TeleBoss 850 2.06.280_STD User Manual
Page 86
SSH to Telnet Bridging
SSH to Telnet Bridging is used to allow authorized Telnet access to specific machines from the unit, upon succesfully
connecting to the unit via SSH. The benefit of this feature is that if the unit is in a network environment where users
can be enabled to have access to certain machines via Telnet (via an SSH connection to the unit) without being
allowed access to any other Telnet hosts.
Configuration
There are four steps to configuring SSH to Telnet Bridging:
1) Configure the Telnet hosts to which users need acess. The first 4 CPE configuration slots have a setting which
enables this bridging access. Select the CPE configuration slot, configure an IP address and a name, and enable
SSH to Telnet Bridging. This can be done via the
menu for CPE 1, 2, 3, or 4, or via the Setting Keys
shown here.
net.cpe[x].ip
= <some P address>
net.cpe[x].name
= <some name, e.g., my telnet host>
net.cpe[x].stbridging.enable
= on
2) Configure a user to be authorized to access this Telnet host.
Note:
RADIUS cannot be used to authorize users for this feature.
menu and setting the Pass-through Permissions option to ALLOW for the CPE
device that this user will be allowed to access or via the Setting Key shown here.
sec.user[x].cpe[y].ptaccess
= ALLOW
ALLOW is the default value for this setting, so if you have all other users for which you would like to deny bridging
access to all CPEs, you have to explicity configure denying them. This can be done by first denying all users, and then
allowing your particular user. This can be done by setting the following configuration:
sec.user[all].cpe[all].ptaccess
= DENY
sec.user[x].cpe[1].ptaccess
= ALLOW
3) Configure which CPE the user can access. This is done via the
menu and setting the Set Pass-through
Pointer To option to the CPE device (CPE 1, CPE 2, etc.) desired, or via the Setting Key shown here.
sec.user[x].pttarget
= <CPE1> or <CPE2> or <CPE3> or <CPE4>
4) Configure how the user can access the bridged CPE. There are three options which can be configured via the
menu and setting the Upon Login Then Go To option to one of the following:
•
MENU
– upon login, the user is presented with the login menu. If they are authorized to bridge to a CPE, a menu
item will be present which they can use to engage this bridge.
•
PASSTHROUGH
– upon login, bridging access automatically engages to the CPE configured in 3) above.
•
COMMAND
– upon login the user is connected to the Command Processor, and then enters the
EXIT
command
to display the login menu.
Or use this Setting Key:
sec.user[x].loginto
= <MENU> or <PASSTHROUGH> or <COMMAND>
Содержание Teleboss 850
Страница 6: ......