Specifying A Pki Domain For The Ssh Server; Configuring The Device As An Stelnet Client; Stelnet Client Configuration Task List - HP FlexNetwork 10500 Series Security Configuration Manual

Hide thumbs Also See for FlexNetwork 10500 Series:
Table of Contents

Advertisement

Step
6.
Specify an ACL to control
SSH user connections.
7.
Set the DSCP value in the
packets that the SSH server
sends to the SSH clients.
8.
Configure the SFTP
connection idle timeout
timer.
9.
Specify the maximum
number of concurrent online
SSH users.

Specifying a PKI domain for the SSH server

The PKI domain specified for the SSH server has the following functions:
The SSH server uses the PKI domain to send its certificate to the client in the key exchange
stage.
The SSH server uses the PKI domain to authenticate the client's certificate if no PKI domain is
specified for the client authentication by using the ssh user command.
To specify a PKI domain for the SSH server:
Step
1.
Enter system view.
2.
Specify a PKI domain for the
SSH server.

Configuring the device as an Stelnet client

Stelnet client configuration task list

Tasks at a glance
(Optional.)
Specifying the source IP address for SSH packets
(Required.)
Establishing a connection to an Stelnet server
Command
Control IPv4 SSH user
connections:
ssh server acl acl-number
Control IPv6 SSH user
connections:
ssh server ipv6 acl [ ipv6 ]
acl-number
Set the DSCP value in IPv4
packets:
ssh server dscp dscp-value
Set the DSCP value in IPv6
packets:
ssh server ipv6 dscp
dscp-value
sftp server idle-timeout
time-out-value
aaa session-limit ssh
max-sessions
Command
system-view
ssh server pki-domain
domain-name
365
Remarks
By default, all SSH users are
allowed to initiate connections
with the SSH server.
The default setting is 48.
The DSCP value of a packet
defines the priority of the packet
and affects the transmission
priority of the packet. A bigger
DSCP value represents a higher
priority.
The default setting is 10 minutes.
When the idle timeout timer
expires, the system automatically
tears the connection down.
The default setting is 32.
When the number of online SSH
users reaches the upper limit, the
system denies new SSH
connection requests.
Changing the upper limit does not
affect online SSH users.
Remarks
N/A
By default, no PKI domain is
specified for the SSH server.

Advertisement

Table of Contents
loading

Table of Contents