334
Publickey authentication enabled SFTP client configuration
example
Network requirements
As shown in
:
•
You can log in to Switch B through the SFTP client that runs on Switch A.
•
After login, you are assigned the user role network-admin to execute file management and transfer
operations.
•
Switch B acts as the SFTP server and uses publickey authentication and the RSA public key
algorithm.
Figure 100
Network diagram
Configuration procedure
In the server configuration, the client's host public key is required. Generate RSA key pairs on the client
before configuring the SFTP server.
1.
Configure the SFTP client:
# Assign an IP address to VLAN-interface 2.
<SwitchA> system-view
[SwitchA] interface vlan-interface 2
[SwitchA-Vlan-interface2] ip address 192.168.0.2 255.255.255.0
[SwitchA-Vlan-interface2] quit
# Generate RSA key pairs.
[SwitchA] public-key local create rsa
The range of public key size is (512 ~ 2048).
If the key modulus is greater than 512, it will take a few minutes.
Press CTRL+C to abort.
Input the modulus length [default = 1024]:
Generating Keys...
........................++++++
...................++++++
..++++++++
............++++++++
Create the key pair successfully.
# Export the host public key to the file
pubkey
.
[SwitchA] public-key local export rsa ssh2 pubkey
[SwitchA] quit
# Transmit the public key file
pubkey
to the server through FTP or TFTP. (Details not shown.)
2.
Configure the SFTP server:
# Generate RSA key pairs.
<SwitchB> system-view