Quidway NetEngine20/20E
Configuration Guide - Basic Configurations
9 Telnet and SSH
Issue 05 (2010-01-30)
Huawei Proprietary and Confidential
Copyright © Huawei Technologies Co., Ltd.
9-45
<Quidway>
system-view
[Quidway]
stelnet server enable
[Quidway]
sftp server enable
# When you log in for the first time, enable the first-time authentication for the SSH client.
[client]
ssh client first-time enable
[client]
quit
# Connect the STelnet client to the SSH server through RADIUS authentication mode.
<client>
system-view
[client]
stelnet 10.164.39.222
Please input the username: [email protected]
Trying 10.164.39.222 ...
Press CTRL+K to abort
Connected to 10.164.39.222 ...
Step 6
Verify the configuration.
After the configuration, run the
display radius-server configuration
command and the
display ssh server session
command on the SSH server. You can view the configuration of
the RADIUS server on the SSH server. You can also view that the STelnet or SFTP client is
connected to the SSH server successfully in the RADIUS authentication.
# Display the configuration of the RADIUS server.
[Quidway -aaa]
display radius-server configuration
-------------------------------------------------------------------
Server-template-name : ssh
Protocol-version : standard
Traffic-unit : B
Shared-secret-key : huawei
Timeout-interval(in second) : 5
Primary-authentication-server : 10.164.16.49:1812:LoopBack-1
Primary-accounting-server : 0.0.0.0:0:LoopBack0
Secondary-authentication-server : 0.0.0.0:0:LoopBack0
Secondary-accounting-server : 0.0.0.0:0:LoopBack0
Retransmission : 3
Domain-included : YES
-------------------------------------------------------------------
# Display the connection of the SSH server.
[Quidway]
display ssh server session
Conn Ver Encry State retry Username
VTY 0 2.0 AES started 0 client001
----End
Configuration Files
#
sysname Quidway
#
radius-server template ssh
radius-server authentication 10.164.16.49 1812
#
aaa