
Operation Manual – SSH
H3C S5500-EI Series Ethernet Switches
Chapter 1 SSH Configuration
1-28
[SwitchB-ui-vty0-4] authentication-mode scheme
# Enable the user interface to support SSH.
[SwitchB-ui-vty0-4] protocol inbound ssh
# Set the user command privilege level to 3.
[SwitchB-ui-vty0-4] user privilege level 3
[SwitchB-ui-vty0-4] quit
Note:
Before performing the following tasks, you must generate a DSA public key pair (using
the client software) on the client, save the key pair in a file named key.pub, and then
upload the file to the SSH server through FTP or TFTP. For details, refer to
Configuring
the SSH Client
.
# Import the remote public key pair from the file “key.pub”.
[SwitchB] public-key peer Switch001 import sshkey key.pub
# Specify the authentication type for user “client002” as publickey, and assign the public
key “Switch001” for the user.
[SwitchB] ssh user client002 service-type stelnet authentication-type
publickey assign publickey Switch001
2)
Configure the SSH client
# Configure an IP address for Vlan interface 1.
<SwitchA> system-view
[SwitchA] interface vlan-interface 1
[SwitchA-Vlan-interface1] ip address 10.165.87.137 255.255.255.0
[SwitchA-Vlan-interface1] quit
# Generate a DSA key pair.
[SwitchA] public-key local create dsa
# Export the DSA key pair to the file
key.pub
.
[SwitchA] public-key local export dsa ssh2 key.pub
[SwitchA] quit