Question

In: Computer Science

There is no question the router plays a vital role in networking. If this device were...

There is no question the router plays a vital role in networking. If this device were to be controlled by an attacker, then the entire CIA goal can be violated. As such, you can argue about the need to protect the router administratively, physically, and technically. Our focus again is on the technical part. Having said this, discuss the methods that can be used on a standard IOS router that will prevent unauthorized access to the router. Also, discuss how privilege levels and role-based CLI can improve the security on the router.

Solutions

Expert Solution

The Authentication, Authorization, and Accounting (AAA) framework is plays an important role to secure network devices. The AAA framework provides authentication of management sessions and can also limit users to specific, administrator-defined commands and log all commands entered by all users. These also provides highly configurable environment that can be altered with respect to different needs of network.

TACACS+ Authentication

It is an authentication protocol that IOS devices can use for authentication. The management users can access IOS device via SSH, HTTPS, telnet, or HTTP. It provides the ability to use individual user accounts for each network administrator. When the user does not depend on a single shared password, the security of the network is improved and accountability is strengthened.

Authentication Fallback

If there comes a time when all the TACACS+ servers are unavailable then the IOS devices can rely on secondary authentication protocol. Typical configurations include the use of local or enable authentication if all configured TACACS+ servers are unavailable.

TACACS+ Command Authorization

Command authorization with TACACS+ and AAA provides a mechanism that permits or denies each command that is entered by an administrative user. When the user enters EXEC commands, IOS sends each command to the configured AAA server. The AAA server then uses its configured policies in order to permit or deny the command for that particular user.

Redundant AAA Servers

The AAA servers that are leveraged in an environment should be redundant and deployed in a fault-tolerant manner. This helps ensure that interactive management access, such as SSH, is possible if an AAA server is unavailable.

Role-based CLI allows administrator to create views. Views are the set of operational commands and configurational capabilities. These provide selective or partial access. Views restrict user access to Cisco IOS command-line interface (CLI) and configuration information which means that views can define what commands should be accepted and information is visible which in turn means network administrators can exercise better control.Although users can control CLI access via both privilege levels and enable mode passwords, these functions do not provide network administrators with the necessary level of detail needed when working with Cisco IOS routers and switches. CLI views provide a more detailed access control capability for network administrators, thereby, improving the overall security and accountability.


Related Solutions

Cholesterol is vital to human health and well being. It plays an important role in the...
Cholesterol is vital to human health and well being. It plays an important role in the structure, fluidity and permeability of the cell membrane, and helps synthesize vitamin D and various hormones. Although cholesterol is essential for human health, high levels of cholesterol in the blood stream can lead to damaged blood vessels and cardiovascular disease. The cholesterol level in mg/dl of a group of Canadian adults is assumed to be normally distributed. 1. Five individuals are randomly selected from...
it is argued that effective, formal communication plays a vital role in the success of organisations....
it is argued that effective, formal communication plays a vital role in the success of organisations. as the administrator of an NGO with 20 employees of what relevance do you think communication can be to you
Problem defining plays vital role in decision making, if a condition is not fully defined than...
Problem defining plays vital role in decision making, if a condition is not fully defined than how it effects the decision?
In today's world, accounting plays a very vital role in everyone's life and it can positively...
In today's world, accounting plays a very vital role in everyone's life and it can positively and negatively affect one's life depending on how it is used. Basic accounting skills such as recording, analyzing, budgeting, researching and reporting are used in everyday life without realizing that these skills are applied. These accounting skills are very important when applied to one's daily life because it helps control and manages our life financially. Therefore, if these skills are not managed well, then...
What is networking?What is the function of a router?What is routing?What is the...
What is networking?What is the function of a router?What is routing?What is the best path to your destination?What is a switch?What is a WAN, PAN, CAN, MAN and LAN?What is the largest WAN?
Discuss how economics plays a vital role in shaping public discussion in the following policy areas:...
Discuss how economics plays a vital role in shaping public discussion in the following policy areas: Household taxation Business taxation Import taxation (tariffs) Provide several examples of how economics plays a role in policy or public discussion related to your career. Why is understanding economics important for you?
1. You have the choice of selecting a networking device with WEP or a device with...
1. You have the choice of selecting a networking device with WEP or a device with WPA. Which offers better      security and why? 2. The term association is characterized by which of the following? a. Describe the MAC address of the client. b. Prevent excessive routing. c. Describe that a wireless connection has been obtained. d. Prevent unauthorized network access. 3. Wi-Fi is which of the following? a. The Wi-Fi Alliance, which is an organization that tests and certifies...
1) You have a device that wants to transmit many packets to a router, which is...
1) You have a device that wants to transmit many packets to a router, which is sometimes busy serving other users. At every second, your device attempts to send a packet. It succeeds with probability 1/5 and the success of any attempt is independent of the success of other attempts. What is the average number of attempts until the first success? 2)You have a device that wants to transmit many packets to a router, which is sometimes busy serving other...
Economics plays a role in personal finance. Describe the role that economics plays in your personal...
Economics plays a role in personal finance. Describe the role that economics plays in your personal financial plan. Also, the use of credit plays a role in a personal financial plan. Describe the advantages and disadvantages of credit and explain how you will use it as part of your financial plan. Specifically address the following required elements: Explain the role the government plays in personal finance (focus on regulations, laws, economic policy, governmental assistance, etc.). Explain the impact of the...
Respond to the following in a minimum of 175 words: Discuss how economics plays a vital...
Respond to the following in a minimum of 175 words: Discuss how economics plays a vital role in shaping public discussion in the following policy areas: Household taxation Business taxation Import taxation (tariffs) Provide several examples of how economics plays a role in policy or public discussion related to your career. Why is understanding economics important for you?
ADVERTISEMENT
ADVERTISEMENT
ADVERTISEMENT