Secure the access to the lab devices
Posted: Wed Jul 18, 2018 9:10 am
Hi,
I have EVE-NG server I would like to access outside of my LAN, so I have configured port forwarding on my home router for ssh, http and the ports for the reverse telnet to the consoles of the devices. I have secured the access a bit (public-key only ssh, strong EVE-NG passwd etc...) however the console access to the virtual devices is completely exposed. Even if I put username/password for the console, once I login anybody can telnet to the public IP and port and they will get access to my console session, see anything I type and even get control at any time...
I know there are many solutions to prevent this outside of EVE-NG (use VPN, use pass-trough FW authentication etc, but is there something that can be done from within EVE-NG to secure these sessions like some kind of authentication, white list or at least limit the sessions to the destination ports for the console access to one?
Regards,
I have EVE-NG server I would like to access outside of my LAN, so I have configured port forwarding on my home router for ssh, http and the ports for the reverse telnet to the consoles of the devices. I have secured the access a bit (public-key only ssh, strong EVE-NG passwd etc...) however the console access to the virtual devices is completely exposed. Even if I put username/password for the console, once I login anybody can telnet to the public IP and port and they will get access to my console session, see anything I type and even get control at any time...
I know there are many solutions to prevent this outside of EVE-NG (use VPN, use pass-trough FW authentication etc, but is there something that can be done from within EVE-NG to secure these sessions like some kind of authentication, white list or at least limit the sessions to the destination ports for the console access to one?
Regards,