Thanks. Yes, indeed it does have MSFCs. But if I just put ACLs in the MSFC won't I be merely preventing telnet to the MSFCs and not to the switch itself? The MSFC can be reached by direct telnet to its own IP address or by telneting to the switch and then issuing a "session 15" command.
I think the CatOS "set ip permit x.x.x.x telnet" command that Troy mentioned is what I need to restrict telnet access to the switch. Thanks all. Andrew Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=63439&t=63358 -------------------------------------------------- FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]