HP FlexNetwork 7500 Series Command Reference Manual page 498

Hide thumbs Also See for FlexNetwork 7500 Series:
Table of Contents

Advertisement

mdc-admin
Parameters
server: Specifies a server by its IPv6 address or host name, a case-insensitive string of 1 to 253
characters.
port-number: Specifies the port number of the server, in the range of 1 to 65535. The default is 22.
vpn-instance vpn-instance-name: Specifies the MPLS L3VPN instance to which the server belongs.
The vpn-instance-name argument represents the VPN instance name, a case-sensitive string of 1 to
31 characters.
-i interface-type interface-number: Specifies an output interface by its type and number for IPv6
SFTP packets. This option is used only when the server uses a link-local address to provide the
SFTP service for the client. The specified output interface on the SFTP client must have a link-local
address.
identity-key: Specifies a public key algorithm for publickey authentication of the client. The default is
dsa in non-FIPS mode and is rsa in FIPS mode. If the server uses publickey authentication, you
must specify this keyword. The client generates the digital signature or certificate by using the local
private key that is associated with the specified algorithm.
dsa: Specifies the public key algorithm dsa.
ecdsa-sha2-nistp256: Specifies the ECDSA algorithm with 256-bit key strength.
ecdsa-sha2-nistp384: Specifies the ECDSA algorithm with 384-bit key strength.
rsa: Specifies the public key algorithm rsa.
x509v3-ecdsa-sha2-nistp256: Specifies the public key algorithm
x509v3-ecdsa-sha2-nistp256.
x509v3-ecdsa-sha2-nistp384: Specifies the public key algorithm
x509v3-ecdsa-sha2-nistp384.
pki-domain domain-name: Specifies the PKI domain of the client's certificate. The
domain-name argument is a case-insensitive string of 1 to 31 characters. When the x509v3
public key algorithm is used, you must specify this option for the client to get the correct local
certificate.
prefer-compress: Specifies the preferred compression algorithm for data compression between the
server and the client. By default, compression is not supported.
zlib: Specifies the compression algorithm zlib.
prefer-ctos-cipher: Specifies the preferred client-to-server encryption algorithm. The default is
aes128-ctr. Supported algorithms are des-cbc, 3des-cbc, aes128-cbc, aes128-ctr, aes128-gcm,
aes192-ctr, aes256-cbc, aes256-ctr, and aes256-gcm, in ascending order of security strength and
computation time.
3des-cbc: Specifies the encryption algorithm 3des-cbc.
aes128-cbc: Specifies the encryption algorithm aes128-cbc.
aes128-ctr: Specifies the encryption algorithm aes128-ctr.
aes128-gcm: Specifies the encryption algorithm aes128-gcm.
aes192-ctr: Specifies the encryption algorithm aes192-ctr.
aes256-cbc: Specifies the encryption algorithm aes256-cbc.
aes256-ctr: Specifies the encryption algorithm aes256-ctr.
aes256-gcm: Specifies the encryption algorithm aes256-gcm.
des-cbc: Specifies the encryption algorithm des-cbc.
prefer-ctos-hmac: Specifies the preferred client-to-server HMAC algorithm. The default is
sha2-256. Supported algorithms are md5, md5-96, sha1, sha1-96, sha2-256, and sha2-512, in
ascending order of security strength and computation time.
483

Advertisement

Table of Contents
loading

Table of Contents