Chapter 2 Enabling Remote Acces To The Ace; Guidelines And Limitations; Default Settings - Cisco 4700M Administration Manual

Application control engine appliance
Hide thumbs Also See for 4700M:
Table of Contents

Advertisement

Guidelines and Limitations

Guidelines and Limitations
This section describes the guidelines and limitations for the remote access function and includes the
following topics:
Telnet Management Sessions
The ACE supports a maximum 16 concurrent Telnet management sessions for the Admin context and 4
concurrent Telnet management sessions for each user context. The ACE supports a total maximum of
256 concurrent Telnet sessions.
SSH Management Sessions
The ACE supports a maximum of 16 concurrent SSH management sessions for the Admin context and
4 concurrent SSH management sessions for each user context. The ACE supports a total maximum of
256 concurrent SSH sessions.
The ACE can generate the DSA and RSA keys required to establish an SSH session and encrypt and
decrypt messages. The keys are generated in pairs—one public key and one private key. The global
administrator performs the key generation in the Admin context. All contexts associated with the ACE
share the common key. There is only a single host-key pair.
ICMP Messages
By default, the ACE does not allow ICMP messages to be received by an ACE interface or to pass
through the ACE interface. ICMP is an important tool for testing your network connectivity; however,
network hackers can also use ICMP to attack the ACE or your network. We recommend that you allow
ICMP during your initial testing, but then disallow it during normal operation.

Default Settings

Table 2-1
Table 2-1
Default Remote Access Parameters
Parameters
Concurrent Telnet management sessions per context
Concurrent SSH management sessions per context
Ability of an ACE interface to receive ICMP messages or allow ICMP messages to pass
through it
Status of the following match protocol command protocols: http, https, icmp, kalap-udp,
snmp, ssh, telnet, and xml-https.
Cisco 4700 Series Application Control Engine Appliance Administration Guide
2-2
Telnet Management Sessions
SSH Management Sessions
ICMP Messages
lists the default settings for the ACE remote access function.
Chapter 2
Enabling Remote Access to the ACE
Default
Admin context: 16
User context: 4 (each)
Admin context: 16
User context: 4 (each)
Disabled
Disabled
OL-20823-01

Advertisement

Table of Contents
loading

This manual is also suitable for:

4700 series

Table of Contents