Example For Configuring The Access Of The Sftp Server On The Public Network When The Management Vpn Instance Is Used - Huawei netengine80e Configuration Manual

Hide thumbs Also See for netengine80e:
Table of Contents

Advertisement

HUAWEI NetEngine80E/40E Router
Configuration Guide - Basic Configurations
8.8.10 Example for Configuring the Access of the SFTP Server on
the Public Network When the Management VPN Instance Is Used
This part provides an example for configuring the access of the SFTP server on the public
network when the management VPN instance is used. In this example, after generating the local
key pair on the SFTP client and SSH server, generating the RSA public key on the SSH server,
and binding the RSA public key to the client, you can connect the SFTP client to the SFTP server
on the public network when using the management VPN instance.
Networking Requirements
As shown in
Client002. Users use the VPN instance to access the FTP server. To enable the client to access
the SFTP server on the public network, you need to connect the router to the SFTP server on the
public network.
The Huawei router functions as an SSH server. Two users client001 and client002 are configured
to access the SSH server in the authentication mode of password and RSA respectively.
Figure 8-18 Networking diagram of configuring the access of the SFTP server on the public
network when the management VPN instance is used
10.10.2.2/16
Configuration Roadmap
The configuration roadmap is as follows:
1.
2.
3.
4.
5.
Data Preparation
To complete the configuration, you need the following data:
Issue 02 (2011-09-10)
Figure
8-18, a management VPN instance is configured for Client001 and
SSH Server
GE1/0/1
10.10.1.1/16
GE1/0/1
Client 001
Configure Client001 and Client002 to log in to the SSH server in different authentication
modes..
Create a local RSA key pair on the STelnet client Client002 and the SSH server, and bind
the client client002 to an RSA key to authenticate the client when the client attempts to log
in to the server.
Enable the SFTP service on the SSH server.
Configure the service mode and authorization directory for the SSH user.
Configure Client001 and Client002 to log in to the SSH server on the Public Network
through SFTP..
Huawei Proprietary and Confidential
Copyright © Huawei Technologies Co., Ltd.
GE1/0/1
10.10.3.3/16
Client 002
8 Accessing Another Device
208

Advertisement

Table of Contents
loading

This manual is also suitable for:

Netengine40e

Table of Contents