Securing Router Services and Interfaces

This section discusses Cisco router network services and interfaces and how to secure them.

Cisco routers support many network services that may or may not be required in certain enterprise networks. Turning off or restricting access to these services greatly improves network security by providing only those services that the network requires, and no more. Leaving unused network services enabled increases the possibility of those services being used maliciously.

The following sections discuss the services that have been chosen for their security-related features. These are the router services that are most likely to be used in network attacks.

Disabling BOOTP Server

BOOTP is a UDP service that can be used ...

Get CCSP Self-Study: Securing Cisco IOS Networks (SECUR) now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.