Configuring Secure Shell (Ssh); Overview - HP ProCurve Switch 2900yl-24G Access Security Manual

Table of Contents

Advertisement

Configuring Secure Shell (SSH)

Overview

Feature
Generating a public/private key pair on the switch
Using the switch's public key
Enabling SSH
Enabling client public-key authentication
Enabling user authentication
ProCurve
Switch
(SSH
Server)
Figure 6-1. Client Public Key Authentication Model
6-2

Overview

The switches covered in this guide use Secure Shell version 2 (SSHv2) to
provide remote access to management functions on the switches via
encrypted paths between the switch and management station clients capable
of SSH operation.
SSH provides Telnet-like functions but, unlike Telnet, SSH provides
encrypted, authenticated transactions. The authentication types include:
Client public-key authentication
Switch SSH and user password authentication
Client Public Key Authentication (Login/Operator Level) with User
Password Authentication (Enable/Manager Level). This option uses
one or more public keys (from clients) that must be stored on the switch. Only
a client with a private key that matches a stored public key can gain access
to the switch. (The same private key can be stored on one or more clients.)
1. Switch-to-Client SSH authentication.
2. Client-to-Switch (login rsa) authentication
3.User-to-Switch (enable password) authentication
options:
– Local
– TACACS+
– RADIUS
– None
Default
Menu
No
n/a
n/a
n/a
Disabled
n/a
Disabled
n/a
Disabled
n/a
CLI
Web
page 6-10
n/a
page 6-12
n/a
page 6-15
n/a
pages 6-19,
n/a
6-22
page 6-18
n/a
SSH
Client
Work-
Station

Advertisement

Table of Contents
loading

This manual is also suitable for:

Procurve switch 2900yl-48gJ9049aJ9050a

Table of Contents