Chapter 6 – RouteFinder Software
Multi-Tech Systems, Inc. RouteFinderVPN RF760/660/600VPN User Guide (PN S000323D)
45
Administration > SSH
Administration > SSH
What Is SSH
SSH (Secure Shell) is a program to log into another computer over a network to execute commands in a remote machine
and to move files from one machine to another. It provides strong authentication and secure communications over an
insecure network. It is intended as a replacement for
rlogin
,
rsh
, and
rcp
. The SSH configuration provides access to the
firewall using SSH channel. SSH is a text-oriented interface suitable only for the experienced administrators. Access via SSH
is encrypted and, therefore, impossible for outside users to tap into it.
Prerequisites
•
For access via SSH
,
you need an SSH Client, which most Linux systems already include. For MS Windows, the
program
PuTTY
is recommended as an SSH client.
•
To log into the RouteFinder with Secure Shell (SSH, Port 22), use the
login user
account and the appropriate
password that was set up during installation. Remember to change your password regularly!
•
Networks allowed to access the RouteFinder using SSH are added on this screen; other networks can be defined
on the
Networks & Services > Networks screen
.
Status and SSH Port
Initially, this screen displays with
Status
as the only prompt. Once
Status
is checked and you click
Save
, SSH
is enabled and the other options display. The TCP port number for the SSH session is specified in the SSH
Port Number field; the default is Port 22.
SSH requires name resolution for the access protocol; otherwise, a time-out occurs with the SSH registration.
This time-out takes about one minute. During this time it seems as if the connection is frozen or that it can’t be
established. After that, the connection returns to normal without any further delay.
Allowed Networks
Networks allowed to access the RouteFinder through SSH can be added and deleted here. The default
Any
in
Allowed Networks
ensures a smooth installation and allows everyone to access SSH service.
Caution:
While the default setting (
Any
) allows everyone to access the SSH service, we recommend that you
restrict access to the SSH service for security reasons. You should delete access from all other networks!
When deleting a network, the program checks whether you are still able to access
Administration >
Administrative Access
from your active IP address after the deleting procedure. If this is no longer possible,
the process is not carried out. This check is carried out for the security of the administrator and will ensure that
the administrator cannot become locked out accidentally. After completing the adjustments, it is a good idea to
disable SSH access again for security reasons.
Allowed Users
Users allowed to access the RouteFinder through SSH can be added and deleted here. Highlight the Users
you want to have access to SSH service and click the
Add
button. Users can be deleted from this list at any
time.