277
To do… Use the command…
Remarks
Configure the user interface(s) to
support SSH login
protocol inbound { all | ssh }
Optional
All protocols are supported by
default.
CAUTION:
• For more information about the authentication-mode and protocol inbound commands, see
Fundamentals Command Reference.
• If you configure a user interface to support SSH, be sure to configure the correspondin
authentication
mode with the authentication-mode scheme command.
• For a user interface configured to support SSH, you cannot chan
e the authentication mode. To chan
e
the authentication mode, undo the SSH support configuration first.
Configuring a client public key
NOTE:
This configuration task is only necessary for SSH users using publickey authentication.
To allow an SSH user to pass publickey authentication and log in to the server, you must configure the
client’s DSA or RSA host public key on the server, and configure the client to use the corresponding host
private key, so that the server uses the digital signature to authenticate the client.
You can manually configure the public key of an SSH client on the server, or import it from the public key
file:
• Configure it manually. You can type or copy the public key to the SSH server. The public key must
have not been converted and be in the Distinguished Encoding Rules (DER) encoding format.
• Import it from the public key file. During the import process, the server will automatically convert the
public key in the public key file to a string in Public Key Cryptography Standards (PKCS) format, and
save it locally. Before importing the public key, you must upload the public key file (in binary) to the
server through FTP or TFTP.
NOTE:
HP recommends you to configure a client public key by importing it from a public key file.
Configuring a client public key manually
Follow these steps to configure the client public key manually:
To do… Use the command…
Remarks
Enter system view system-view —
Enter public key view public-key peer keyname —
Enter public key code view public-key-code begin —
Configure a client's host public key
Enter the content of the host public
key
Required
Spaces and carriage returns are
allowed between characters.