Configuring The Ssh Management Functions - H3C S3100 Series Operation Manual

H3c s3100 series ethernet switches operation manual
Hide thumbs Also See for S3100 Series:
Table of Contents

Advertisement

Table 1-3 Follow these steps to configure the user interface for SSH clients:
To do...
Enter system view
Enter user interface view of
one or more user interfaces
Configure the
authentication mode as
scheme
Specify the supported
protocol(s)
If you have configured a user interface to support SSH protocol, you must configure AAA
authentication for the user interface by using the authentication-mode scheme command to
ensure successful login.
On a user interface, if the authentication-mode password or authentication-mode none
command has been executed, the protocol inbound ssh command is not available. Similarly, if
the protocol inbound ssh command has been executed, the authentication-mode password
and authentication-mode none commands are not available.

Configuring the SSH Management Functions

The SSH server provides a number of management functions. Some functions can prevent illegal
operations such as malicious password guess, further guaranteeing the security of SSH connections.
Table 1-4 Follow these steps to configure SSH management functions:
To do...
Enter system view
Set the SSH authentication
timeout time
Set the number of SSH
authentication retry attempts
Set the RSA server key
update interval
Configure a login header
Use the command...
system-view
user-interface vty first-number
[ last-number ]
authentication-mode scheme
[ command-authorization ]
protocol inbound { all |ssh |
telnet }
Use the command...
system-view
ssh server timeout
seconds
ssh server
authentication-retries
times
ssh server rekey-interval
hours
header shell text
1-6
Remarks
Required
By default, the user interface
authentication mode is
password.
Optional
By default, both Telnet and
SSH are supported.
Remarks
Optional
By default, the SSH authentication
timeout time is 60 seconds.
Optional
By default, the number of SSH
authentication retry attempts is 3.
Optional
By default, the system does not update
the RSA server keys.
Optional
By default, no login header is
configured.

Advertisement

Chapters

Table of Contents
loading

Table of Contents