• SSH and telnet access:
The switch can be accessed through secure (SSH) and non-secure (telnet)
terminal access.
The switch supports these encryption algorithms for SSH:
•
3DES
•
Blowfish
•
AES
•
Arcfour
To take advantage of the SSH capability in the switch, you will need to use an SSH client
program. There are many SSH client programs available for you to log onto the host (the
switch).
Two open source SSH client programs are available on the Internet:
•
Program name: OpenSSH for Windows:
http://sshwindows.sourceforge.net/
•
Program name: PuTTY:
http://www.chiark.greenend.org.uk/~sgtatham/putty/
The SSH protocol requires some way for clients to be sure they are communicating with the
intended host. The host computes a “fingerprint” based on its key and provides that to the
client for verification. The first time a client program sees a fingerprint, it typically displays it
and asks something like “The host is offering me these credentials, should I trust it?”
If you agree, the fingerprint is stored for later reuse.
For the system to be secure, the fingerprint used for comparison must be transmitted “out of
band” (by a means other than the channel that is being secured by the fingerprint). In this
case, via documentation.
The RSA fingerprint for the managed switch’s encryption key is:
1e:0f:31:39:26:3f:23:8c:ba:7e:e9:d1:56:ff:98:f6
Web access:
Choose the level of web access to allow.
• No web access:
No web access allowed.
• HTTP access:
Basic HTTP access allowed.
• Secure HTTP (HTTPS) access:
Secure HTTP (HTTPS) required. Attempts to access the switch
via http will be redirected to the secure protocol.
• Basic and secure HTTP access:
Basic and secure HTTP access allowed.
SNMP firmware loading:
Allows or disallows loading firmware via the SNMP protocol.
Command line access:
Allows or disallows Command Line (CLI) access.
Automatic Logout:
Specify the number of minutes of inactivity before terminal sessions
automatically logout to prevent unauthorized access. The default is 5 minutes.
SNMP read-only name:
This parameter sets the SNMPv2 community string and SNMPv3
user name that may be used by SNMP clients for read-only access of settings. Enter your
own value if you wish to secure read-only access. (Default is “public”).
SNMP read-only password:
These parameters set the password for secure SNMPv3 access
by the read-only user. SNMP passwords must be at least eight characters long. The default
read-only password is ‘publicpwd’ (w/out quotes).
4-5
Chapter 4 - Managed Switch Software Setup
Stride Industrial Ethernet Switches User Manual 2nd Ed. Rev. A
Summary of Contents for SE-MC2U-SC
Page 1: ...Manual Number SE USER M Industrial Ethernet Switches and Media Converters USER MANUAL...
Page 2: ......
Page 6: ......
Page 8: ......
Page 14: ......
Page 50: ......
Page 85: ...This page intentionally left blank...
Page 168: ......
Page 169: ...Glossary UL C US R In This Appendix Glossary of Terms B 2 B B B Appendix Appendix Appendix...
Page 229: ......
Page 230: ......