- Community Home
- >
- Networking
- >
- Switching and Routing
- >
- Comware Based
- >
- Disable AUX port on HPE 5800
Categories
Company
Local Language
Forums
Discussions
Forums
- Data Protection and Retention
- Entry Storage Systems
- Legacy
- Midrange and Enterprise Storage
- Storage Networking
- HPE Nimble Storage
Discussions
Discussions
Discussions
Discussions
Forums
Discussions
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
- BladeSystem Infrastructure and Application Solutions
- Appliance Servers
- Alpha Servers
- BackOffice Products
- Internet Products
- HPE 9000 and HPE e3000 Servers
- Networking
- Netservers
- Secure OS Software for Linux
- Server Management (Insight Manager 7)
- Windows Server 2003
- Operating System - Tru64 Unix
- ProLiant Deployment and Provisioning
- Linux-Based Community / Regional
- Microsoft System Center Integration
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Discussion Boards
Community
Resources
Forums
Blogs
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Printer Friendly Page
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-02-2021 04:37 AM
11-02-2021 04:37 AM
Hello,
As per auditing requirement, it is recommended to disable AUX port on our HPE 5800 switches.
1. How do I disable the aux port?
2. Can I access the switch using console after disabling aux port?
Please advise. Is Aux and Console port same?
Thanks,
Ajin.
Solved! Go to Solution.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-02-2021 04:58 AM
11-02-2021 04:58 AM
Re: Disable AUX port on HPE 5800
Hi @AjinS !
AFAIK aux0 is the console port itself on 5800. If this is not the case, tell me the DEVICE_NAME from the 'display device manuinfo' output.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-02-2021 05:00 AM
11-02-2021 05:00 AM
Re: Disable AUX port on HPE 5800
Thanks, is it possible to disable the port?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-02-2021 05:18 AM
11-02-2021 05:18 AM
Re: Disable AUX port on HPE 5800
Of course it's not possible. This port is your only access to the swtich if it loses network connection or something goes wrong during a software update. I am afraid your security auditors don't fully understand how this port works and why it is crucial to keep it up. Did they assess a possibility of locking the port using AAA? Just put authentication on the port and it won't be accessible to unauthorized personnel.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-02-2021 05:33 AM
11-02-2021 05:33 AM
Re: Disable AUX port on HPE 5800
Thank you Ivan. It's already password protected. Please see the recommendation from audit team below.
"We recommend that the AUX port should be disabled wherever the remote administration support is not required. If the AUX port is required for operational purposes, the call-back facility should be configured as an additional level of protection"
Is call-back facility configuration possible?
Thanks,
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-02-2021 05:48 AM
11-02-2021 05:48 AM
SolutionAgain, they don't understand what is AUX port in 5800. Those guys think that 5800 is like an old Cisco switch where you have console port (to connect a management station directly with a console cable) and AUX (auxillary) port which is used to connect CSU/DSU or in other words modem in order to get a remote access to the switch. I am sure they think the AUX port in 5800 is like the AUX port in Cisco, because they mention 'remote administration' and 'call-back facility'. But the thing is IS NOT. The AUX port in 5800 is the only console port available. It is not used for 'remote administration', like additional AUX port in Cisco.
Therefore as you CANNOT disable con0 port in Cisco IOS-based switch, same way you CANNOT disable aux0 port in 5800. I know the 'aux' term confuses people, maybe that's why in Comware 7 that port is named 'con0', but try to explain this to your auditors, I am sure they will understand the situation and will adapt their recommendation accordingly.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-02-2021 06:14 AM
11-02-2021 06:14 AM
Re: Disable AUX port on HPE 5800
Thank you Ivan...Clear now.