313
Configuring the switch as an SSH client
SSH client configuration task list
Task Remarks
Specifying a source IP address/interface for the SSH client Optional
Configuring whether first-time authentication is supported Optional
Establishing a connection between the SSH client and server Required
Setting the DSCP value for packets sent by the SSH client Optional
Specifying a source IP address/interface for the SSH client
This configuration task allows you to specify a source IP address or interface for the client to access the
SSH server, improving service manageability.
To specify a source IP address or interface for the client:
Step Command Remarks
1. Enter system view.
system-view N/A
2. Specify a source IP
address or interface for
the SSH client.
• Specify a source IPv4 address or interface for the
SSH client:
ssh client source { ip ip-address | interface
interface-type interface-number }
• Specify a source IPv6 address or interface for the
SSH client:
ssh client ipv6 source { ipv6 ipv6-address |
interface interface-type interface-number }
Select either approach.
By default, an SSH client
uses the IP address of
the outbound interface
defined by the route to
the SSH server to access
the SSH server.
Configuring whether first-time authentication is supported
When the switch acts as an SSH client and connects to the SSH server, you can configure whether the
switch supports first-time authentication.
• With first-time authentication, when an SSH client not configured with the server host public key
accesses the server for the first time, the user can continue accessing the server, and save the host
public key on the client. When accessing the server again, the client will use the saved server host
public key to authenticate the server.
• Without first-time authentication, a client not configured with the server host public key will refuse to
access the server. To enable the client to access the server, you must configure the server host public
key and specify the public key name for authentication on the client in advance.
Enabling the switch to support first-time authentication