9-45
Catalyst 2975 Switch Software Configuration Guide
OL-19720-02
Chapter 9 Configuring Switch-Based Authentication
Configuring the Switch for Secure Shell
To return to the default SSH control parameters, use the
no ip ssh
{
timeout
|
authentication-retries
}
global configuration command.
Displaying the SSH Configuration and Status
To display the SSH server configuration and status, use one or more of the privileged EXEC commands
in
For more information about these commands, see the
“
Secure Shell Commands
”
section in the “Other
Security Features” chapter of the
Cisco IOS Security Command Reference, Cisco IOS Release 12.2
:
http://www.cisco.com/en/US/docs/ios/12_2/security/configuration/guide/scfpass.html
Step 3
ip ssh
{
timeout
seconds
|
authentication-retries
number
}
Configure the SSH control parameters:
•
Specify the time-out value in seconds; the default is 120 seconds. The
range is 0 to 120 seconds. This parameter applies to the SSH
negotiation phase. After the connection is established, the switch uses
the default time-out values of the CLI-based sessions.
By default, up to five simultaneous, encrypted SSH connections for
multiple CLI-based sessions over the network are available (session 0
to session 4). After the execution shell starts, the CLI-based session
time-out value returns to the default of 10 minutes.
•
Specify the number of times that a client can re-authenticate to the
server. The default is 3; the range is 0 to 5.
Repeat this step when configuring both parameters.
Step 4
line vty
line_number
[
ending_line_number
]
transport input ssh
(Optional) Configure the virtual terminal line settings.
•
Enter line configuration mode to configure the virtual terminal line
settings. For
line_number
and
ending_line_number
, specify a pair of
lines. The range is 0 to 15.
•
Specify that the switch prevent non-SSH Telnet connections. This
limits the router to only SSH connections.
Step 5
end
Return to privileged EXEC mode.
Step 6
show ip ssh
or
show ssh
Show the version and configuration information for your SSH server.
Show the status of the SSH server connections on the switch.
Step 7
copy running-config startup-config
(Optional) Save your entries in the configuration file.
Command
Purpose
Table 9-5
Commands for Displaying the SSH Server Configuration and Status
Command
Purpose
show ip ssh
Shows the version and configuration information for the SSH server.
show ssh
Shows the status of the SSH server.
Содержание 2975 - Catalyst LAN Base Switch
Страница 36: ...Contents xxxvi Catalyst 2975 Switch Software Configuration Guide OL 19720 02 ...
Страница 40: ...xxxviii Catalyst 2975 Switch Software Configuration Guide OL 19720 02 Preface ...
Страница 62: ...1 22 Catalyst 2975 Switch Software Configuration Guide OL 19720 02 Chapter 1 Overview Where to Go Next ...
Страница 398: ...13 30 Catalyst 2975 Switch Software Configuration Guide OL 19720 02 Chapter 13 Configuring VLANs Configuring VMPS ...
Страница 424: ...15 18 Catalyst 2975 Switch Software Configuration Guide OL 19720 02 Chapter 15 Configuring VTP Monitoring VTP ...
Страница 628: ...26 8 Catalyst 2975 Switch Software Configuration Guide OL 19720 02 Chapter 26 Configuring UDLD Displaying UDLD Status ...
Страница 660: ...28 8 Catalyst 2975 Switch Software Configuration Guide OL 19720 02 Chapter 28 Configuring RMON Displaying RMON Status ...
Страница 888: ...38 32 Catalyst 2975 Switch Software Configuration Guide OL 19720 02 Chapter 38 Troubleshooting Troubleshooting Tables ...