beautypg.com

Generating the host key pair, Figure 196 confi – Brocade 6910 Ethernet Access Switch Configuration Guide (Supporting R2.2.0.0) User Manual

Page 934

background image

878

Brocade 6910 Ethernet Access Switch Configuration Guide

53-1002651-02

42

Configuring Secure Shell

3. Enable the SSH server.

4. Adjust the authentication parameters as required.

5. Click Apply.

FIGURE 196

Configuring the SSH Server

Generating the Host Key Pair

Use the Security > SSH (Configure Host Key - Generate) page to generate a host public/private key
pair used to provide secure communications between an SSH client and the switch. After
generating this key pair, you must provide the host public key to SSH clients and import the client’s
public key to the switch as described in the section

“Importing User Public Keys”

on page 880.

NOTE

A host key pair must be configured on the switch before you can enable the SSH server. See

“Configuring the SSH Server”

on page 877.

CLI References

“Secure Shell”

on page 164

Parameters
These parameters are displayed:

Host-Key Type – The key type used to generate the host key pair (i.e., public and private keys).
(Range: RSA (Version 1), DSA (Version 2), Both; Default: Both)

The SSH server uses RSA or DSA for key exchange when the client first establishes a
connection with the switch, and then negotiates with the client to select either DES (56-bit) or
3DES (168-bit) for data encryption for SSHv1.5/v2 clients, or AES256 (256-bit) for SSHv2
clients.

NOTE

The switch uses only RSA Version 1 for SSHv1.5 clients and DSA Version 2 for SSHv2 clients.

Save Host-Key from Memory to Flash – Saves the host key from RAM (i.e., volatile memory) to
flash memory. Otherwise, the host key pair is stored to RAM by default. Note that you must
select this item prior to generating the host-key pair. (Default: Disabled)