User's Manual
78
Document #: LTRT-65432
MP-11x & MP-124
5.2
Enabling CLI using SSH and RSA Public Key
The device's CLI can be accessed using Telnet. However, unless configured for TLS,
Telnet is not secure as it requires passwords to be transmitted in clear text. To overcome
this, Secure SHell (SSH) is used, which is the de-facto standard for secure CLI. SSH 2.0 is
a protocol built above TCP, providing methods for key exchange, authentication,
encryption, and authorization.
SSH requires appropriate client software for the management PC. Most Linux distributions
have OpenSSH pre-installed; Windows-based PCs require an SSH client software such as
PuTTY, which can be downloaded from
http://www.chiark.greenend.org.uk/~sgtatham/putty/.
By default, SSH uses the same username and password as the Telnet and Web server.
SSH supports 1024/2048-bit RSA public keys, providing carrier-grade security. Follow the
instructions below to configure the device with an administrator RSA key as a means of
strong authentication.
To enable SSH and configure RSA public keys for Windows (using PuTTY SSH):
1.
Start the PuTTY Key Generator program, and then do the following:
a.
Under the 'Parameters' group, do the following:
♦
Select the
SSH-2 RSA
option.
♦
In the 'Number of bits in a generated key' field, enter "1024" bits.
b.
Under the 'Actions' group, click
Generate
and then follow the on-screen
instructions.
c.
Under the 'Actions' group, click
Save
private key
to save the new private key to a
file (*.ppk) on your PC.
d.
Under the 'Key' group, select the displayed encoded text between "ssh-rsa" and
"rsa-key-….", as shown in the example below:
Figure
5-2: Selecting Public RSA Key in PuTTY
2.
Open the Telnet/SSH Settings page (
Configuration
tab >
System
menu >
Management
>
Telnet/SSH Settings
), and then do the following:
a.
Set the 'Enable SSH Server' parameter to
Enable
.
b.
Paste the public key that you copied in Step 1.d into the 'Admin Key' field, as
shown below:
Summary of Contents for Media Pack MP-11x
Page 2: ......
Page 14: ...User s Manual 14 Document LTRT 65432 MP 11x MP 124 This page is intentionally left blank...
Page 24: ...User s Manual 24 Document LTRT 65432 MP 11x MP 124 This page is intentionally left blank...
Page 25: ...Part I Getting Started with Initial Connectivity...
Page 26: ......
Page 35: ...Part II Management Tools...
Page 36: ......
Page 38: ...User s Manual 38 Document LTRT 65432 MP 11x MP 124 This page is intentionally left blank...
Page 86: ...User s Manual 86 Document LTRT 65432 MP 11x MP 124 This page is intentionally left blank...
Page 94: ...User s Manual 94 Document LTRT 65432 MP 11x MP 124 This page is intentionally left blank...
Page 100: ...User s Manual 100 Document LTRT 65432 MP 11x MP 124 This page is intentionally left blank...
Page 108: ...User s Manual 108 Document LTRT 65432 MP 11x MP 124 This page is intentionally left blank...
Page 109: ...Part III General System Settings...
Page 110: ......
Page 118: ...User s Manual 118 Document LTRT 65432 MP 11x MP 124 This page is intentionally left blank...
Page 121: ...Part IV General VoIP Configuration...
Page 122: ......
Page 152: ...User s Manual 152 Document LTRT 65432 MP 11x MP 124 This page is intentionally left blank...
Page 202: ...User s Manual 202 Document LTRT 65432 MP 11x MP 124 This page is intentionally left blank...
Page 204: ...User s Manual 204 Document LTRT 65432 MP 11x MP 124 This page is intentionally left blank...
Page 230: ...User s Manual 230 Document LTRT 65432 MP 11x MP 124 This page is intentionally left blank...
Page 231: ...Part V Gateway Application...
Page 232: ......
Page 234: ...User s Manual 234 Document LTRT 65432 MP 11x MP 124 This page is intentionally left blank...
Page 274: ...User s Manual 274 Document LTRT 65432 MP 11x MP 124 This page is intentionally left blank...
Page 278: ...User s Manual 278 Document LTRT 65432 MP 11x MP 124 This page is intentionally left blank...
Page 298: ...User s Manual 298 Document LTRT 65432 MP 11x MP 124 This page is intentionally left blank...
Page 326: ...User s Manual 326 Document LTRT 65432 MP 11x MP 124 This page is intentionally left blank...
Page 327: ...Part VI Stand Alone Survivability Application...
Page 328: ......
Page 336: ...User s Manual 336 Document LTRT 65432 MP 11x MP 124 This page is intentionally left blank...
Page 358: ...User s Manual 358 Document LTRT 65432 MP 11x MP 124 This page is intentionally left blank...
Page 361: ...Part VII Maintenance...
Page 362: ......
Page 368: ...User s Manual 368 Document LTRT 65432 MP 11x MP 124 This page is intentionally left blank...
Page 406: ...User s Manual 406 Document LTRT 65432 MP 11x MP 124 This page is intentionally left blank...
Page 409: ...Part VIII Status Performance Monitoring and Reporting...
Page 410: ......
Page 441: ...Part IX Diagnostics...
Page 442: ......
Page 456: ...User s Manual 456 Document LTRT 65432 MP 11x MP 124 This page is intentionally left blank...
Page 458: ...User s Manual 458 Document LTRT 65432 MP 11x MP 124 This page is intentionally left blank...
Page 471: ...Part X Appendix...
Page 472: ......