308
SSH connection across VPNs
With this function, configure the router as an SSH client to establish connections with SSH servers in
different MPLS VPNs.
As shown in
, the hosts in VPN 1 and VPN 2 access the MPLS backbone through PEs, with
the services of the two VPNs isolated. After a PE is enabled with the SSH client function, it can establish
SSH connections with CEs in different VPNs that are enabled with the SSH server function to implement
secure access to the CEs and secure transfer of log file.
Figure 104
Network diagram for SSH/SFTP connection across VPNs
Configuring the router as an SSH server
Configuration task list
Task Remarks
Generating a DSA or RSA key pair
Required
Enabling the SSH server function
Required
Configuring user interfaces for SSH clients
Required
Configuring a client public key
Required for publickey authentication users and
optional for password authentication users
Optional
Setting SSH management parameters
Optional