318
c.
Click
Save private key
to save the private key.
A warning window pops up to prompt you whether to save the private key without any
protection.
d.
Click
Yes
and enter the name of the file for saving the key (
private.ppk
in this case).
e.
Transmit the public key file to the server through FTP or TFTP.
2.
Configure the SSH server:
# Generate the RSA key pairs.
<Switch> system-view
[Switch] public-key local create rsa
The range of public key size is (512 ~ 2048).
NOTES: If the key modulus is greater than 512,
It will take a few minutes.
Press CTRL+C to abort.
Input the bits of the modulus[default = 1024]:
Generating Keys...
++++++++
++++++++++++++
+++++
++++++++
# Generate a DSA key pair.
[Switch] public-key local create dsa
The range of public key size is (512 ~ 2048).
NOTES: If the key modulus is greater than 512,
It will take a few minutes.
Press CTRL+C to abort.
Input the bits of the modulus[default = 1024]:
Generating Keys...
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
+++++++++++++++++++++++++++++++++++
# Enable the SSH server.
[Switch] ssh server enable
# Configure an IP address for VLAN-interface 1. This address will serve as the destination of the
SSH connection.
[Switch] interface vlan-interface 1
[Switch-Vlan-interface1] ip address 192.168.1.40 255.255.255.0
[Switch-Vlan-interface1] quit
# Set the authentication mode for the user interfaces to AAA.
[Switch] user-interface vty 0 15
[Switch-ui-vty0-15] authentication-mode scheme
# Enable the user interfaces to support SSH.
[Switch-ui-vty0-15] protocol inbound ssh
# Set the user command privilege level to 3.
[Switch-ui-vty0-15] user privilege level 3
[Switch-ui-vty0-15] quit
# Import the client’s public key from file
key.pub
and name it
Switch001
.
[Switch] public-key peer Switch001 import sshkey key.pub