Forcepoint: How to replace Telnet with SSH
By Sai Kiran Pandrala · reviewed by Sai Kiran Pandrala, Editor Last verified: 2026-05-30
| Vendor | Forcepoint |
|---|---|
| Operating system | Forcepoint NGFW / Security Manager Console |
| Category | Hardening & Safe Protocols |
| Skill level | Intermediate to advanced |
| DIY-able? | Yes with CLI access; some scenarios need Forcepoint Customer Hub + RMA. |
What this guide covers
How to replace Telnet with SSH on Forcepoint devices (Forcepoint NGFW / Security Manager Console).
Recommendation
Enable SSHv2 only; remove Telnet from the management interface; restrict to admin source IPs.
CLI / commands
# Entered from: SMC engine config
SMC → Edit Engine → Interfaces → IP
# Save / commit
SMC: Save & Refresh policy
Verify
- Test from a non-admin workstation.
- Confirm fallback works if AAA or external service is down.
- Document the change in your CMDB / change-control.
Frequently asked questions
Will this work on my specific Forcepoint NGFW / Security Manager Console version?
The procedure reflects current Forcepoint NGFW / Security Manager Console behaviour. Older releases may need minor syntax adjustments: use the CLI help (? or tab-completion) to verify.
Should I open a Forcepoint Customer Hub case immediately?
Open one if you suspect hardware failure or the symptom persists after a maintenance-window reload. Make sure your support entitlement is active first.
Where can I find the Forcepoint official documentation?
https://support.forcepoint.com, search the product family + feature name.
Is this procedure safe in production?
Test in a lab or maintenance window first. Capture pre-change state so you can roll back.
Related guides
- All Forcepoint fix guides → /forcepoint/
- All vendor guides → /vendors/
Related fixes
Related guides worth a look while you sort this one out:
- Forcepoint: How to enable NETCONF or vendor API over SSH
- Forcepoint: How to replace SNMPv2c with SNMPv3
- Forcepoint: How to configure logging to a central SIEM
- Forcepoint: How to disable unused services and protocols
- Forcepoint: How to enable control-plane policing / rate-limiting
- Forcepoint: How to enable HTTPS-only management
References
- Forcepoint support portal: https://support.forcepoint.com
- Forcepoint knowledge base: https://support.forcepoint.com
- Forcepoint security advisories: https://www.forcepoint.com/trust/security-advisories
- Open a case: https://support.forcepoint.com
Reference material, not professional advice. Validate against your specific Forcepoint NGFW / Security Manager Console version and test in a non-production environment before applying.
Common patterns we see
When this symptom shows up on a Forcepoint: device, three patterns repeat:
1. Recent firmware update changed behavior. the symptom started within a week of an OTA push. Rollback or wait for the hotfix. 2. Environmental trigger, temperature, humidity, line voltage, network changes. Look at what changed in the environment. 3. Cumulative wear: components like batteries, gaskets, fans degrade over time. Replace the consumable rather than chasing a software fix.
Knowing which pattern applies saves time on the wrong fix.
Before you start
A few things to confirm so the Forcepoint: device fix goes cleanly:
- Latest firmware downloaded if you're going to update.
- Warranty + support contract status checked, opening sealed parts may void it.
- Backup of current configuration (where applicable) taken.
- Spare parts on hand if you anticipate replacement.
- Adequate workspace, lighting, and time. rushing causes regressions.
Quick verification
Before you walk away from a Forcepoint: device fix, run through:
1. Reproduce the original trigger, does the issue reappear? 2. Check the device's status / health screen for any new alerts. 3. Confirm paired devices (app, hub, controller) reconnected. 4. Save / commit any configuration changes per the device's normal workflow. 5. Note the change in your maintenance log with date + firmware version.
When to call Forcepoint: support instead
Escalate if:
- The same symptom returns within 24 hours of a clean fix.
- You see physical damage (burn marks, swollen battery, cracked PCB).
- The device is in warranty and a hardware replacement is the cheaper outcome.
- Repair requires specialised tools you don't own (alignment jigs, calibration software).
- Following the official path keeps the warranty intact, which matters more than the time spent.
More frequently asked questions
What if my model isn't exactly the same revision?
Cross-check the model code on the rating plate against the manufacturer support page. Major firmware generations sometimes shift the menu path; the option is usually under a similarly-named section.
Will the procedure work on the international variant?
Some features and firmware paths are region-locked. Check the model spec sheet to confirm your variant supports the menu option referenced. If you're outside the US/EU, look for the regional support portal.
How long does this fix usually take?
Most users complete the steps in 20-45 minutes the first time, and 5-10 minutes on subsequent runs once the menu paths are familiar.
Why is this happening on a brand-new unit?
Out-of-box defects do occur. If you've owned the device under 30 days and the symptom persists after a factory reset, escalate to the seller for replacement under DOA terms before opening a manufacturer support case.
What if the fix returns after a reboot?
Persistent fault returns mean either: a hardware fault (escalate), a configuration that's being overwritten by a sync source (check cloud profiles), or a regression in a recent firmware update (rollback).