SlideShare a Scribd company logo
CISCO IOS HARDENINGPresented By :- Shweta MehtaSuneet Malik
Cisco Ios Suneet
IntroductionCisco IOS SoftwareInternetwork Operating systemUsed on Cisco Routers and switchesPackage integrated with multitasking OSCharacteristics CLI(Command Line Interface)HardeningProcess of securing a system by reducing vulnerabilities
Three Planes of a NetworkManagement Plane
Control Plane
Data Plane
Each plane provide     different functionality
MANAGEMENT PLANE
Management Plane FortificationImplement general management plane hardening.
Use strong password and secure them strongly.
Use the login password retry lockout feature.
Monitor the memory and CPU load of network devices.
Disable unneeded services Contd..Secure interactive management sessions.Limit which IP addresses may establish    management sessions to the network devices.- Access classes		- Management Plane protection.		- Control plane policing.Use warning banners for malicious users.Use secure protocols.
Contd..Limit access to network with infrastructure access control List iACLs.Permit connections that are required for routing protocols and network management.Explicitly deny  all other IP traffic  to any network device.Permit all transit traffic that crosses the network and is not destined for infrastructure devices.
Contd..Permit tcp host 192.168.1.2 host 192.168.1.1 eq 179
Permit tcp host 192.168.1.2 eq 179 host 192.168.1.1
Permit tcp host 192.168.1.3 any eq 22
Deny ip any 192.168.1.0 0.255.255.255
Use Authentication ,Authorization and accounting (AAA).
Fortify SNMP.
Utilize logging best practices.
Utilize configuration management features of CISCO IOS Software.NEXT STEP  ????CONTOL PLANE
CONTROL PLANE

More Related Content

PDF
Cisco Router and Switch Security Hardening Guide
DOCX
How to configure cisco asa virtual firewall
PDF
Palo Alto VM-100 Configuration Lab
PPTX
Factory setup wsa_9.2_v1.0
PDF
Router security-configuration-guide-executive-summary
PPTX
Basic ASA Configuration, NAT in ASA Firewall
PPTX
NAT with ASA & ASA Security Context
PDF
CCNA Security Lab 9 - Enabling SSH and HTTPS access to Cisco IOS Routers - CLI
Cisco Router and Switch Security Hardening Guide
How to configure cisco asa virtual firewall
Palo Alto VM-100 Configuration Lab
Factory setup wsa_9.2_v1.0
Router security-configuration-guide-executive-summary
Basic ASA Configuration, NAT in ASA Firewall
NAT with ASA & ASA Security Context
CCNA Security Lab 9 - Enabling SSH and HTTPS access to Cisco IOS Routers - CLI

What's hot (20)

PDF
Basic Cisco 800 Router Configuration for Internet Access
PPT
CCNA Security - Chapter 4
PPTX
Setting up Cisco WSA Proxy in Transparent and Explicit Mode
DOCX
8 steps to protect your cisco router
PDF
5.3.1.2 packet tracer skills integration challenge instructions
PDF
Nat mikrotik
PPT
Cisco pix firewall configuration for dcsl
PPT
CCNA Security 06- AAA
PDF
Network Security
PDF
Site-to-Site IPSEC VPN Between Cisco ASA and Pfsense
PPTX
What is Firewall?
PDF
Linux Security Crash Course
PDF
CCA security answers chapter 2 test
PPT
CCNA Security 05- securing the management plane
PPT
Basics to Configure NW Device
PPTX
Security context on asa firewall
PPT
CCNA Security 09- ios firewall fundamentals
PPT
Net prog
PPT
PDF
Konfigurasi dasar Cisco Router
Basic Cisco 800 Router Configuration for Internet Access
CCNA Security - Chapter 4
Setting up Cisco WSA Proxy in Transparent and Explicit Mode
8 steps to protect your cisco router
5.3.1.2 packet tracer skills integration challenge instructions
Nat mikrotik
Cisco pix firewall configuration for dcsl
CCNA Security 06- AAA
Network Security
Site-to-Site IPSEC VPN Between Cisco ASA and Pfsense
What is Firewall?
Linux Security Crash Course
CCA security answers chapter 2 test
CCNA Security 05- securing the management plane
Basics to Configure NW Device
Security context on asa firewall
CCNA Security 09- ios firewall fundamentals
Net prog
Konfigurasi dasar Cisco Router
Ad

Similar to Cisco Ios Suneet (20)

PPT
Curso de Seguridad de Redes Inalambricas CCNA
PPT
CCNA_Security_02.ppt
PDF
IPv6-Hardening.pdf
PPTX
CCNP ROUTE V7 CH8
PDF
PDF
Ch2 - Securing Network Devices - CCNA Security.pdf
DOCX
Ccna security comparison
PPTX
Ccna sv2 instructor_ppt_ch2
PPT
CCNA Security - Chapter 2
PPTX
640-554 IT Certification and Career Paths
PDF
Cisco Ios Access Lists 1st Edition Jeff Sedayao
PPTX
Securing management, control & data plane
PPTX
CCNASv2_InstructorPPT_CH2.pptx
PDF
Securing Switch Access
PDF
O reilly cisco ios access lists
PDF
Oreilly cisco ios access lists
PDF
5 ip security ipsec gre
PDF
Ch 13: Network Protection Systems
PDF
PLNOG 8: Merike Kaeo - Guide to Building Secure Infrastructures
PDF
Implementing Cisco Network Security Exam (210-260)
Curso de Seguridad de Redes Inalambricas CCNA
CCNA_Security_02.ppt
IPv6-Hardening.pdf
CCNP ROUTE V7 CH8
Ch2 - Securing Network Devices - CCNA Security.pdf
Ccna security comparison
Ccna sv2 instructor_ppt_ch2
CCNA Security - Chapter 2
640-554 IT Certification and Career Paths
Cisco Ios Access Lists 1st Edition Jeff Sedayao
Securing management, control & data plane
CCNASv2_InstructorPPT_CH2.pptx
Securing Switch Access
O reilly cisco ios access lists
Oreilly cisco ios access lists
5 ip security ipsec gre
Ch 13: Network Protection Systems
PLNOG 8: Merike Kaeo - Guide to Building Secure Infrastructures
Implementing Cisco Network Security Exam (210-260)
Ad

Cisco Ios Suneet

Editor's Notes

  • #6: Management plane is the plane that receives and send the traffic that is used to access, configure and manage a device as well as monitor its operation and network on which it is deployed .The management plane is made up of protocols that support operational need of the network .The management plane includes interactive access to network devices using secure shell(SSH) or Telnet statistics collection using SNMP.
  • #12: Control plane functions consist of protocols and processes Control Plane consist of Protocols.