Setting up Telnet

I am trying to setup Telnet on my Cisco 2900 Series K9.  I have read a bunch of articles to see if what I am doing wrong.  All the articles are pretty much the same thing:
Router>enable
Router#configure terminal
Router(config)#enable secret password
Router(config)#service password-encryption
Router(config)#line vty 0 4
Router(config-line)#password password
Router(config-line)#login
I have done this a bunch of times and still receive the error could not open connection to the host on port 23 connect failed.  Here is my show line:
   Tty Line Typ     Tx/Rx    A Modem  Roty AccO AccI  Uses  Noise Overruns  Int
*     0    0 CTY              -    -      -    -    -     0      0    0/0      -
      1    1 AUX   9600/9600  -    -      -    -    -     0      0    0/0      -
      2    2 TTY   9600/9600  -    -      -    -    -     0      0    0/0      -
    644  644 VTY              -    -      -    -   23     0      0    0/0      -
    645  645 VTY              -    -      -    -   23     0      0    0/0      -
    646  646 VTY              -    -      -    -   23     0      0    0/0      -
    647  647 VTY              -    -      -    -   23     0      0    0/0      -
    648  648 VTY              -    -      -    -   23     0      0    0/0      -
    649  649 VTY              -    -      -    -   23     0      0    0/0      -
    650  650 VTY              -    -      -    -   23     0      0    0/0      -
    651  651 VTY              -    -      -    -   23     0      0    0/0      -
    652  652 VTY              -    -      -    -   23     0      0    0/0      -
    653  653 VTY              -    -      -    -   23     0      0    0/0      -
    654  654 VTY              -    -      -    -   23     0      0    0/0      -
    655  655 VTY              -    -      -    -   23     0      0    0/0      -
    656  656 VTY              -    -      -    -   23     0      0    0/0      -
    657  657 VTY              -    -      -    -   23     0      0    0/0      -
    658  658 VTY              -    -      -    -   23     0      0    0/0      -
    659  659 VTY              -    -      -    -   23     0      0    0/0      -
Line(s) not in async mode -or- with no hardware support:
3-643
Here is my vty 0 4 :
line vty 0 4
 access-class 23 in
 privilege level 15
 password password
 login local
 transport input telnet
 transport output telnet ssh
Any ideas whats wrong?  Thanks!

the first thing that pop out for me is the  access-class 23 in, can you try and remove that and see if it works.
Secondly on your show line, I do not see the vty lines 0 - 4 at all, it seems they begin from 644 to 659...which is kind of weird for me. If your access-list is not blocking, I would suggest you configure your Vty line as:
line vty 644 659
which seems odd but would actually resolve your issue because those are the lines available on your device.
HTH,
Manny.

Similar Messages

  • Setting the telnet session welcome note

    Hello!
    I wanted to ask you how to properly set the BANNER variable in the /etc /default /telnetd file, as a welcome note. For example, when I set the following in the file:
    BANNER="SunOS 5.9, Solaris9"
    The telnet session welcome screen then shows:
    SunOS 5.9, Solaris 9 login:
    Now I want that this login word appears after at least one or more lines, like this:
    SunOS 5.9, Solaris 9
    login:
    Please help me out, how to set the BANNER variable properly spanning over multiple lines.

    in vi editor you must insert 2 line feed characters and then a cariage return.
    If you need to insert control characters in vi such as line feed or carriage return you must type Control-V then the next Control character for them to be recognized as control characters.
    <Control-l>=linefeed
    <Control-m=Carriage return
    <Control-g=Bell
    In your case it would be:
    <Control-v<Control-l><Control-v><Control-l><Control-v><Control-m>

  • Cannot telnet between windows 8.1 Update computers in a workgroup using NTLM authentiation and a Microsoft account

    Forum,
    I have set up telnet on two computers on a non-domain network. I have a user account on both machines linked to the same Microsoft account. My user account isn't an administrator, but I have added my user as a member of the TelnetClients group on the server.
    I can connect to the server, but it will not authenticate me. Only NTLM authentication is allowed. When I enable password authentication, it prompts me for my password, and I can successfully log in. I can also successfully log in when I use the
    built-in Administrator account and give it the same strong password on both computers. Here is how I'm invoking telnet:
    telnet {target} -l {remote username}
    Has anyone gotten telnet working using a Microsoft Account, workgroup computers, and NTLM authentication only?
    KeepMyIdentities, Your Key to Password Security. Available now on the Windows Store: http://apps.microsoft.com/webpdp/en-US/app/keepmyidentities/61a9f340-97ac-4666-beab-39f9246cb6fa

    Hi,
    Please make sure that your Telnet client supports the same authentication types as the Telnet server to which you are connecting, you can view this link to configure the authentication method
    Configure How the Client Authenticates to a Telnet Server
    http://technet.microsoft.com/en-us/library/cc732082(v=ws.10).aspx
    Error Message: Telnet Server allows NTLM authentication only
    http://technet.microsoft.com/en-us/library/cc731891(v=ws.10).aspx
    Yolanda Zhu
    TechNet Community Support

  • Privilege level when accessing via telnet

    I've just set up telnet access using RADIUS authentication. I'm using Microsoft IAS for the radius server.
    I can access the router but when I try to get into the enable prompt, it says "% Error in authentication."
    I should mention that when I connect directly via console port, I can login using the radius. It doesn't drop me into an enable prompt but it allows me to enter into it by typing "enable". doesn't work for telnet however.
    any ideas what I did wrong?

    The command reference for "aaa authentication enable default" says that requests sent to a RADIUS Server will include the username "$enab15$".
    Have you configured a user named "$enab15$" on the RADIUS server?
    e.g.:
    If you were using Cisco Secure ACS, and did not configure such a user, the log would indicate an Authentication Failure Code of "CS user unknown", and the username listed would be "$enab15$".

  • Password not set.

    hi all
    i hope this is the correct area to post.
    i am doing my CCNA and want to overcome a small problem.
    when trying to 'telnet' into my 2610 router i get the
    'Password not Set' message and then disconnected.
    i did see a mention of this among the pages and pages of cisco support area.
    the ping is successful, and i do get the banner MOTD shown as i telnet in.
    so suggestions please, and have i posted enough info?
    regards
    c

    Hi
    You can get onto the router via console port and configure the password for the same under the line vty 0 4 which will set the telnet password for the router.
    line vty 0 4
    password cisco
    Also do check up whether you have configured either enable password or secret to get the privilege access to configure the router..
    regds

  • Telnet vs ssh?

    i have a webserver in my basement without a keyboard, monitor or mouse permanently attached to it. so maintaining it is rather difficult. so i've been looking at setting up telnet or ssh on it (which i should have done from the start) so i can manage it from another machine within my network
    now i understand that telnet lacks any type of security, and i'm only using it behind my network anyway. but my concern is if i want to log into it from outside my network through my vpn. i use openvpn, so i'm asking, because i'm not sure the vpn connection is encrypted or not, and if its not, then ssh will be the way to go, otherwise i think telnet is just easier.

    .:B:. wrote:If 'minimal' updates mean what I think it means, then you're only making yourself miserable. Partial updates will break the system; it's a rolling release and often updates depend on one another. Doing 'minimal' updates is not the way to go. If you're afraid stuff breaks, pick another distro, or try the Arch Server Project, or at least install an LTS kernel like gazj did.
    i didn't mean minimal updates like that, i just meant that i don't update it very often. i do run the lts kernel. i just don't update everything else too often out of the blue like that because its setup and working. i ran into issues with mysql one time when i just went ahead and updated, had trouble getting it going right. so i like to plan my downtime and try to know what to expect. so instead of planning to have it down for 10 minutes, and having that turn into an hour, i can plan for an hour if thats what i know it will take.

  • Telnet Prompt and CSM Probing

    We are in the process of installing newly acquired CSM modules in order to load-balance internal traffic to a set of Telnet servers. The Telnet servers interact with other application servers hosting an in-house developed application that is causing an intermittent problem. When a user connects to a Telnet server, a Telnet sessions sometimes get established without a prompt. We are looking for a way to rectify this problem by using the probing feature on the CSMs. We would like to configure the CSMs to remove the Telnet servers that are experiencing this problem from service. This problem cannot be fixed by setting up a simple Telnet probe, because the badly behaving server will still respond to these probes although the prompt is not being displayed.
    An HTTP application level problems can be probed by the CSMs using the HTTP Return Code Checking feature. This is due to the nature of the HTTP protocol where the error codes are displayed in the HTTP header. The CSMs are capable of parsing the HTTP packets and reading the error codes. This feature can be used to certain extent with FTP and Telnet. Could it be used to fix this particular problem? How? If not, do you have other suggestions?
    Thanks,
    Bachir Najm

    Using a Tcl script as a health probe on the CSM allows you to open a connection to a host, send/receive data on that connection, and parse through the responses you receive.
    So, you could write a Tcl script that opens a telnet connection to the server, and tries to match against the expected prompt string. If the match fails, you can set an error condition in the script.
    Download the file 'c6slb-apc.3-1-9.tcl' from here:
    http://www.cisco.com/cgi-bin/tablebuild.pl/cat6000-csm
    It contains a set of sample scripts that can be used on the CSM.
    ~Zach

  • Telnet task in ant

    below are my telnet task definition in ant builfile and the output message after runing the task.
    <project name="XXX" basedir="." default="telnet">
    <target name="telnet" depends="" description="" >
    <telnet userid="XXX" password="XXX" server="missrv" >
    <write string="cd /home/hfan" />
    <write string="mkdir test"/>
    </telnet>
    </target>
    <project>
    telnet:
    [telnet] SunOS 5.8
    [telnet]
    [telnet]
    [telnet]
    [telnet] login:
    [telnet] hfan
    [telnet] Password:
    [telnet] cd /home/hfan
    [telnet] mkdir test
    BUILD SUCCESSFUL
    Total time: 1 second
    But i can not see any result from the command "mkdir" in the unix box??????
    It would be appreciated very much if you can let me know the reason. I have been working with it couple hours.
    thx in advance,
    Henry

    Sorry too.....
    I experience the same thing. In addition I am trying to call a bat file on the remote computer that I wrote myself. It does not take any action at all. Inserting a read of known output from the batch file just makes the telnet session hang.
    Here is my code:
    <telnet userid="db_builder" password="ugly_porche7" server="WOLF" initialCR="false" port="23">
        <write echo="true">SET BUILD_DATABASE=true</write>
        <write echo="true">SET BUILD_DATABASE</write>     
        <write echo="true">"W:\deploy_general\inst\database\simped\test_002\common\installDatabase.bat"></write>
    </telnet>The out put is
    Buildfile: build.xml
    build:
       [telnet] Microsoft (R) Windows (TM) Version 5.00 (Build 2195)
       [telnet] Welcome to Microsoft Telnet Service
       [telnet] Telnet Server Build 5.00.99206.1
       [telnet]
       [telnet] login:
       [telnet] db_builder
       [telnet]  db_builder
       [telnet]
       [telnet] password:
       [telnet] SET BUILD_DATABASE=true
       [telnet] SET BUILD_DATABASE
       [telnet] "W:\deploy_general\inst\database\simped\test_002\common\installDatabase.bat">
    BUILD SUCCESSFUL
    Total time: 0 secondsI would after the second write expect:
    "BUILD_DATABASE=true", but inserting <read>true</read> just yields a hanging session.
    It's my first try programming or even relate to telnet at all, so I guess I have som general personal trouble with the write/read logic as well. Please help me or point me to something that could clear it up.

  • Console CatOS MOTD small problem

    Hello,
    I have a small problem when connecting to a console port.
    We make a connection via a terminalserver to the console port of a 6500 (Tacacs+). I like to have a banner before I login on CatOs. The problem with a MOTD is that only the banner is shown after a logout.
    Any suggestions?
    Greetings.
    Jeroen

    for some reason, this doesn't work for console access. It does work for direct telnet access.
    Maybe there is some problem with remote access via a terminalserver to the console port. Do i have to change something on the line (TTY) ports of the terminalserver?
    switch> (enable) set banner telnet ?
    disable Suppress the default Cisco Systems Console banner
    enable Display the default Cisco Systems Console banner

  • X crashes when ending X session [SOLVED]

    Hello,
    I am suddenly having a problem where X crashes when I end an X session. I am using the slim login manager, the fglrx driver and wmii as a window manager. When my machine first boots, slim starts and I can log into X, and everything works fine, but my machine locks when I try to end my X session. The screen goes blank and neither Ctrl+Alt+Backspace, nor Ctrl+Alt+Delete nor Ctrl+Alt+Fn work. However, I hear that my laptop fan turns on high so it sounds like X is in a tight loop somewhere using all the CPU. I must reboot to recover. If instead of ending my X session through wmii's quit command I kill X with Ctrl+Alt+Backspace, I get the same result except that my screen doesn't go blank. Wmii ends and I'm left with an immobile mouse and my wallpaper and X in a tight loop.
    Now, my Xorg.conf, .xinitrc, and slim.conf have not changed in months and have been working perfectly, so I'm just about 100% sure it's not a configuration problem. I do note that this has been occurring since I upgraded xorg-server (1.4.0.90-6 -> 1.4.0.90-8), xkeyboard-config (1.1-1 -> 1.2-1) and xf86-video-ati (6.7.197-2 -> 6.8.0-2) a couple of days ago. Has anyone else experienced any problems with X and the recent update?
    EDIT: OK, I set up telnet on the machine and found that when X dies and the machine locks up, I can still telnet in and reboot the machine. The odd part is when I look at the process list (ps -e) when the machine is locked, I don't see any X processes. I can see and kill my login process, but the machine stays locked up. I checked my Xorg.0.log.old after restarting and I see:
    Backtrace:
    0: /usr/bin/X(xf86SigHandler+0x7e) [0x80e053e]
    1: [0xb7f28420]
    2: /usr/bin/X(Xfree+0x21) [0x81b2681]
    3: /usr/bin/X [0x81a4c10]
    4: /usr/bin/X [0x81a4cac]
    5: /usr/bin/X [0x81a46ed]
    6: /usr/bin/X(SrvXkbFreeGeomRows+0x49) [0x81a4859]
    7: /usr/bin/X [0x81a48a1]
    8: /usr/bin/X [0x81a46ed]
    9: /usr/bin/X(SrvXkbFreeGeomSections+0x49) [0x81a4809]
    10: /usr/bin/X(SrvXkbFreeGeometry+0xdf) [0x81a4f1f]
    11: /usr/bin/X(SrvXkbFreeKeyboard+0xc1) [0x81a30f1]
    12: /usr/bin/X(XkbFreeInfo+0xdf) [0x819180f]
    13: /usr/bin/X [0x8084b8f]
    14: /usr/bin/X(CloseDownDevices+0x29) [0x8084fe9]
    15: /usr/bin/X(main+0x4be) [0x8073e6e]
    16: /lib/libc.so.6(__libc_start_main+0xe0) [0xb7cfd390]
    17: /usr/bin/X(FontFileCompleteXLFD+0x205) [0x80731b1]
    Fatal server error:
    Caught signal 11. Server aborting
    It seems something is segfaulting when trying to exit X. Aaargh.
    OOPS: I posted too quickly. A little googling found this Debian bug report. I switched my keyboard model from "latitude" to "pc101" and all was well. Looks like this version of the X server has some problems.
    Regards,
    j
    Last edited by jbromley (2008-03-22 08:15:06)

    Edit:
    Well turns out, the synaptics error pops out when running openbox too. I Ctrl+Atl+F1ed, and there is was again, but still openbox starts and works fine! My touchpad works fine, with scrolling and all that.
    How do I get awesome to run?
    EDIT:
    Turns out the Synaptics driver issue was totally irrelevant. I sorted that out (double loading of drivers) by reading https://bbs.archlinux.org/viewtopic.php?pid=835318
    But awesome does not start. I get that nvidia screen and then get thrown back at the console, with no errors or anything!
    Last edited by maxarch (2010-11-08 19:08:20)

  • [SOLVED] mutt error "Could not find the host"

    I have been trying to set up Mutt, following the Mutt wiki page. Every time I run 'mutt' at the command line, the application opens but I get the following error message at the bottom of the window:
    Could not find the host "imap.qmul.ac.uk"
    I've tried various .muttrc variations, but no luck so far. Here is my current .muttrc file (with my username changed to 'user' but no other changes):
    set imap_user = user
    set folder = "imaps://[email protected]:993/"
    set spoolfile = +INBOX
    mailboxes +INBOX
    unset imap_passive
    (Eventually I will add smtp information, but it seems premature at this stage. I also tried putting my password in there, but it did not make a difference.)
    It may be relevant that I also cannot telnet into the imap server in question (or get in there with 'ssh'). I set up telnet using the telnet wiki page.
    The IMAP server itself seems to be working well: I can log in there and read and send emails just fine when I use a GUI-based email client.
    Any ideas, anyone, on what's going wrong?
    PaulE
    Last edited by PaulE (2013-01-05 11:23:07)

    Just in case anyone stops by and is interested in the networking question, let me add, in partial answer to skanky's questions, that I can indeed ping the server:
    $ ping imap.qmul.ac.uk
    PING imap.qmul.ac.uk (138.37.6.143) 56(84) bytes of data.
    And the telnet error message I get is as follows:
    $ telnet imap.qmul.ac.uk
    Trying 138.37.6.143...
    telnet: Unable to connect to remote host: Connection timed out
    But I've just noticed that if I include a port the telnetting works fine:
    $ telnet imap.qmul.ac.uk 993
    Trying 138.37.6.143...
    Connected to imap.qmul.ac.uk.
    Escape character is '^]'.
    I don't know why that should be, since a port number is optional in the telnet documentation I've consulted, both on my system (via 'man') and elsewhere.
    And if I include a port number in my .muttrc folder setting but keep the server name instead of the IP address...
    set imap_user = user
    # set folder = "imaps://[email protected]:993/"
    set folder = "imaps://[email protected]:993/"
    set spoolfile = +INBOX
    mailboxes +INBOX
    unset imap_passive
    ... it STILL doesn't work:
    Could not find the host "imap.qmul.ac.uk"
    Finally the GUI application that I mentioned was a webmail service. I just go to a web page and type in my username and password, so I don't know about its settings offhand. I can try to find them out if this issue is of interest to any networking expert who wanders by.
    There are deep mysteries here, but I am content for the moment that I have mutt up and running.
    PaulE

  • Transport settings for ASA's

    Hi,
    Is there a way to change transport settings for archive collection based on groups?  We have ~1100 switches/routers that use telnet and 7 ASA's that use SSH. I have the transport order set to telnet first and then SSH.  This is causing ASA failed password attempts to be logged to the MARS appliance and I don't want the SSH passwords to be sent in plain text.  We are using LMS 3.2.
    Thanks,

    No, there is no way to tie transport settings to certain device types.  It's an all-or-nothing thing.  For what you want to do, set your protocol order to SSH then TELNET.  For the majority of devices, the SSH will fail, but you can be assured that the ASAs won't have that clear text password logged.

  • LMS 4.0 causing hung sessions on c2900xl series switches.

    Hi all,
    I am having an issue with ciscoworks inventory collections that run nightly. The transport protocols for inventory are set to Telnet then TFTP and then SSH. For some reason on the 2900xl's there are hung tcp sessions that eventually cause the switch memory usage to increase and eventually the switch to become unmanaged and show down (unpingable).  User traffic continues to pass through but I am unable to ping or telnet to the devices. When I console in and issue show tcp brief I see a session established from ciscoworks.
    show tcp br
    TCB Local Address Foreign Address (state)
    0074BD38 xxx.xxx.xxx.240.23 xxx.xxx.xxx.220.22660 ESTAB
    Once I clear the session with [clear tcp tcb 007448A4] the switch then responds to pings and I can telnet to it.
    Any ideas what might be causing this?

    I can't find any bugs specific to the 2900XL platform (or code release).  Given that you're replacing these anyway, you may consider scheduling a Netconfig job to periodically clear the VTY lines on these switches.  You can create a job that executes the following commands in Enable mode:
    clear line vty 0
    clear line vty 1
    clear line vty 2
    clear line vty 3
    clear line vty 4
    The current VTY line will not clear.

  • Energywise future

    Hi all,
    I would ask for Energywise perspectives today.
    Mainly, we use to began a work on interfacing to energywise other kind of objetcs than IT devices (Computer, Phones, Routers, ...) like (power sensor/actuators) . This work quite well with our specific PowerLine or Radio smartPlugs, or Din rails than can deliver their consumptions and that can be actuated to different power levels.
    Now to go further we are asking ourselves where to discuss of next evolutions of energywise system.
    I do not know if i'm at the right place to open this subject, so please do no hesitate to "re-direct" my post.
    Current lu our main questions are about:
    - Other kind of datatype recording like Temperature, Luminance, Presence, etc .. could be very useful for optimizing energy efficiency algorithms in softwares like Joulex, Orchestrator or other.
    - IPv6 support for energywise
    - Other kind of transport protocol like (CoAP) for constrained objects.
    Thanks for your interest
    Pierre-emmanuel

    Hello Vinod
    We ended opening a TAC service request and got a solution to the issue. It was not though that easy cause we worked almost a month with TAC to got this fixed. We ended up setting the telnet parameters as follows:
    Telnet timeout - 700
    Read Delay - 1000
    Transport Timeout  - 75000
    Login Timeout - 2000
    Tune Sleep - 800
    Delay After Connect - 1000
    I got this solution as more a workaround. LMS should be able to ajust the timeouts to the device type - this timeouts work for our 2K swithes but not for the 3K - for those the only solution is trial and error.
    Deploying images is just a small part of what LMS is supposed to be able to perform, but being a Cisco product and  the devices being Cisco also would expect things to go more smoother. I know that we are talking about different departments but anyway :)
    Thanks for asking though.
    Best regards
    Isaac

  • Missing SET parameters on 3750 switch via Telnet?

    Hello. When I telnet into my 3750, and then I ENABLE to get priviledge commands, I want to SET the SPANNING-TREE parameter.
    I type SET ? and only get one option
    MEMORY set memory paramters
    When I type SHOW ?, I do see the parameter to show the SPANNING-TREE information.
    Is there something else I need to enable?
    Thanks, for your help...Jake

    ok, I figured out my problem...I feel like such a newb...
    I had to get into the CONFIG mode then many more options were possible.
    I figured out how to set the spanning-tree, then immediately got PORT-SECURITY errors about 1 every second. I didn't easily see how to disable that feature from Telnet, but was able to from the Cisco Network Assistant and/or the Java based web interface.
    Once I turned off/disabled Port security for that port a SHOW RUNNING-CONFIG did not even display anything for that port. Guess that's to be expected, I would have preferred to see disabled, but finally, FINALLY, I can communicate with the network and internet.
    All this just for testing purposes and a slow migration to the new switches.
    Jake

Maybe you are looking for

  • In approval procedure user do not want to refresh the software

    Hi all, In approval procedure i prepare the approval for outgoing payment, so when the user pass the transaction the approval going to manager but my issue is the manager must refresh his user when any new approval is coming. i don't want to refresh

  • Trying to add Avira to knowledge base

    Hi ! In our school district we use Avira anti-virus in French. Even if Avira is in the Product Recognition Knowledgebase (we use the last PRU of July 2010 ZENworks 7.5 Asset Management July 2010 PRU), we can't see it our inventory asset. I think it's

  • TS3212 itunes wont download to windows 7

    when attempting to download the latest itunes the website immediatly goes to the thank you page but does not start the download. I have disabled the pop-up blocker completely along with all antivirus and malware software and even suspended the firewa

  • Batch change photos in album to lower resolution

    I want to burn about 500 photos in an iPhoto album to a CD with Toast. At full res, they would take four disks. I want to lower the resolution so they'll all fit on one disk. Can I batch change the album in iPhoto?

  • Luamail: a mail client built into luakit

    see http://dieter.plaetinck.be/luamail_a_ma - uakit.html