6-3
Configuring Secure Shell (SSH)
Overview
N o t e
SSH in the ProCurve switch is based on the OpenSSH software toolkit. For
more information on OpenSSH, visit
http://www.openssh.com
.
Switch SSH and User Password Authentication .
This option is a subset
of the client public-key authentication show in figure 6-1. It occurs if the switch
has SSH enabled but does not have login access (
login public-key
) configured
to authenticate the client’s key. As in figure 6-1, the switch authenticates itself
to SSH clients. Users on SSH clients then authenticate themselves to the
switch (login and/or enable levels) by providing passwords stored locally on
the switch or on a or RADIUS server. However, the client does not
use a key to authenticate itself to the switch.
Figure 6-2. Switch/User Authentication
SSH on the ProCurve switches covered in this guide supports these data
encryption methods:
■
3DES (168-bit)
■
DES (56-bit)
N o t e
The ProCurve switches covered in this guide use the RSA algorithm for
internally generated keys (v2 shared host key). However, ProCurve switches
support both RSA and DSA/DSS keys for client authentication. All references
to either a public or private key mean keys generated using these algorithms
unless otherwise noted
ProCurve
Switch
(SSH
Server)
SSH
Client
Work-
Station
1. Switch-to-Client SSH
2. User-to-Switch (login password and
enable password authentication)
options:
– Local
–
Содержание ProCurve 2510G Series
Страница 1: ...Access Security Guide www procurve com ProCurve Series 2510G Switches Y 11 XX ...
Страница 2: ......
Страница 3: ...ProCurve Series 2510G Switches Access Security Guide June 2008 ...
Страница 12: ...x ...
Страница 26: ...1 10 Getting Started Need Only a Quick Start ...
Страница 105: ...4 31 TACACS Authentication Configuring TACACS on the Switch ...
Страница 106: ...4 32 TACACS Authentication Configuring TACACS on the Switch ...
Страница 176: ...6 30 Configuring Secure Shell SSH Messages Related to SSH Operation ...
Страница 198: ...7 22 Configuring Secure Socket Layer SSL Common Errors in SSL Setup ...
Страница 296: ...9 40 Configuring and Monitoring Port Security Configuring Protected Ports ...
Страница 310: ...10 14 Using Authorized IP Managers Operating Notes ...
Страница 318: ...8 Index ...
Страница 319: ......