- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
03-31-2021 10:51 PM
Can someone explain about the threat name/vulnerability Non-RFC compliant Telnet traffic on Port 23?
04-01-2021 02:07 PM
Hello,
So to start telnet uses port 23. What the message is saying is that it see's the packets but it doesnt conform to the RFC, i.e. the packet doesnt look like its supposed to. Could be that the application sending the traffic is not forming the packets correctly, or another application other than telnet is using that port.
Hope that helps.
04-04-2021 02:09 AM
You can enable advanced packetcapture on the threat profile
That will allow you to verify what the firewall is receiving
04-01-2021 02:07 PM
Hello,
So to start telnet uses port 23. What the message is saying is that it see's the packets but it doesnt conform to the RFC, i.e. the packet doesnt look like its supposed to. Could be that the application sending the traffic is not forming the packets correctly, or another application other than telnet is using that port.
Hope that helps.
04-04-2021 12:50 AM
Thanks for the response. how to investigate that the application sending the traffic is not forming the packets correctly or non-rfc compliant? any examples or references. Thanks again.
04-04-2021 02:09 AM
You can enable advanced packetcapture on the threat profile
That will allow you to verify what the firewall is receiving
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!