Console Server & Router User Manual
291
To receive the fingerprint from the remote server, log in to the client as the required user (usually root) and establish a
connection to the remote host:
# ssh remhost
The authenticity of host 'remhost (192.168.0.1)' can't be established.
RSA key fingerprint is 8d:11:e0:7e:8a:6f:ad:f1:94:0f:93:fc:7c:e6:ef:56.
Are you sure you want to continue connecting (yes/no)?
At this stage, answer yes to accept the key. You should get the following message:
Warning: Permanently added 'remhost,192.168.0.1' (RSA) to the list of
known hosts.
You may be prompted for a password, but there is no need to log in - you have received the fingerprint and can Ctrl-C to
cancel the connection.If the host key changes you will receive the following warning, and not be allowed to connect to the
remote host:
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
@
WARNING: REMOTE HOST IDENTIFICATION HAS CHANGED!
@
@
IT IS POSSIBLE THAT SOMEONE IS DOING SOMETHING NASTY!
@
@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
Someone could be eavesdropping on you right now (man-in-the-middle attack)!
It is also possible that the RSA host key has just been changed.
The fingerprint for the RSA key sent by the remote host is
ab:7e:33:bd:85:50:5a:43:0b:e0:bd:43:3f:1c:a5:f8.
Please contact your system administrator.
Add correct host key in
/.ssh/known_hosts
to get rid of this message.
Offending key in
/.ssh/known_hosts:1
RSA host key for
remhost
has changed and you have requested strict checking.
Host key verification failed.
If the host key has been legitimately changed, it can be removed from the
~/.ssh/known_hosts
file and the new fingerprint
added. If it has not changed, this indicates a serious problem that should be investigated immediately.
15.6.7 SSH tunneled serial bridging
You have the option to apply SSH tunneling when two Black Box console servers are configured for serial bridging.
As detailed in
Chapter 4
, the
Server
console server is setup in
Console Server
mode with either RAW or RFC2217
enabled and the
Client
console server is set up in Serial Bridging Mode with the Server Address, and Server TCP Port
(4000 + port for RAW or 5000 + port # for RFC2217) specified:
Select
SSH Tunnel
when configuring the
Serial Bridging Setting
Summary of Contents for ACM5000
Page 3: ......
Page 10: ...Table of Contents 10 Console Server RIM Gateway User Manual...
Page 11: ......
Page 94: ...Chapter 5 Firewall Failover and Out of Band 94 Console Server RIM Gateway User Manual...
Page 119: ......
Page 149: ......
Page 191: ......
Page 205: ......
Page 225: ......
Page 303: ......
Page 313: ......
Page 323: ......