Server Operation - Huawei netengine80e Configuration Manual

Hide thumbs Also See for netengine80e:
Table of Contents

Advertisement

HUAWEI NetEngine80E/40E Router
Configuration Guide - Basic Configurations
Server
Parameter
Listening port
number of an
SSH server
Interval at
which the key
pair of the
SSH server is
updated
Do as follows on the router that serves as an SSH server:
Procedure
Step 1 Run:
system-view
The system view is displayed.
Step 2 Perform one or more operations shown in
Table 5-3 Configurations of server parameters
Server
Parameter
Earlier SSH
version
compatibility
Listening port
number of the
SSH server
Interval at
which the key
pair of the
SSH server is
updated
----End
Issue 02 (2011-09-10)
Description
The default listening port number of an SSH server is 22. Users can log in to
the device by using the default listening port number. Attackers may access
the default listening port, consuming bandwidth, deteriorating server
performance, and causing authorized users unable to access the server. After
the listening port number of the SSH server is changed, attackers do not know
the new port number. This effectively prevents attackers from accessing the
listening port and improves security.
After the interval is set, the key pair of the SSH server is updated periodically
to improve security.
Operation
Run the
ssh server compatible-ssh1x enable
By default, an SSH server running SSH2.0 is compatible with SSH1.X. To
prevent clients running SSH1.3 to SSH1.99 to log in, run the
compatible-ssh1x enable
earlier SSH protocol versions.
Run the
ssh server port
If a new listening port is set, the SSH server cuts off all established STelnet
and SFTP connections, and uses the new port number to listen to connection
requests. By default, the listening port number is 22.
Run the
ssh server rekey-interval
By default, the interval is 0, indicating that the key pair will never be updated.
Huawei Proprietary and Confidential
Copyright © Huawei Technologies Co., Ltd.
Table 5-3
as needed.
command.
command to disable the system from supporting
port-number command.
hours command.
5 Configuring User Login
undo ssh server
87

Advertisement

Table of Contents
loading

This manual is also suitable for:

Netengine40e

Table of Contents