HP 5500 HI Series Configuration Manual page 10

Security
Hide thumbs Also See for 5500 HI Series:
Table of Contents

Advertisement

Configuring an SSH user ···································································································································· 307
Setting the SSH management parameters ········································································································ 308
Setting the DSCP value for packets sent by the SSH server ············································································ 309
Configuring the switch as an SSH client ··················································································································· 309
SSH client configuration task list ························································································································ 309
Specifying a source IP address/interface for the SSH client ·········································································· 310
Configuring whether first-time authentication is supported ············································································· 310
Establishing a connection between the SSH client and server ······································································· 311
Setting the DSCP value for packets sent by the SSH client ············································································· 312
Displaying and maintaining SSH ······························································································································· 312
SSH server configuration examples ··························································································································· 313
When the switch acts as a server for password authentication ····································································· 313
When the switch acts as a server for publickey authentication ····································································· 315
SSH client configuration examples ····························································································································· 320
When switch acts as client for password authentication ················································································ 320
When switch acts as client for publickey authentication ················································································ 323
Configuring SFTP ····················································································································································· 326
Overview ······································································································································································· 326
FIPS compliance ··························································································································································· 326
Configuring the switch as an SFTP server ················································································································· 326
Enabling the SFTP server ···································································································································· 326
Configuring the SFTP connection idle timeout period ····················································································· 327
Configuring the switch as an SFTP client ··················································································································· 327
Specifying a source IP address or interface for the SFTP client ······································································ 327
Establishing a connection to the SFTP server ···································································································· 327
Working with SFTP directories ··························································································································· 328
Working with SFTP files ······································································································································ 329
Displaying help information ······························································································································· 330
Terminating the connection to the remote SFTP server ···················································································· 330
Setting the DSCP value for packets sent by the SFTP client ············································································ 330
SFTP client configuration example ····························································································································· 331
SFTP server configuration example ···························································································································· 334
Configuring SCP ······················································································································································ 337
Overview ······································································································································································· 337
FIPS compliance ··························································································································································· 337
Configuring the switch as an SCP server ·················································································································· 337
Configuring the switch as the SCP client ··················································································································· 338
SCP client configuration example ······················································································································ 339
SCP server configuration example ···················································································································· 340
Configuring SSL ······················································································································································· 342
Overview ······································································································································································· 342
SSL security mechanism ······································································································································ 342
SSL protocol stack ··············································································································································· 342
FIPS compliance ··························································································································································· 343
Configuration task list ·················································································································································· 343
Configuring an SSL server policy ······························································································································· 343
SSL server policy configuration example ·········································································································· 345
Configuring an SSL client policy ································································································································ 347
Displaying and maintaining SSL ································································································································· 347
Troubleshooting SSL ····················································································································································· 348
Configuring TCP attack protection ························································································································· 349
Overview ······································································································································································· 349
viii
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents