Troubleshooting SSH
To troubleshoot SSH, use the following information.
You may not bind
id_rsa.pub
to RSA authentication while logged in via the console. In this case, this
message displays:
%Error: No username set for this term.
Enable host-based authentication on the server (Dell Networking system) and the client (Unix machine).
The following message appears if you attempt to log in via SSH and host-based is disabled on the client.
In this case, verify that host-based authentication is set to “Yes” in the
file ssh_config
(root permission is
required to edit this file):
permission denied (host based).
If the IP address in the RSA key does not match the IP address from which you attempt to log in, the
following message appears. In this case, verify that the name and IP address of the client is contained in
the
file /etc/
hosts:
RSA Authentication Error
.
Telnet
To use Telnet with SSH, first enable SSH, as previously described.
By default, the Telnet daemon is enabled. If you want to disable the Telnet daemon, use the following
command, or disable Telnet in the startup config. To enable or disable the Telnet daemon, use the
[no]
ip telnet server enable
command.
Example of Using Telnet for Remote Login
Dell(conf)#ip telnet server enable
Dell(conf)#no ip telnet server enable
VTY Line and Access-Class Configuration
Various methods are available to restrict VTY access in Dell Networking OS. These depend on which
authentication scheme you use — line, local, or remote.
Table 48. VTY Access
Authentication Method VTY access-class
support?
Username access-class
support?
Remote authorization
support?
Line
YES
NO
NO
Local
NO
YES
NO
YES
NO
YES (with Dell
Networking OS version
5.2.1.0 and later)
RADIUS
YES
NO
YES (with Dell
Networking OS version
6.1.1.0 and later)
Dell Networking OS provides several ways to configure access classes for VTY lines, including:
•
VTY Line Local Authentication and Authorization
•
VTY Line Remote Authentication and Authorization
Security
739
Summary of Contents for Z9000
Page 1: ...Dell Configuration Guide for the Z9000 System 9 7 0 0 ...
Page 80: ...grub reboot 80 Management ...
Page 128: ... 0 Te 1 1 Te 1 2 rx Flow N A N A 128 Access Control Lists ACLs ...
Page 491: ...Figure 70 Configuring OSPF and BGP for MSDP Multicast Source Discovery Protocol MSDP 491 ...
Page 496: ...Figure 73 MSDP Default Peer Scenario 1 496 Multicast Source Discovery Protocol MSDP ...
Page 497: ...Figure 74 MSDP Default Peer Scenario 2 Multicast Source Discovery Protocol MSDP 497 ...
Page 498: ...Figure 75 MSDP Default Peer Scenario 3 498 Multicast Source Discovery Protocol MSDP ...
Page 760: ...Figure 100 Single and Double Tag TPID Match 760 Service Provider Bridging ...
Page 761: ...Figure 101 Single and Double Tag First byte TPID Match Service Provider Bridging 761 ...