U
SER
A
UTHENTICATION
3-79
6.
Challenge-Response Authentication
– When an SSH client attempts to
contact the switch, the SSH server uses the host key pair to negotiate a
session key and encryption method. Only clients that have a private key
corresponding to the public keys stored on the switch can access. The
following exchanges take place during this process:
a. The client sends its public key to the switch.
b. The switch compares the client's public key to those stored in
memory.
c. If a match is found, the switch uses the public key to encrypt a
random sequence of bytes, and sends this string to the client.
d. The client uses its private key to decrypt the bytes, and sends the
decrypted bytes back to the switch.
e. The switch compares the decrypted bytes to the original bytes it
sent. If the two sets match, this means that the client's private key
corresponds to an authorized public key, and the client is
authenticated.
Notes: 1.
To use SSH with only password authentication, the host public
key must still be given to the client, either during initial
connection or manually entered into the known host file.
However, you do not need to configure the client’s keys.
2.
The SSH server supports up to four client sessions. The
maximum number of client sessions includes both current
Telnet sessions and SSH sessions.
Configuring the SSH settings
The SSH server includes basic settings for authentication.
Field Attributes
•
SSH Server Status
– Allows you to enable/disable the SSH server on
the switch. (Default: Disabled)
Содержание 6128L2
Страница 2: ......
Страница 21: ...CONTENTS xvii Glossary Index ...
Страница 22: ...CONTENTS xviii ...
Страница 26: ...TABLES xxii ...
Страница 40: ...INTRODUCTION 1 10 ...
Страница 54: ...INITIAL CONFIGURATION 2 14 ...
Страница 193: ...PORT CONFIGURATION 3 139 Figure 3 61 Displaying Etherlike and RMON Statistics ...
Страница 257: ...QUALITY OF SERVICE 3 203 Figure 3 90 Configuring Policy Maps ...
Страница 313: ...COMMAND GROUPS 4 13 PE Privileged Exec VC VLAN Database Configuration ...
Страница 592: ...TROUBLESHOOTING B 4 ...
Страница 605: ......