CCNA Network Services and Security • Set 13
CCNA Network Services and Security Practice Test 13 — 15 questions with explanations. Free, no signup.
You are connected to R1 via console. R1 is a router that should restrict SSH access to only the management station at 192.168.1.100. Currently, SSH is enabled but any IP can connect. Configure a standard named ACL called 'SSH_ACL' to permit only the management station, and apply it to the VTY lines to filter incoming SSH connections. Ensure the VTY lines use SSH only (no Telnet). The SSH version should be set to 2.
hostname R1 ! interface GigabitEthernet0/0 ip address 192.168.1.1 255.255.255.0 no shutdown ! line vty 0 4 password cisco login ! ip domain-name example.com crypto key generate rsa general-keys modulus 1024 !