Setting Description
Idle Session Timeout in Minutes Specifies the number of minutes a session can be idle before it
times out.
Maximum Number of Active Sessions Specifies the maximum number of users logged in through the
system web interface or command-line API (SSH or telnet).
Max Session Timeout in Minutes Specifies the maximum number of minutes a session can be
open before it times out, regardless of session activity.
Minimum TLS Version Specifies the system minimum TLS version. You can restrict
your system from using earlier versions of TLS for secure
communications. For example, if you set your minimum TLS
version to 1.1, you’re disabling TLS 1.0.
3 Select Save.
Command-Line API Access for G7500
You can access your G7500 system’s command-line API over SSH, telnet, or through a serial port connection.
Enable Command-Line API Access Over SSH
Use SSH on port 22 if you want encrypted access to the system command-line API.
Task
1 In the system web interface, go to Security > Access.
2 Select the Enable Legacy API Over SSH check box if it’s cleared.
3 Select the Enable Telnet Access check box.
Configure the SSH Port Lock
You can limit the number of failed SSH login attempts to your G7500 and Studio X series system command-line API to
protect against brute-force attacks.
Enable command-line API access over SSH to access these settings.
Task
1 In the system web interface, go to Security > Access.
2 Configure the following settings:
Setting
Description
Lock SSH Port After Failed Logins Specifies the number of failed login attempts allowed before the
system locks SSH access to the API.
SSH Port Lock Duration Specifies the amount of time that SSH access to the API remains
locked due to failed login attempts. After this period expires, the
system resets the failed login attempts counter, and you can
again try to log in again.
Reset SSH Port Lock Counter After Specifies the number of hours, starting with the first failed login
attempt, during which subsequent failed login attempts are
counted against the maximum number allowed (Lock SSH Port
after Failed Logins).
The counter resets when the set period of time expires or a user
successfully logs in.
3
Select Save.
52