Configuring The First Successful Login To Another Device (Enabling The First-Time Authentication On The Ssh Client) - Huawei AR2200 Series Configuration Manual

Enterprise routers
Hide thumbs Also See for AR2200 Series:
Table of Contents

Advertisement

Huawei AR2200 Series Enterprise Routers
Configuration Guide - Basic Configuration
Procedure
Step 1 Run:
system-view
The system view is displayed.
Step 2 Run:
sftp client-source { -a source-ip-address | -i interface-type interface-number }
A source IP address is configured for an SFTP client.
----End
8.7.3 Configuring the First Successful Login to Another Device
(Enabling the First-Time Authentication on the SSH Client)
After the first-time authentication on the SSH client is enabled, the SFTP client does not check
the validity of the RSA public key when logging in to the SSH server for the first time.
Context
If the first-time authentication on the SSH client is enabled, the SFTP client does not check the
validity of the RSA public key when logging in to the SSH server for the first time. After the
login, the system automatically allocates the RSA public key and saves it for authentication in
next login.
Do as follows on the router that serves as an SSH client:
Procedure
Step 1 Run:
system-view
The system view is displayed.
Step 2 Run:
ssh client first-time enable
The first-time authentication on the SSH client is enabled.
By default, the first-time authentication on the SSH client is disabled.
----End
Issue 02 (2011-10-15)
NOTE
l The purpose of enabling the first-time authentication on the SSH client is to skip checking the validity
of the RSA public key of the SSH server when the STelnet client logs in to the SSH server for the first
time. The check is skipped because the STelnet server has not saved the RSA public key of the SSH
server.
l If the first-time authentication is not enabled on the SSH client, when the STelnet client logs in to the
SSH server for the first time, the STelnet client fails to pass the check on the RSA public key validity
and cannot log in to the server.
TIP
To ensure that the STelnet client can log in to the SSH server at the first attempt, you can assign the RSA
public key in advance to the SSH server on the SSH client in addition to enabling the first-time
authentication on the SSH client.
Huawei Proprietary and Confidential
Copyright © Huawei Technologies Co., Ltd.
8 Accessing Another Device
148

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents