North American Network Operators Group

Date Prev | Date Next | Date Index | Thread Index | Author Index | Historical

Re: IOS 12.3(x) Strange service ports open on router

  • From: Christopher L. Morrow
  • Date: Fri Apr 09 17:55:04 2004

On Fri, 9 Apr 2004, Iljitsch van Beijnum wrote:

>
> On 9-apr-04, at 22:27, Pekka Savola wrote:
>
> > Another pet peeve of roughly the same category: when you enable IPv6,
> > telnet is automatically open to the world (using v6), even if you have
> > disabled v4 telnet with an access-list.
>
> > The vendor refused to believe this is a problem,
>
> Whether or not this is a problem is in the eye of the beholder, but
> from what I've seen, this is standard practice with any kind of packet
> filter. As far as I know, only hosts.allow-style tcp wrapping is
> agnostic about the IP version.

So, with a cisco style vty acl how does one do both v4 and v6 filterage?
(not speaking as a v6 user)