Forum Discussion

Sharadwi_352731's avatar
Sharadwi_352731
Icon for Nimbostratus rankNimbostratus
Feb 22, 2018

Restrict management access to HTTPS and SSH only

How do I restrict management traffic to HTTPS and SSH only ? I should be able to login to config utility and access via SSH and block all other type of connections. How do I do that ?

 

8 Replies

  • I'm not completely sure what you're asking. By default there are two ways to access the configuration utility on the BigIP. SSH and HTTPS. If you connect via HTTP you will be redirected to HTTPS (or on earlier versions you'll be told there is nothing there).

     

    How are you accessing your unit that you wish to block?

     

  • Management access is allowed only through https and SSH. You can restrict ssh access in WebUI only to specific subnets using below steps.

     

    Login to webui > System > Platform > User Administration > Under SSH IP allow section mention only required subnets.

     

    • Sharadwi_352731's avatar
      Sharadwi_352731
      Icon for Nimbostratus rankNimbostratus

      Thanks Raghavendra for the info. I don't have a requirement to restrict the subnets from which the device can be accessed.

       

  • Management access is allowed only through https and SSH. You can restrict ssh access in WebUI only to specific subnets using below steps.

     

    Login to webui > System > Platform > User Administration > Under SSH IP allow section mention only required subnets.

     

    • Sharadwi_352731's avatar
      Sharadwi_352731
      Icon for Nimbostratus rankNimbostratus

      Thanks Raghavendra for the info. I don't have a requirement to restrict the subnets from which the device can be accessed.

       

  • Thanks. That helped. I was wondering if there are any other ways to access like telnet. If so, I will have to block it.