Simply put ACL under the line vty that only allow your IP subnet and deny others.
okay and what about http access to the router?
access-list 100 deny tcp OUTSIDE_ADDR ROUTER eq 80access-list 100 permit ip any anywhere: OUTSIDE_ADDR is anything but your LAN and ROUTER is the router interface. Use wildcard masks to designate more than one interface.
the OUTSIDE_ADDR does not appear to work. How am i suppose to specify any outside address.. im running a 192.168.100.X LAN.