1-12
To do…
Use the command…
Remarks
Display the public keys of the
local key pairs
display public-key local
{
dsa
|
rsa
}
public
Available in any view
Display the public keys of the
SSH peers
display public-key peer
[
brief
|
name publickey-name
]
Available in any view
For information about the
display public-key local
and
display public-key peer
commands, refer to
Public Key Commands
in the
Security Volume
.
SSH Server Configuration Examples
When Switch Acts as Server for Password Authentication
Network requirements
z
As shown in
, a local SSH connection is established between the host (the SSH client)
and the switch (the SSH server) for secure data exchange.
z
Password authentication is required. The username and password are saved on the switch.
Figure 1-1
Switch acts as server for password authentication
Configuration procedure
1) Configure the SSH server
# Generate RSA and DSA key pairs and enable the SSH server.
<Switch> system-view
[Switch] public-key local create rsa
[Switch] public-key local create dsa
[Switch] ssh server enable
# Configure an IP address for VLAN interface 1. This address will serve as the destination of the SSH
connection.
[Switch] interface vlan-interface 1
[Switch-Vlan-interface1] ip address 192.168.1.40 255.255.255.0
[Switch-Vlan-interface1] quit
# Set the authentication mode for the user interfaces to AAA.
[Switch] user-interface vty 0 4
[Switch-ui-vty0-4] authentication-mode scheme
# Enable the user interfaces to support SSH.
Summary of Contents for S5500-SI Series
Page 161: ...3 10 GigabitEthernet1 0 1 2 MANUAL...
Page 220: ...1 7 Clearing ARP entries from the ARP table may cause communication failures...
Page 331: ...1 7 1 1 ms 1 ms 1 ms 1 1 6 1 2 1 ms 1 ms 1 ms 1 1 4 1 3 1 ms 1 ms 1 ms 1 1 2 2 Trace complete...
Page 493: ...2 8...
Page 1111: ...1 10 Installing patches Installation completed and patches will continue to run after reboot...