114
To do…
Use the command…
Remarks
2.
Display the public keys of the
peers
display public-key peer
[
brief
|
name
publickey-name
]
Public key configuration examples
By default, Ethernet, VLAN, and aggregate interfaces are in the state of DOWN. To configure such an
interface, use the
undo shutdown
command to bring it up first.
Configuring the public key of a peer manually
Network requirements
Device A is authenticated by Device B when accessing Device B, so the public key of Device A
should be configured on Device B in advance.
In this example:
•
RSA is used.
•
The host public key of Device A is configured manually on Device B.
Figure 34
Network diagram for manually configuring the public key of a peer
Configuration procedure
1.
Configure Device A
Create RSA key pairs on Device A.
<DeviceA> system-view
[DeviceA] public-key local create rsa
Warning: The local key pair already exist.
Confirm to replace them? [Y/N]:y
The range of public key size is (512 ~ 2048).
NOTES: If the key modulus is greater than 512,
It will take a few minutes.
Press CTRL+C to abort.
Input the bits of the modulus[default = 1024]:
Generating Keys...
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
++++++++++++++++++++++++++++++++
++++++++++++++++++++++++++++++