT

    password

    and OK

    now move your mouse over the line of prod-db-01 and I see a DISTANT PORT (which probably indicates that he got a course valid tunnel).

    Back in the connections (top left) pane

    Click + icon (new connection)

    Display "new database connection:

    login name: prod-db-01

    user name: scott

    password: *.

    connection type: SSH

    Under the Port Forward Dropdown, I don't see the my_unix_user@my-jumpbox-01 or the prod-db-01-connection. It is completely empty.  The troubleshooting steps I can take? has anyone else seen this problem before?

    > Click right my_unix_user@my-jumpbox-01-> new remote Port Forward

    You want a LOCAL port forward

    Take a remote port, for example, your database server network traffic and forward on the SSH tunnel to another destination, say to your client computer.

    An attacker Local port would take your jdbc via SSH traffic to a another machine before a database connection was attempted.

  • Change the port of the who

    Hello

    I need to change the port of cloudcontrol 12.1.0.4 7802 to 443, the default https port, firewall problem. There was a document in support of the oracle, but I find it anymore. I know I need to change the permission of det .apachectl, oracle.sysman.emSDK.svlt.EMConsoleServerHTTPSPort, ssl.conf and emgc.properties. Thanks for any help.

    Best regards

    Thomas

    Hi Thomas,

    To change the port of SGD, you can follow the MOS 1381030.1 note

    Thank you

    Sumesh.

  • VCenter Service does not start after changing the port number

    Hi all

    Accidentally, I changed the port number for the Vcenter server from the portal of VCenter 10443 and dint realize that the Java application uses 10443 so.

    Could not start the server vcenter service, because its raise an error saying 10443 port is already im currently byt used another application.

    I tried to stop the Java service, in order to start the vcenter service and make changes to port again, numbers but I am unable to stop the java application.

    Please, if anyone knows how to change the number of Vcenter via config port or any other way, please throw a comment... Its much appreciated.

    Thank you

    Nirmal

    If you use the MSSQL database, locate WebService.Ports.http in the VPX_PARAMETER table and change to the correct port.

Maybe you are looking for

  • PIN

    When you get your SIM from your provider has been defined with its own pin code? someone knows I am with Vodafone and my sim card seems to have a PIN already entered.

  • Where can I download for WMC radio tuner?

    Where can I download Radio software (driver) for my Windows Media Center tuner?

  • Find a photo of IMAQdx GetImagae.vi and then save

    Hello, I'm using a while loop to check if there is an image form a GIGE camera, the time-out period for the acquisition of trigger is set at the lower point and what I'm doing is going some time loop and save a picture IF it is available from the cam

  • HP Envy 5530: Yellow ink not print

    Yellow Ink stopped printing with the Tricolor cartridge; replaced by the new HP cartridge and not yet. Also tricolour ink not detected. Tried all the steps HP support, including the persistent page terminals on the cartridge and to the holder. Also r

  • I use my new 42 '' TV as my monitor and I lost the right of the taskbar

    I just bought a 42 "lcd/led TV and using as my monitor, everything is fine except the right side of the taskbar is missing. the taskbar is still there coz I can set the cursor to the right of the screen and then I see some of the icons. I tried to ch