![Huawei Quidway S5600 Скачать руководство пользователя страница 862](http://html.mh-extra.com/html/huawei/quidway-s5600/quidway-s5600_operation-manual_169841862.webp)
Operation Manual - SSH Terminal Services
Quidway S5600 Series Ethernet Switches-Release 1510
Chapter 1 SSH Terminal Services
Huawei Technologies Proprietary
1-8
V. Configuring client public keys
You can configure RSA public keys for client users on the switch and specify RSA
private keys, which correspond to the public keys, on the client. Then client keys are
generated randomly by the SSHv2.0 client software. This operation is not required for
password authentication type.
Note:
This configuration is applicable for SSH users using RSA authentication. If the device
uses password authentication for SSH users, this configuration can be ignored.
You can set public keys for client users at the server end. There are two methods to set
client public key:
1)
Assign public keys to SSH users one by one
Operations at client end:
z
Use SSH1.5/2.0 client software to generate random RSA key pair.
z
Run
SSHKEY.EXE
file and convert the public key in the RSA key pair to PKCS
code.
Operations at server end:
Table 1-6
Configure client public keys
Operation
Command
Description
Enter system view
system-view
—
Enter public key view
rsa peer-public-key key-name
Required
Enter public key edit
view
public-key-code begin
You can key in a blank
space between
characters, since the
system can remove the
blank space
automatically. But the
public key should be
composed of
hexadecimal characters.
Return to public key
view from public key
edit view
public-key-code end
The system saves public
key data when exiting
from public key edit view
Return to system
view from public key
view
peer-public-key
end
—