Security
ExtremeWare XOS 11.3 Concepts Guide
338
If {
; #none specified
}
then
{
permit;
}
}
Configuring SSH2 to Use ACL Policies
This section assumes that you have already loaded the policy on the switch. For more information about
creating and implementing ACLs and policies, see
Chapter 12
, “
Policy Manager
” and
Chapter 13
,
“
Access Lists (ACLs)
.”
To configure SSH2 to use an ACL policy to restrict access, use the following command:
enable ssh2 {access-profile [<access_profile> | none]} {port <tcp_port_number>} {vr
[<vr_name> | all | default]}
Use the
none
option to remove a previously configured ACL.
Using SCP2 from an External SSH2 Client
In ExtremeWare XOS version 11.0 or later, the SCP2 protocol is supported for transferring configuration,
and policy files to the switch from the SCP2 client.
The user must have administrator-level access to the switch. The switch can be specified by its switch
name or IP address.
ExtremeWare XOS only allows SCP2 to transfer to the switch files named as follows:
●
*.cfg—ExtremeWare XOS configuration files
●
*.pol—ExtremeWare XOS policy files
In the following examples, you are using a Linux system to move files to and from the switch at
192.168.0.120, using the switch administrator account
admin
.You are logged into your Linux system as
user
.
To transfer the primary configuration file from the switch to your current Linux directory using SCP2,
use the following command:
[user@linux-server]# scp2 [email protected]:/config/primary.cfg primary.cfg
To copy the policy filename
test.pol
from your Linux system to the switch, use the following command:
[user@linux-server]# scp2 test.pol [email protected]:/config/test.pol
SSH2 Client Functions on the Switch
Beginning with ExtremeWare XOS 11.2, an Extreme Networks switch can function as an SSH2 client.
This means you can connect from the switch to a remote device running an SSH2 server and send
commands to that device. You can also use SCP2 to transfer files to and from the remote device.
Содержание ExtremeWare XOS 11.3
Страница 20: ...Contents ExtremeWare XOS 11 3 Concepts Guide 20...
Страница 25: ...1 Using ExtremeWare XOS...
Страница 26: ......
Страница 38: ...ExtremeWare XOS Overview ExtremeWare XOS 11 3 Concepts Guide 38...
Страница 58: ...Accessing the Switch ExtremeWare XOS 11 3 Concepts Guide 58...
Страница 146: ...Configuring Slots and Ports on a Switch ExtremeWare XOS 11 3 Concepts Guide 146...
Страница 218: ...Status Monitoring and Statistics ExtremeWare XOS 11 3 Concepts Guide 218...
Страница 240: ...Virtual LANs ExtremeWare XOS 11 3 Concepts Guide 240...
Страница 248: ...Virtual Routers ExtremeWare XOS 11 3 Concepts Guide 248...
Страница 278: ...Access Lists ACLs ExtremeWare XOS 11 3 Concepts Guide 278...
Страница 288: ...Routing Policies ExtremeWare XOS 11 3 Concepts Guide 288 entry deny_rest if then deny...
Страница 344: ...Security ExtremeWare XOS 11 3 Concepts Guide 344...
Страница 393: ...2 Using Switching and Routing Protocols...
Страница 394: ......
Страница 454: ...Spanning Tree Protocol ExtremeWare XOS 11 3 Concepts Guide 454...
Страница 484: ...Extreme Standby Router Protocol ExtremeWare XOS 11 3 Concepts Guide 484...
Страница 514: ...IPv4 Unicast Routing ExtremeWare XOS 11 3 Concepts Guide 514...
Страница 530: ...IPv6 Unicast Routing ExtremeWare XOS 11 3 Concepts Guide 530...
Страница 538: ...RIP ExtremeWare XOS 11 3 Concepts Guide 538...
Страница 556: ...OSPF ExtremeWare XOS 11 3 Concepts Guide 556...
Страница 566: ...OSPFv3 ExtremeWare XOS 11 3 Concepts Guide 566...
Страница 589: ...3 Appendixes...
Страница 590: ......
Страница 640: ...CNA Agent ExtremeWare XOS 11 3 Concepts Guide 640...
Страница 670: ...Glossary ExtremeWare XOS 11 3 Concepts Guide 670...
Страница 698: ...Index ExtremeWare XOS 11 3 Concepts Guide 698...