communicate with each other, and to improve the manageability of SFTP clients in the authentication
service, HP recommends you to specify a loopback interface or dialer interface as the source interface.
To specify a source IP address or source interface for the SFTP client:
Step
1.
Enter system view.
2.
Specify a source address
or interface for the SFTP
client.
Establishing a connection to an SFTP server
You can start the SFTP client to establish a connection to an SFTP server, and specify the public key
algorithm, the preferred encryption algorithm, the preferred HMAC algorithm, and the preferred key
exchange algorithm. After the connection is established, you can directly enter SFTP client view on the
server to perform operations, such as working with directories or files.
When an SFTP client accesses an SFTP server, it uses the locally saved host public key of the server to
authenticate the server. When acting as an SFTP client, the device supports the first authentication by
default. When the device accesses an SFTP server for the first time but it is not configured with the host
public key of the SFTP server, it can access the server and locally save the server's host public key for
future use. In a secure network, the first authentication can simplify the configuration on the SFTP client,
but it is not reliable.
To establish a connection to an SFTP server:
Command
system-view
•
Specify a source IPv4 address or
interface for the SFTP client:
sftp client source { ip ip-address |
interface interface-type
interface-number }
•
Specify a source IPv6 address or
interface for the SFTP client:
sftp client ipv6 source { ipv6
ipv6-address | interface
interface-type interface-number }
162
Remarks
N/A
Use either command.
By default, an SFTP client uses the
IP address of the outbound
interface specified by the route to
the SFTP server when
communicating with the SFTP
server.