C
HAPTER
14
| Security Measures
Configuring the Secure Shell
– 302 –
ES-4500G Series
c.
If a match is found, the switch uses its secret key to generate a
random 256-bit string as a challenge, encrypts this string with
the user’s public key, and sends it to the client.
d.
The client uses its private key to decrypt the challenge string,
computes the MD5 checksum, and sends the checksum back to
the switch.
e.
The switch compares the checksum sent from the client against
that computed for the original string it sent. If the two
checksums match, this means that the client's private key
corresponds to an authorized public key, and the client is
authenticated.
Authenticating SSH v2 Clients
a.
The client first queries the switch to determine if DSA public key
authentication using a preferred algorithm is acceptable.
b.
If the specified algorithm is supported by the switch, it notifies
the client to proceed with the authentication process. Otherwise,
it rejects the request.
c.
The client sends a signature generated using the private key to
the switch.
d.
When the server receives this message, it checks whether the
supplied key is acceptable for authentication, and if so, it then
checks whether the signature is correct. If both checks succeed,
the client is authenticated.
N
OTE
:
The SSH server supports up to four client sessions. The maximum
number of client sessions includes both current Telnet sessions and SSH
sessions.
N
OTE
:
The SSH server can be accessed using any configured IPv4 or IPv6
interface address on the switch.
C
ONFIGURING
THE
SSH S
ERVER
Use the Security > SSH (Configure Global) page to enable the SSH server
and configure basic settings for authentication.
N
OTE
:
A host key pair must be configured on the switch before you can
enable the SSH server. See
"Generating the Host Key Pair" on page 304
CLI R
EFERENCES
◆
P
ARAMETERS
These parameters are displayed in the web interface:
◆
SSH Server Status
– Allows you to enable/disable the SSH server on
the switch. (Default: Disabled)
Содержание iPECS ES-4526G
Страница 1: ...USER GUIDE User Manual ES 4550G ES 4526G Managed Layer 3 Stackable GE Switch ...
Страница 38: ...CONTENTS 38 ES 4500G Series ...
Страница 58: ...SECTION I Getting Started 58 ES 4500G Series ...
Страница 70: ...CHAPTER 1 Introduction System Defaults 70 ES 4500G Series ...
Страница 84: ...CHAPTER 2 Initial Switch Configuration Managing System Files 84 ES 4500G Series Success Console ...
Страница 86: ...SECTION I Web Configuration 86 ES 4500G Series Multicast Filtering on page 413 ...
Страница 196: ...CHAPTER 6 VLAN Configuration Configuring MAC based VLANs 196 ES 4500G Series ...
Страница 204: ...CHAPTER 7 Address Table Settings Clearing the Dynamic Address Table 204 ES 4500G Series ...
Страница 228: ...CHAPTER 8 Spanning Tree Algorithm Configuring Interface Settings for MSTP 228 ES 4500G Series ...
Страница 230: ...CHAPTER 9 Rate Limit Configuration 230 ES 4500G Series Figure 106 Configuring Rate Limits ...
Страница 260: ...CHAPTER 12 Quality of Service Attaching a Policy Map to a Port 260 ES 4500G Series ...
Страница 478: ...CHAPTER 17 IP Configuration Setting the Switch s IP Address IP Version 6 478 ES 4500G Series ...
Страница 528: ...CHAPTER 20 IP Services Forwarding UDP Service Requests 528 ES 4500G Series ...
Страница 584: ...CHAPTER 21 Unicast Routing Configuring the Open Shortest Path First Protocol Version 2 584 ES 4500G Series ...
Страница 614: ...CHAPTER 22 Multicast Routing Configuring PIMv6 for IPv6 614 ES 4500G Series ...
Страница 628: ...CHAPTER 23 Using the Command Line Interface CLI Command Groups 628 ES 4500G Series ...
Страница 702: ...CHAPTER 26 SNMP Commands 702 ES 4500G Series ...
Страница 710: ...CHAPTER 27 Remote Monitoring Commands 710 ES 4500G Series ...
Страница 868: ...CHAPTER 34 Port Mirroring Commands Local Port Mirroring Commands 868 ES 4500G Series ...
Страница 890: ...CHAPTER 37 Address Table Commands 890 ES 4500G Series ...
Страница 1066: ...CHAPTER 43 LLDP Commands 1066 ES 4500G Series ...
Страница 1076: ...CHAPTER 44 Domain Name Service Commands 1076 ES 4500G Series ...
Страница 1286: ...CHAPTER 49 Multicast Routing Commands PIM Multicast Routing 1286 ES 4500G Series ...
Страница 1288: ...SECTION I Appendices 1288 ES 4500G Series ...
Страница 1293: ...APPENDIX A Software Specifications Management Information Bases 1293 ES 4500G Series UDP MIB RFC 2013 ...
Страница 1294: ...APPENDIX A Software Specifications Management Information Bases 1294 ES 4500G Series ...
Страница 1327: ...ES 4526G ES 4550G E042011 ST R01 150200000149A ...
Страница 1328: ...APRIL 2011 ISSUE 1 0 ...