Cmc Client - Juniper MEDIA FLOW CONTROLLER 2.0.4 - ADMINISTRATOR S GUIDE AND CLI Administrator's Manual

Administrator’s guide and cli command reference
Table of Contents

Advertisement

Media Flow Controller CLI Commands
Notes:
ssh-dsa2
authorization.
generate
an existing identity.
public <key>
key-pair) has been generated by other means, associate the named identity with
those keys. If the private key command is used with no key, the user is prompted for
the key; entries made at this prompt echo the star (*) character, and the user must
enter the same string twice for confirmation.
—Configure Secure Shell (ssh) options:
ssh
host-key global-only
establishing a connection with another host using the CMC. Use global-only to
control whether the global known hosts file is the only one used (default is disabled).
Use strict to allow a connection only if there is already a known host entry that
matches what the remote host sends. So you have to either manually install a key, or
temporarily disable strict mode to get the key installed automatically. With strict
disabled (default), CMC automatically accepts a host key from a host for which there
is no prior entry; but the host is still rejected if there already is an entry that does not
match what they send.
trusted-hosts
systems only.
show cmc auth identities [{ssh-rsa2 | ssh-dsa2} [<identity name>]]
List CMC identities. Can list all identities, all of a certain type, or just a specified one,
depending on which parameters are used.
show cmc auth ssh
List CMC SSH global settings.

cmc client

Configure Central Management Console client.
cmc client
bw-limit limit <kbytes/sec>
confirm-config
300
cmc client
or ssh-rsa2 identity —Configure options for ssh-dsa2 or ssh-rsa2
—Generate a new identity (a private and public key-pair) or delete (with no)
or private [<key>] —If a DSA2/RSA2 identity (a private and public
—Configure SSH trusted hosts options. Media Flow Controller client
—Install server trusted-hosts into the SSH global known-hosts list (as if
install
they were added via ssh client global known-host <known-host-entry>). The
client system must have installed at manufacture time the public key of the Media
Flow Controller server in /etc/pki/tms-gpg/GPG-KEY. If a trusted-host entry
matches an existing global known-host entry, and the keys are different, the key
from the trusted-host overwrites the global known-host key. Otherwise, all trusted-
hosts are added.
—Remove all existing SSH global known hosts before installing
clear-install
the retrieved trusted host entries.
—Like the install command, but merely verify the signature of the trusted
verify
hosts, do not install/merge them.
Media Flow Controller Administrator's Guide
or strict —Control strictness of checking host keys when
Copyright © 2010, Juniper Networks, Inc.

Advertisement

Table of Contents
loading

This manual is also suitable for:

Media flow controller 2.0.4

Table of Contents