Tokens Allowed by Banner Type
Token Description motd
banner
login
banner
exec
banner
incoming
banner
slip-ppp
banner
Cisco IOS Software has a number of services and protocols available on a device. Many of them are unnecessary in normal
operation and can be susceptible to information gathering or network attacks. It is important to identify all the services on each
device and ensure that they are configured appropriately (with hardened security). Only required services should be enabled devices, and unnecessary services and protocols should be disabled. Limiting these unnecessary and unwanted services and
protocols running on the device greatly enhances the device security and prevents it from being exploited by the known and
unknown vulnerabilities.
The sections that follow outline some of the common services and protocols available in IOS and other Cisco devices such as
firewalls. Some of these services are used for management (for example, Cisco Discovery Protocol [CDP], Simple Network
Management Protocol [SNMP], Network Time Protocol [NTP], Hypertext Transfer Protocol [HTTP]). These management services
must be tightly configured to allow access to authorized users only.
Pages:
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137