Chapter 9
Configuring Switch-Based Authentication
Command
Step 3
ip ssh {timeout seconds |
authentication-retries number}
Step 4
end
Step 5
show ip ssh
or
show ssh
Step 6
copy running-config startup-config
To return to the default SSH control parameters, use the no ip ssh {timeout | authentication-retries}
global configuration command.
Displaying the SSH Configuration and Status
To display the SSH server configuration and status, use one or more of the privileged EXEC commands
in
Table
Table 9-3
Command
show ip ssh
show ssh
For more information about these commands, refer to the "Secure Shell Commands" section in the
"Other Security Features" chapter of the Cisco IOS Security Command Reference, Cisco IOS
Release 12.2, at this URL:
http://www.cisco.com/univercd/cc/td/doc/product/software/ios122/122cgcr/fsecur_r/fothercr/
srfssh.htm.
78-16180-02
Purpose
Configure the SSH control parameters:
Specify the time-out value in seconds; the default is 120 seconds. The
•
range is 0 to 120 seconds. This parameter applies to the SSH
negotiation phase. After the connection is established, the switch uses
the default time-out values of the CLI-based sessions.
By default, up to five simultaneous, encrypted SSH connections for
multiple CLI-based sessions over the network are available (session 0
to session 4). After the execution shell starts, the CLI-based session
time-out value returns to the default of 10 minutes.
•
Specify the number of times that a client can re-authenticate to the
server. The default is 3; the range is 0 to 5.
Repeat this step when configuring both parameters.
Return to privileged EXEC mode.
Show the version and configuration information for your SSH server.
Show the status of the SSH server connections on the switch.
(Optional) Save your entries in the configuration file.
9-3:
Commands for Displaying the SSH Server Configuration and Status
Purpose
Shows the version and configuration information for the SSH server.
Shows the status of the SSH server.
Configuring the Switch for Secure Shell
Catalyst 3750 Switch Software Configuration Guide
9-41