Hi all,
We have several Polycom devices on our network, we also have a Rapid7 vulnerability scanner which is run by our audit team.
This scanner connects to our Polycom devices but fails to log in because it doesn't have credentials. It's trying to get in via SSH.
A port scan shows that SSH is active, so how can I obtain the credentials for this SSH connection to allow the scanner to authenticate?
Thanks!
Hello @HMKUK,
welcome to the Polycom Community.
It would really help us if you could tell us what kind of Polycom devices you are after?
Please ensure to provide some feedback if this reply has helped you so other users can profit from your experience.
Best Regards
Steffen Baier
Polycom Global Services
If official support is required please check how to phone or open a case here
----------------Some are HDX7000, some are some say RealPresence Group 500 on them, hope this helps!
Hello @HMKUK,
I do not believe these products have an end user accessible SSH access. I am aware that they use telnet on port 23 and port 24 and to control the unit you would use port 24.
The Integrator reference manual has details on this and I believe the standard password would be its serial number usually starting with 82
Please ensure to provide some feedback if this reply has helped you so other users can profit from your experience.
Best Regards
Steffen Baier
Polycom Global Services
If official support is required please check how to phone or open a case here
----------------The Admin Guides for specific systems generally contain remote access information, including SSH, if available.
http://support.polycom.com/content/support/North_America/USA/en/support/video.html
SSH can be enabled/disabled at least from Group Series. The account seems to be the same account you can enable for remote http(s) access of the unit.