HP procurve switch 2650 Access Security Manual page 93

Hide thumbs Also See for procurve switch 2650:
Table of Contents

Advertisement

N o t e s
When you generate a host key pair on the switch, the switch places the key
pair in flash memory (and not in the running-config file). Also, the switch
maintains the key pair across reboots, including power cycles. You should
consider this key pair to be "permanent"; that is, avoid re-generating the key
pair without a compelling reason. Otherwise, you will have to re-introduce the
switch's public key on all management stations you have set up for SSH access
to the switch using the earlier pair.
Removing (zeroizing) the switch's public/private key pair renders the switch
unable to engage in SSH operation and automatically disables IP SSH on the
switch. (To verify whether SSH is enabled, execute show ip ssh.)
To Generate or Erase the Switch's Public/Private RSA Host Key Pair.
Because the host key pair is stored in flash instead of the running-config file,
it is not necessary to use write memory to save the key pair. Erasing the key
pair automatically disables SSH.
Syntax: crypto key generate [rsa]
Generates a public/private key pair for the switch. If a
switch key pair already exists, replaces it with a new
key pair. (See the Note, above.)
crypto key zeroize [rsa]
Erases the switch's public/private key pair and dis-
ables SSH operation..
show ip ssh host-public-key
Displays switch's public key as an ASCII string.
[ babble ]
[ fingerprint ]
Configuring the Switch for SSH Operation
Displays a hash of the switch's public key in
phonetic format. (See "Displaying the Public
Key" on page 4-14.)
Displays a "fingerprint" of the switch's public key
in hexadecimal format. (See "Displaying the Pub-
lic Key" on page 4-14.)
Configuring Secure Shell (SSH)
4-11

Advertisement

Table of Contents
loading

This manual is also suitable for:

Procurve 6108

Table of Contents