Community discussions

MikroTik App
 
tronity2k
just joined
Topic Author
Posts: 17
Joined: Thu Jul 12, 2007 8:22 pm

strange, 2206 open port

Sat Aug 20, 2011 11:01 pm

Have several routers with routeros 5.5. I detected 2206 port open, seems ssh daemon, but not running with credentials.

I've also found that does not apply the policy firewall.


telnet xx.xx.xx.xx 2206
Trying xx.xx.xx.xx...
Connected to xx.xx.xxxx.
Escape character is '^]'.
SSH-2.0-OpenSSH_5.3p1 Debian-3ubuntu7
Last edited by tronity2k on Sat Aug 20, 2011 11:13 pm, edited 1 time in total.
 
fewi
Forum Guru
Forum Guru
Posts: 7717
Joined: Tue Aug 11, 2009 3:19 am

Re: strange, 2206 open port

Sat Aug 20, 2011 11:05 pm

sh-3.2$ telnet 172.31.255.255 2206
Trying 172.31.255.255...
telnet: connect to address 172.31.255.255: Connection refused
telnet: Unable to connect to remote host
sh-3.2$ telnet 172.31.255.254 2206
Trying 172.31.255.254...
telnet: connect to address 172.31.255.254: Connection refused
telnet: Unable to connect to remote host
sh-3.2$ telnet 172.31.255.255 22
Trying 172.31.255.255...
Connected to 172.31.255.255.
Escape character is '^]'.
SSH-2.0-ROSSSH
I can't reproduce that on 5.6 on an RB750G as well as an RB433. Also, as you can see the banner is SSH-2.0-ROSSSH - RouterOS for quite a few versions now hasn't been using OpenSSH. I also don't know why they'd possibly be using a Debian spin, specifically Ubuntu. No one sane would be using an Ubuntu SSH server on a router appliance, and there most certainly aren't any binaries branded that way you could run on the MIPS platforms. I've also verified this against several x86 machines I have running on RouterOS just for the hell of it - same results

Are you SURE you're not just port forwarding port 2206 somewhere, and aren't really hitting the router? Can you post the output of "/ip firewall export" on that machine?
 
tronity2k
just joined
Topic Author
Posts: 17
Joined: Thu Jul 12, 2007 8:22 pm

Re: strange, 2206 open port

Sat Aug 20, 2011 11:16 pm

Sorry, my mirkotik broadband router apply these nat for all connections.

thanks for help

Who is online

Users browsing this forum: McSee and 29 guests