371
Task Command
Remarks
Establish a
connection to
an IPv4 SFTP
server.
•
(In non-FIPS mode.) Establish a connection to an
IPv4 SFTP server:
sftp
server
[
port-number
] [
vpn-instance
vpn-instance-name
] [
identity-key
{
dsa
|
ecdsa
|
rsa
| {
x509v3-ecdsa-sha2-nistp384
|
x509v3-ecdsa-sha2-nistp256
}
pki-domain
domain-name
} |
prefer-compress zlib
|
prefer-ctos-cipher
{
3des-cbc
|
aes128-cbc
|
aes256-cbc
|
des-cbc
|
aes128-ctr
|
aes192-ctr
|
aes256-ctr
|
aes128-gcm
|
aes256-gcm
} |
prefer-ctos-hmac
{
md5
|
md5-96
|
sha1
|
sha1-96
|
sha2-256
|
sha2-512
} |
prefer-kex
{
dh-group-exchange-sha1
|
dh-group1-sha1
|
dh-group14-sha1
|
ecdh-sha2-nistp256
|
ecdh-sha2-nistp384
} |
prefer-stoc-cipher
{
3des-cbc
|
aes128-cbc
|
aes256-cbc
|
des-cbc
|
aes128-ctr
|
aes192-ctr
|
aes256-ctr
|
aes128-gcm
|
aes256-gcm
} |
prefer-stoc-hmac
{
md5
|
md5-96
|
sha1
|
sha1-96
|
sha2-256
|
sha2-512
} ] * [
dscp
dscp-value
| {
public-key
keyname
|
server-pki-domain
domain-name
} |
source
{
interface
interface-type interface-number
|
ip
ip-addres
} ] *
•
(In FIPS mode.) Establish a connection to an IPv4
SFTP server:
sftp
server
[
port-number
] [
vpn-instance
vpn-instance-name
] [
identity-key
{
ecdsa
|
rsa
|
{
x509v3-ecdsa-sha2-nistp384
|
x509v3-ecdsa-sha2-nistp256
}
pki-domain
domain-name
}
|
prefer-compress zlib
|
prefer-ctos-cipher
{
aes128-cbc
|
aes256-cbc
|
aes128-ctr
|
aes192-ctr
|
aes256-ctr
|
aes128-gcm
|
aes256-gcm
} |
prefer-ctos-hmac
{
sha1
|
sha1-96
|
sha2-256
|
sha2-512
} |
prefer-kex
{
dh-group14-sha1
|
ecdh-sha2-nistp256
|
ecdh-sha2-nistp384
} |
prefer-stoc-cipher
{
aes128-cbc
|
aes256-cbc
|
aes128-ctr
|
aes192-ctr
|
aes256-ctr
|
aes128-gcm
|
aes256-gcm
} |
prefer-stoc-hmac
{
sha1
|
sha1-96
|
sha2-256
|
sha2-512
} ] * [ {
public-key
keyname
|
server-pki-domain
domain-name
} |
source
{
interface
interface-type interface-number
|
ip
ip-address
} ] *
Available in user view.
To establish a connection to an IPv6 SFTP server:
Summary of Contents for 10500 series
Page 326: ...312 No duration limit for this SA ...