Download Print this page

Ssh Server Allow-Users - Centrecom FS980M/9 Command Reference Manual

Fs980m series fast ethernet managed access switches reference for alliedware plus version 5.4.6-2.x

Advertisement

S
S
(SSH) C
ECURE
HELL
OMMANDS
-
SSH SERVER ALLOW
USERS

ssh server allow-users

Overview
This command adds a username pattern to the allow list of the SSH server. If the
user of an incoming SSH session matches the pattern, the session is accepted.
When there are no registered users in the server's database of allowed users, the
SSH server does not accept SSH sessions even when enabled.
SSH server also maintains the deny list. The server checks the user in the deny list
first. If a user is listed in the deny list, then the user access is denied even if the user
is listed in the allow list.
The no variant of this command deletes a username pattern from the allow list of
the SSH server. To delete an entry from the allow list, the username and hostname
pattern should match exactly with the existing entry.
ssh server allow-users <username-pattern> [<hostname-pattern>]
Syntax
no ssh server allow-users <username-pattern>
[<hostname-pattern>]
Mode
Global Configuration
To allow the user john to create an SSH session from any host, use the commands:
Examples
awplus#
awplus(config)#
To allow the user john to create an SSH session from a range of IP address (from
192.168.1.1 to 192.168.1.255), use the commands:
awplus#
awplus(config)#
To allow the user john to create a SSH session from a-company.com domain,
use the commands:
awplus#
awplus(config)#
613-50137-01 Rev A
Parameter
<username-pattern> The username pattern that users can match to. An asterisk
<hostname-pattern> The host name pattern that hosts can match to. If specified,
configure terminal
ssh server allow-users john
configure terminal
ssh server allow-users john 192.168.1.*
configure terminal
ssh server allow-users john *.a-company.com
Command Reference for FS980M Series
AlliedWare Plus™ Operating System - Version 5.4.6-2.x
Description
acts as a wildcard character that matches any string of
characters.
the server allows the user to connect only from hosts
matching the pattern. An asterisk acts as a wildcard
character that matches any string of characters.
1631

Advertisement

loading