Purpose
Command or Action
Configures server certificate profile and user certificate profile and
enters SSH certificate profile configuration mode.
ip ssh server certificate profile
Example:
Switch(config)# ip ssh server certificate
profile
Step 5
Configures user certificate profile and enters SSH server certificate
profile user configuration mode.
user
Example:
Switch(ssh-server-cert-profile)# user
Step 6
Configures the public key infrastructure (PKI) trustpoint that is used
to verify the incoming user certificate.
trustpoint verify PKI-trustpoint-name
Example:
Switch(ssh-server-cert-profile-user)#
trustpoint verify trust2
Step 7
Configure multiple trustpoints by executing the same
command multiple times. A maximum of 10 trustpoints can
be configured.
Note
(Optional) Mandates the presence of the Online Certificate Status
Protocol (OCSP) response with the incoming user certificate.
ocsp-response required
Example:
Switch(ssh-server-cert-profile-user)#
ocsp-response required
Step 8
By default, the user certificate is accepted without an OCSP
response.
Note
Exits SSH server certificate profile user configuration mode and
returns to privileged EXEC mode.
end
Example:
Switch(ssh-server-cert-profile-user)# end
Step 9
Verifying the Server and User Authentication Using Digital Certificates
SUMMARY STEPS
1.
enable
2.
show ip ssh
DETAILED STEPS
Step 1
enable
Enables privileged EXEC mode.
•
Enter your password if prompted.
Consolidated Platform Configuration Guide, Cisco IOS Release 15.2(4)E (Catalyst 2960-X Switches)
1122
Verifying the Server and User Authentication Using Digital Certificates
Summary of Contents for Catalyst 2960 Series
Page 96: ......
Page 196: ......
Page 250: ......
Page 292: ......
Page 488: ......
Page 589: ...P A R T VI Cisco Flexible NetFlow Configuring NetFlow Lite page 509 ...
Page 590: ......
Page 619: ...P A R T VII QoS Configuring QoS page 539 Configuring Auto QoS page 645 ...
Page 620: ......
Page 750: ......
Page 1604: ......
Page 1740: ......
Page 2105: ...P A R T XII Configuring Cisco IOS IP SLAs Configuring Cisco IP SLAs page 2025 ...
Page 2106: ......
Page 2118: ......
Page 2164: ......