Creating A Local Key Pair; Configuration Guidelines; Configuration Procedure - HP 6125XLG Configuration Manual

Blade switch security configuration guide
Table of Contents

Advertisement

Creating a local key pair

Configuration guidelines

When you create a local key pair, follow these guidelines:
The key algorithm must be the same as required by the security application.
The key modulus length must be appropriate (see
higher the security, and the longer the key generation time.
If you do not assign the key pair a name, the system assigns the default name to the key pair and
marks the key pair as default. You can also assign the default name to another key pair, but the
system does not mark the key pair as default.
The name of a key pair must be unique among all manually named key pairs that use the same key
algorithm, but can be the same as a key pair that uses a different key algorithm. If a name conflict
occurs, the system asks whether you want to overwrite the existing key pair.
The key pairs are automatically saved and can survive system reboots.
Table 7 A comparison of different types of asymmetric key algorithms
Type
RSA (in non-FIPS
mode)
RSA
(in FIPS mode)
DSA (in non-FIPS
mode)
DSA
(in FIPS mode)
ECDSA
NOTE:
Only SSH 1.5 uses the RSA server key pair.

Configuration procedure

To create a local key pair:
Step
1.
Enter system view.
Number of key pairs
If you specify a key pair name, the
command creates a host key pair.
If you do not specify a key pair name,
the command creates one server key
pair and one host key pair, and both
key pairs use their default names.
If you do not specify a key pair name, the
command only creates a host key pair,
and the key pair uses the default name.
The command only creates one host key
pair.
The command only creates one host key
pair.
The command only creates one host key
pair.
Command
system-view
Table
7). The longer the key modulus length, the
Modulus length
512 to 2048 bits.
1024 by default.
2048 bits.
512 to 2048 bits.
1024 by default.
2048 bits.
192 bits.
116
HP
recommendation
At least 768 bits.
N/A
At least 768 bits.
N/A
N/A
Remarks
N/A

Advertisement

Table of Contents
loading

Table of Contents