z
e a login header on
ice type is
stelnet
. For configuration of service
types, refer to
Specifying a Service Type for an SSH User on the Server
You can configur
ly when the serv
.
z
d,
ction in
For details of the
header
comman refer to the corresponding se
Login Command
.
Configuring Key Pairs
The SSH server’s key pairs are for generating session keys and for SSH clients to authenticate the
rv
G
e
Whe
gth in bits, which is between 512
ove
Follow these steps to create key pairs:
se er. The SSH client's key pairs are for the SSH server to authenticate the SSH clients in publickey
authentication mode. RSA key pair are only supported.
en rating key pairs
n generating a key pair, you will be prompted to enter the key len
and 2048. The default length is 1024. If the key pair already exists, the system will ask whether to
rwrite it.
To do...
Use the command...
Remarks
Enter system view
system-view
—
Generate an RSA key pairs
public-key local create
rsa
Required
By default, no key
pairs ar
.
e generated
z
The command for generating a key pair can survive a reboot. You only need to configure it once.
It takes more time to encrypt and decrypt data with a longer key, which, however, ensures higher
security. Therefore, specify the length of the key pair accordingly.
pairs on the device to ensure
that all devices in the fabric have the same local RSA key pairs.
local key pair of more than 768 bits is recommended.
z
z
For a fabric made up of multiple devices, you need to create the key
z
Some third-party software, for example, WinSCP, requires that the modulo of a public key must be
greater than or equal to 768. Therefore, a
estroying key pairs
The RSA key m
D
ay be exposed, and you may want to destroy the keys and generate new ones.
Follow these steps to destroy key pairs:
To do…
Use the command…
Remarks
Enter system view
system-view
—