The following example shows creating
rhosts
.
admin@Unix_client# ls
id_rsa id_rsa.pub rhosts shosts
admin@Unix_client# cat rhosts
10.16.127.201 admin
Using Client-Based SSH Authentication
To SSH from the chassis to the SSH client, use the following command.
This method uses SSH version 1 or version 2. If the SSH port is a non-default value, use the
ip ssh server
port number
command to change the default port number. You may only change the port number when
SSH is disabled. Then use the
-p
option with the
ssh
command.
• SSH from the chassis to the SSH client.
ssh
ip_address
Example of Client-Based SSH Authentication
Dell#ssh 10.16.127.201 ?
-c Encryption cipher to use (for v2 clients only)
-l User name option
-m HMAC algorithm to use (for v2 clients only)
-p SSH server port option (default 22)
-v SSH protocol version
Troubleshooting SSH
To troubleshoot SSH, use the following information.
You may not bind
id_rsa.pub
to RSA authentication while logged in via the console. In this case, this message
displays:
%Error: No username set for this term.
Enable host-based authentication on the server (Dell Networking system) and the client (Unix machine). The
following message appears if you attempt to log in via SSH and host-based is disabled on the client. In this
case, verify that host-based authentication is set to “Yes” in the
file ssh_config
(root permission is required to
edit this file):
permission denied (host based).
If the IP address in the RSA key does not match the IP address from which you attempt to log in, the following
message appears. In this case, verify that the name and IP address of the client is contained in the
file /etc/
hosts:
RSA Authentication Error
.
Telnet
To use Telnet with SSH, first enable SSH, as previously described.
By default, the Telnet daemon is enabled. If you want to disable the Telnet daemon, use the following
command, or disable Telnet in the startup config. To enable or disable the Telnet daemon, use the
[no] ip
telnet server enable
command.
The Telnet server or client is VRF-aware. You can enable a Telnet server or client to listen to a specific VRF by
using the
vrf vrf-instance-name
parameter in the
telnet
command. This capability enables a Telent
server or client to look up the correct routing table and establish a connection.
Security
931
Summary of Contents for S4048T
Page 1: ...Dell Configuration Guide for the S4048T ON System 9 10 0 1 ...
Page 98: ... saveenv 7 Reload the system uBoot mode reset Management 98 ...
Page 113: ...Total CFM Pkts 10303 CCM Pkts 0 LBM Pkts 0 LTM Pkts 3 LBR Pkts 0 LTR Pkts 0 802 1ag 113 ...
Page 411: ...mode transit no disable Force10 Resilient Ring Protocol FRRP 411 ...
Page 590: ...Figure 67 Inspecting the LAG Configuration Link Aggregation Control Protocol LACP 590 ...
Page 646: ...Figure 87 Configuring Interfaces for MSDP Multicast Source Discovery Protocol MSDP 646 ...
Page 647: ...Figure 88 Configuring OSPF and BGP for MSDP Multicast Source Discovery Protocol MSDP 647 ...
Page 653: ...Figure 91 MSDP Default Peer Scenario 2 Multicast Source Discovery Protocol MSDP 653 ...
Page 654: ...Figure 92 MSDP Default Peer Scenario 3 Multicast Source Discovery Protocol MSDP 654 ...
Page 955: ...Figure 119 Single and Double Tag First byte TPID Match Service Provider Bridging 955 ...