508
C
HAPTER
22: F
ILE
S
YSTEM
M
ANAGEMENT
Configuring and Canceling Local RSA Key Pair
In executing this command, if you have configured RSA host key pair, the system gives
an alarm after using this command and prompts that the existing one will be
replaced. The server key pair is created dynamically by the SSH server. The maximum
bit range of both key pairs is 2048 bits and the minimum is 512.
Please perform the following configurations in System View.
Table 578
Configuring and Canceling Local RSA Key Pair
For a successful SSH login, you must configure and generate the local RSA key pairs.
To generate local key pairs, you just need to execute the command once, with no
further action required even after the system is rebooted.
Configuring Authentication Type
For a new user, you must specify authentication type. Otherwise, they cannot access
the Switch.
Perform the following configurations in System View.
Table 579
Configuring Authentication Type
If the configuration is RSA authentication type, then the RSA public key of the client
user must be configured on the Switch, that is to perform the 7 and 8 serial number
marked configuration.
By default, no authentication type is specified for a new user, so they cannot access
the Switch.
Defining Update Interval of Server Key
Perform the following configurations in System View.
Table 580
Defining Update Interval of Server Key
By default, the system does not update server key.
Defining SSH Authentication Timeout Value
Perform the following configurations in System View.
Table 581
Defining SSH Authentication Timeout Value
By default, the timeout value for SSH authentication is 60 seconds.
Operation
Command
Configure local RSA key pair
rsa local-key-pair create
Cancel local RSA key pair
rsa local-key-pair destroy
Operation
Command
Configure authentication type
ssh user
username
authentication-type {
password | rsa | all }
Remove authentication type setting
undo ssh user
username
authentication-type
Operation
Command
Define update interval of server key
ssh server rekey-interval
hours
Restore the default update interval
undo ssh server rekey-interval
Operation
Command
Define SSH authentication timeout value
ssh server timeout
seconds
Restore the default timeout value
undo ssh server timeout
Содержание 5500 SI - Switch - Stackable
Страница 24: ...24 ABOUT THIS GUIDE...
Страница 30: ...30 CHAPTER 1 GETTING STARTED Figure 3 Setting up a New Connection Figure 4 Configuring the Port for Connection...
Страница 50: ...50 CHAPTER 1 GETTING STARTED...
Страница 54: ...54 CHAPTER 2 ADDRESS MANAGEMENT CONFIGURATION...
Страница 78: ...78 CHAPTER 3 PORT OPERATION...
Страница 88: ...88 CHAPTER 4 XRN CONFIGURATION...
Страница 122: ...122 CHAPTER 8 VLAN VPN CONFIGURATION...
Страница 216: ...216 CHAPTER 15 SSH TERMINAL SERVICES...
Страница 268: ...268 CHAPTER 16 IP ROUTING PROTOCOL OPERATION...
Страница 308: ...308 CHAPTER 17 NETWORK PROTOCOL OPERATION...
Страница 349: ...349...
Страница 350: ...350 CHAPTER 18 MULTICAST PROTOCOL...
Страница 522: ...522 CHAPTER 22 FILE SYSTEM MANAGEMENT...
Страница 584: ...584 CHAPTER 30 PASSWORD CONTROL CONFIGURATION OPERATIONS...
Страница 600: ...600 CHAPTER 31 MSDP CONFIGURATION...
Страница 614: ...614 CHAPTER 32 CLUSTERING...
Страница 670: ...670 CHAPTER C AUTHENTICATING THE SWITCH 5500 WITH CISCO SECURE ACS...