<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Is there possible to ignore user continue trying login? in Switches, Hubs, and Modems</title>
    <link>https://community.hpe.com/t5/switches-hubs-and-modems/is-there-possible-to-ignore-user-continue-trying-login/m-p/7083825#M34202</link>
    <description>&lt;P&gt;a simple topology like below~~&lt;/P&gt;&lt;P&gt;pc &amp;gt; layer2 switch &amp;gt; firewall &amp;gt; 5130 &amp;gt; modem &amp;gt; internet&lt;/P&gt;&lt;P&gt;a user said his pc software session always broke from time to time, I spent a lot of time to troubleshooting network and devices and still not found problem, but it seems that 5130 is the most possible problem,&lt;/P&gt;&lt;P&gt;just now(about 21:13) I noticed&amp;nbsp;the network link broke at 5130, I look at the log and found a lot of "topology change" at port 15, the port link to a Cisco switch, I wonder maybe it's STP feature cause the network broke for a while?!&amp;nbsp; so I turn off STP(default is on) and wait to see if that happened again ...&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Snap1.gif" style="width: 1070px;"&gt;&lt;img src="https://community.hpe.com/t5/image/serverpage/image-id/114741iA2CACB4BBB795565/image-size/large?v=v2&amp;amp;px=2000" role="button" title="Snap1.gif" alt="Snap1.gif" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
    <pubDate>Tue, 31 Mar 2020 14:58:39 GMT</pubDate>
    <dc:creator>wowhsieh</dc:creator>
    <dc:date>2020-03-31T14:58:39Z</dc:date>
    <item>
      <title>Is there possible to ignore user continue trying login?</title>
      <link>https://community.hpe.com/t5/switches-hubs-and-modems/is-there-possible-to-ignore-user-continue-trying-login/m-p/7083796#M34200</link>
      <description>&lt;P&gt;I noticed from switch 5130 system logs, there were a lot of user trying login, is there possible to ignore those login to prevent 5130 busy respond?&lt;/P&gt;</description>
      <pubDate>Tue, 31 Mar 2020 06:59:45 GMT</pubDate>
      <guid>https://community.hpe.com/t5/switches-hubs-and-modems/is-there-possible-to-ignore-user-continue-trying-login/m-p/7083796#M34200</guid>
      <dc:creator>wowhsieh</dc:creator>
      <dc:date>2020-03-31T06:59:45Z</dc:date>
    </item>
    <item>
      <title>Re: Is there possible to ignore user continue trying login?</title>
      <link>https://community.hpe.com/t5/switches-hubs-and-modems/is-there-possible-to-ignore-user-continue-trying-login/m-p/7083818#M34201</link>
      <description>&lt;P&gt;Hello!&lt;/P&gt;&lt;P&gt;Do you want to suppress messages to prevent them from appearing in the logbuffer? If that is what you want, check '&lt;STRONG&gt;info-center logging suppress module&lt;/STRONG&gt;' command.&lt;/P&gt;&lt;P&gt;&lt;SPAN class="fontstyle0"&gt;&lt;EM&gt;&lt;STRONG&gt;Examples&lt;/STRONG&gt;&lt;/EM&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN class="fontstyle1"&gt;# Configure a log suppression rule to suppress output of logs with the &lt;/SPAN&gt;&lt;STRONG&gt;&lt;SPAN class="fontstyle0"&gt;shell_login &lt;/SPAN&gt;&lt;/STRONG&gt;&lt;SPAN class="fontstyle1"&gt;mnemonic value for the &lt;STRONG&gt;shell&lt;/STRONG&gt; module.&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN class="fontstyle3"&gt;&amp;lt;Sysname&amp;gt; system-view&lt;BR /&gt;[Sysname] info-center logging suppress module shell mnemonic shell_login&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;Hope it helps!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 31 Mar 2020 12:56:53 GMT</pubDate>
      <guid>https://community.hpe.com/t5/switches-hubs-and-modems/is-there-possible-to-ignore-user-continue-trying-login/m-p/7083818#M34201</guid>
      <dc:creator>Ivan_B</dc:creator>
      <dc:date>2020-03-31T12:56:53Z</dc:date>
    </item>
    <item>
      <title>Re: Is there possible to ignore user continue trying login?</title>
      <link>https://community.hpe.com/t5/switches-hubs-and-modems/is-there-possible-to-ignore-user-continue-trying-login/m-p/7083825#M34202</link>
      <description>&lt;P&gt;a simple topology like below~~&lt;/P&gt;&lt;P&gt;pc &amp;gt; layer2 switch &amp;gt; firewall &amp;gt; 5130 &amp;gt; modem &amp;gt; internet&lt;/P&gt;&lt;P&gt;a user said his pc software session always broke from time to time, I spent a lot of time to troubleshooting network and devices and still not found problem, but it seems that 5130 is the most possible problem,&lt;/P&gt;&lt;P&gt;just now(about 21:13) I noticed&amp;nbsp;the network link broke at 5130, I look at the log and found a lot of "topology change" at port 15, the port link to a Cisco switch, I wonder maybe it's STP feature cause the network broke for a while?!&amp;nbsp; so I turn off STP(default is on) and wait to see if that happened again ...&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Snap1.gif" style="width: 1070px;"&gt;&lt;img src="https://community.hpe.com/t5/image/serverpage/image-id/114741iA2CACB4BBB795565/image-size/large?v=v2&amp;amp;px=2000" role="button" title="Snap1.gif" alt="Snap1.gif" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 31 Mar 2020 14:58:39 GMT</pubDate>
      <guid>https://community.hpe.com/t5/switches-hubs-and-modems/is-there-possible-to-ignore-user-continue-trying-login/m-p/7083825#M34202</guid>
      <dc:creator>wowhsieh</dc:creator>
      <dc:date>2020-03-31T14:58:39Z</dc:date>
    </item>
    <item>
      <title>Re: Is there possible to ignore user continue trying login?</title>
      <link>https://community.hpe.com/t5/switches-hubs-and-modems/is-there-possible-to-ignore-user-continue-trying-login/m-p/7083829#M34203</link>
      <description>&lt;P&gt;is it possible that 5130 drop those users who trying to login(a lot of trying login in one minute) so 5130 won't pay attention to those trying.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="log.gif" style="width: 907px;"&gt;&lt;img src="https://community.hpe.com/t5/image/serverpage/image-id/114742iF2B18C52FF4A5F7A/image-size/large?v=v2&amp;amp;px=2000" role="button" title="log.gif" alt="log.gif" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 31 Mar 2020 15:26:23 GMT</pubDate>
      <guid>https://community.hpe.com/t5/switches-hubs-and-modems/is-there-possible-to-ignore-user-continue-trying-login/m-p/7083829#M34203</guid>
      <dc:creator>wowhsieh</dc:creator>
      <dc:date>2020-03-31T15:26:23Z</dc:date>
    </item>
    <item>
      <title>Re: Is there possible to ignore user continue trying login?</title>
      <link>https://community.hpe.com/t5/switches-hubs-and-modems/is-there-possible-to-ignore-user-continue-trying-login/m-p/7083831#M34204</link>
      <description>&lt;P&gt;Hello!&lt;/P&gt;&lt;P&gt;If the switch will be rejecting all login attempts, how will it distinguish valid login attempt from non-valid? We need to think in this direction and the solution is below. But, in general, that idea to expose the switch to the Internet is quite dangerous, these devices do not have sophisticated security mechanisms, normally these are behind firewalls.&lt;/P&gt;&lt;P&gt;My suggestion - protect management plane of this switch with proper ACLs, allow only access from your local network and deny all other IP addresses. You can protect HTTP/HTTPS with ACL, as well as SSH or Telnet (which I suggest to disable, as it is not secure at all).&amp;nbsp;&lt;/P&gt;&lt;P&gt;Check the Fundamentals Command Reference and Configuration guides for commands:&lt;/P&gt;&lt;P&gt;ip http acl&lt;BR /&gt;ip https acl&lt;BR /&gt;&lt;BR /&gt;For VTY (telnet and SSH) protection, check:&lt;BR /&gt;&lt;SPAN class="fontstyle0"&gt;user-interface vty 0 15&lt;BR /&gt;&amp;nbsp;acl [ ipv6 ] acl-number { inbound | outbound }&lt;BR /&gt;&lt;/SPAN&gt;&lt;BR /&gt;Hope it helps!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 31 Mar 2020 15:50:48 GMT</pubDate>
      <guid>https://community.hpe.com/t5/switches-hubs-and-modems/is-there-possible-to-ignore-user-continue-trying-login/m-p/7083831#M34204</guid>
      <dc:creator>Ivan_B</dc:creator>
      <dc:date>2020-03-31T15:50:48Z</dc:date>
    </item>
    <item>
      <title>Re: Is there possible to ignore user continue trying login?</title>
      <link>https://community.hpe.com/t5/switches-hubs-and-modems/is-there-possible-to-ignore-user-continue-trying-login/m-p/7086375#M34224</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.hpe.com/t5/user/viewprofilepage/user-id/1881390"&gt;@wowhsieh&lt;/a&gt;&amp;nbsp;!&lt;/P&gt;&lt;P&gt;Did you have time to try the solution proposed? Did it resolve the problem?&lt;/P&gt;&lt;P&gt;Thank you in advance!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 29 Apr 2020 14:38:00 GMT</pubDate>
      <guid>https://community.hpe.com/t5/switches-hubs-and-modems/is-there-possible-to-ignore-user-continue-trying-login/m-p/7086375#M34224</guid>
      <dc:creator>Ivan_B</dc:creator>
      <dc:date>2020-04-29T14:38:00Z</dc:date>
    </item>
  </channel>
</rss>

