- limit active vty ports
- generate individual user/password (login local)
- limit active time
- disable TELLNET / Enable SSH
- Needs Hostname
- Needs Domain Name
- Generate Key
- SSH ver 2
- Use SSH Exclusively
- AAA server to centralize users
- ACL Access Lists
r2(config)# hostname r2
r2(config)# ip domain-name ccna.class
r2(config)# crypto key generate rsa
r2(config)# r2.ccna.class
r2(config)# line vty 0 1
r2(config-line)# transport input ssh
logging in
Putty
ssh -l name x.x.x.x
password: