To do...
Use the command...
Remarks
Specify the supported
protocol(s)
protocol inbound
{
all
|
ssh
}
Optional
By default, both Telnet and
SSH are supported.
z
I
otocol, you must configure AAA
authenti
the user interfa
ntication-mode
ommand to
gin.
z
ce, if the
a
-mode password
authentication-mode none
command has been executed, the
protocol inbound ssh
com
not available. Similarly, if
h
co
he
and
authentication-mode none
commands are not available.
f you have configured a user interface to support SSH pr
cation for
ce by using the
authe
scheme
c
ensure successful lo
On a user interfa
uthentication
or
mand is
the
protocol inbound ss
mmand has been executed, t
authentication-mode password
Configuring the SSH Management Functions
T
a numb
functions to
h as
malicious password guess, guaranteeing the security of SSH co
ou can specify the IP
add
S
r to provide SSH access
s
h
H
address. This increases the service manageability when the SSH s
le interfaces and IP
add
steps to configu
nt functions:
he SSH server provides
er of management
prevent illegal operations suc
nnections. Y
ress or the interface correspon
ervices for clients. In this way, t
ding to the IP address for the
e SSH client accesses the SS
SH serve
server only using the specified IP
erver has multip
resses.
Follow these
re SSH manageme
To do...
Use the command...
Remarks
Enter system view
system-view
—
Set the SSH authentication
im
Optional
t
eout time
ssh server timeout
seconds
By default, the SSH
authentication timeout time is 60
seconds.
Set the number of SSH
authentication retry attempts
ssh server
authentication-retries
times
By default, the number of SSH
authentication retry attempts is 3.
Optional
Configure a login header
header shell text
Optional
By default, no login header is
configured.
Specify a source IP address for
the SSH server
ssh-server source-ip
ip-address
Optional
By default, no source IP address
is configured.
Specify a source interface for
ssh-server source-interface
Optional
the SSH server
interface-type
interface-number
By default, no source interface is
configured.