Digi LR54 User Manual page 601

Hide thumbs Also See for LR54:
Table of Contents

Advertisement

Services
To limit access to specified IPv6 addresses and networks:
n
a. Click IPv6 Addresses.
b. For Add Address, click .
c. For Address, enter the IPv6 address or network that can access the device's SSH
d. Click  again to list additional IP addresses or networks.
To limit access to hosts connected through a specified interface on the LR54 device:
n
a. Click Interfaces.
b. For Add Interface, click .
c. For Interface, select the appropriate interface from the dropdown.
d. Click  again to allow access through additional interfaces.
To limit access based on firewall zones:
n
a. Click Zones.
b. For Add Zone, click .
c. For Zone, select the appropriate firewall zone from the dropdown.
d. Click  again to allow access through additional firewall zones.
6. Multicast DNS (mDNS) is enabled by default. mDNS is a protocol that resolves host names in
small networks that do not have a DNS server. To disable mDNS, or enable it if it has been
disabled, click Enable mDNS.
7. For Private key, type the private key in PEM format. If Private key is blank, the device will use
an automatically-generated key.
8. To create custom SSH configuration settings:
a. Click to expand Custom configuration.
b. Click Enable.
c. For Override:
n
n
d. For Configuration file, type configuration settings in the form of an OpenSSH sshd_config
file.
For example, to enable the diffie-helman-group-sha-14 key exchange algorithm:
i. Click Enable to enable SSH custom configuration.
ii. Leave Override disabled.
iii. For Configuration file, type the following:
KexAlgorithms +diffie-hellman-group14-sha1
LR54 User Guide
service. Allowed values are:
A single IP address or host name.
l
A network designation in CIDR notation, for example, 2001:db8::/48.
l
any: No limit to IPv6 addresses that can access the SSH service.
l
See
Firewall configuration
If Override is enabled, entries in Configuration file will be used in place of the
standard SSH configuration.
If Override is not enabled, entries in Configuration file will be added to the
standard SSH configuration.
for information about firewall zones.
Configure SSH access
601

Advertisement

Table of Contents
loading

This manual is also suitable for:

Tx64

Table of Contents