HPE FlexNetwork 5510 HI Series Security Configuration Manual page 358

Hide thumbs Also See for FlexNetwork 5510 HI Series:
Table of Contents

Advertisement

Task
Command
In non-FIPS mode, establish a connection to an IPv4
SFTP
sftp
vpn-instance-name ] [ identity-key { dsa | ecdsa |
rsa
x509v3-ecdsa-sha2-nistp256
domain-name
prefer-ctos-cipher { 3des-cbc | aes128-cbc |
aes256-cbc | des-cbc | aes128-ctr | aes192-ctr |
aes256-ctr | aes128-gcm | aes256-gcm } |
prefer-ctos-hmac { md5 | md5-96 | sha1 | sha1-96 |
sha2-256
{ dh-group-exchange-sha1 | dh-group1-sha1 |
dh-group14-sha1
ecdh-sha2-nistp384
{ 3des-cbc | aes128-cbc | aes256-cbc | des-cbc |
aes128-ctr | aes192-ctr | aes256-ctr | aes128-gcm |
aes256-gcm } | prefer-stoc-hmac { md5 | md5-96 |
sha1 | sha1-96 | sha2-256 | sha2-512 } ] * [ dscp
dscp-value
server-pki-domain
{ interface interface-type interface-number | ip
ip-addres} ] *
In FIPS mode, establish a connection to an IPv4
SFTP
sftp
vpn-instance-name ] [ identity-key { ecdsa | rsa |
{
x509v3-ecdsa-sha2-nistp256
domain-name
Establish
a
prefer-ctos-cipher { aes128-cbc | aes256-cbc |
connection to an
aes128-ctr | aes192-ctr | aes256-ctr | aes128-gcm |
SFTP server.
aes256-gcm } | prefer-ctos-hmac { sha1 | sha1-96 |
sha2-256
{
ecdh-sha2-nistp384
{ aes128-cbc | aes256-cbc | aes128-ctr | aes192-ctr
| aes256-ctr | aes128-gcm | aes256-gcm } |
prefer-stoc-hmac { sha1 | sha1-96 | sha2-256 |
sha2-512 } ] * [ { public-key keyname
server-pki-domain
{ interface interface-type interface-number | ip
ip-address } ] *
In non-FIPS mode, establish a connection to an IPv6
SFTP
sftp ipv6 server [ port-number ] [ vpn-instance
vpn-instance-name
interface-number ] [ identity-key { dsa | ecdsa | rsa |
{
x509v3-ecdsa-sha2-nistp256
domain-name
prefer-ctos-cipher { 3des-cbc | aes128-cbc |
aes256-cbc | des-cbc | aes128-ctr | aes192-ctr |
aes256-ctr | aes128-gcm | aes256-gcm } |
prefer-ctos-hmac { md5 | md5-96 | sha1 | sha1-96 |
sha2-256
{ dh-group-exchange-sha1 | dh-group1-sha1 |
dh-group14-sha1
ecdh-sha2-nistp384
{ 3des-cbc | aes128-cbc | aes256-cbc | des-cbc |
aes128-ctr | aes192-ctr | aes256-ctr | aes128-gcm |
aes256-gcm } | prefer-stoc-hmac { md5 | md5-96 |
sha1 | sha1-96 | sha2-256 | sha2-512 } ] * [ dscp
server
[
port-number
|
{
x509v3-ecdsa-sha2-nistp384
}
|
prefer-compress
|
sha2-512
|
ecdh-sha2-nistp256
}
|
{
public-key
domain-name
server
[
port-number
x509v3-ecdsa-sha2-nistp384
}
|
prefer-compress
|
sha2-512
dh-group14-sha1
|
}
domain-name
]
x509v3-ecdsa-sha2-nistp384
}
|
prefer-compress
|
sha2-512
|
ecdh-sha2-nistp256
}
345
server:
]
[
vpn-instance
|
}
pki-domain
zlib
|
}
|
prefer-kex
|
|
prefer-stoc-cipher
keyname
|
}
|
source
server:
]
[
vpn-instance
|
}
pki-domain
zlib
|
}
|
prefer-kex
ecdh-sha2-nistp256
|
|
prefer-stoc-cipher
|
}
|
source
server:
[
-i
interface-type
|
}
pki-domain
zlib
|
}
|
prefer-kex
|
|
prefer-stoc-cipher
Remarks
Available in user view.

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents