Chapter 23: Authentication Commands
Secure Shell
– 786 –
•
The SSH server uses DSA or RSA for key exchange when the client first
establishes a connection with the switch, and then negotiates with the
client to select either DES (56-bit) or 3DES (168-bit) for data
encryption.
•
You must generate DSA and RSA host keys before enabling the SSH
server.
E
XAMPLE
Console#ip ssh crypto host-key generate dsa
Console#configure
Console(config)#ip ssh server
Console(config)#
R
ELATED
C
OMMANDS
ip ssh crypto host-key generate (787)
ip ssh server-key
size
This command sets the SSH server key size. Use the
no
form to restore the
default setting.
S
YNTAX
ip ssh server-key size key-size
no ip ssh server-key size
key-size
– The size of server key. (Range: 512-896 bits)
D
EFAULT
S
ETTING
768 bits
C
OMMAND
M
ODE
Global Configuration
C
OMMAND
U
SAGE
The server key is a private key that is never shared outside the switch.
The host key is shared with the SSH client, and is fixed at 1024 bits.
E
XAMPLE
Console(config)#ip ssh server-key size 512
Console(config)#
ip ssh timeout
This command configures the timeout for the SSH server. Use the
no
form
to restore the default setting.
S
YNTAX
ip ssh
timeout
seconds
Summary of Contents for SSE-G2252
Page 42: ...44 General IP Routing on page 627...
Page 603: ...Chapter 16 IP Configuration Setting the Switch s IP Address IP Version 6 609...
Page 883: ...Chapter 24 General Security Measures Port based Traffic Segmentation 894...
Page 989: ...Chapter 30 Congestion Control Commands Automatic Traffic Control Commands 1000 Console...
Page 1007: ...Chapter 33 Address Table Commands 1019...
Page 1137: ...Chapter 38 Quality of Service Commands 1150...