Configuring the firewall as an sftp client, Establishing a connection to the sftp server – H3C Technologies H3C SecPath F1000-E User Manual
Page 187
176
Configuring the SFTP connection idle timeout period
Once the idle period of an SFTP connection exceeds the specified threshold, the system automatically
tears the connection down.
To configure the SFTP connection idle timeout period:
Step Command
Remarks
1.
Enter system view.
system-view
N/A
2.
Configure the SFTP
connection idle timeout
period.
sftp server idle-timeout
time-out-value
Optional.
10 minutes by default.
Configuring the firewall as an SFTP client
Specifying a source IP address or interface for the SFTP client
You can configure a client to use only a specified source IP address or interface to access the SFTP server,
enhancing the service manageability.
To specify a source IP address or interface for the SFTP client:
Step Command
Remarks
1.
Enter system view.
system-view
N/A
2.
Specify a source IP address or
interface for the SFTP client.
•
Specify a source IPv4 address or
interface for the SFTP client:
sftp client source { ip ip-address |
interface interface-type
interface-number }
•
Specify a source IPv6 address or
interface for the SFTP client:
sftp client ipv6 source { ipv6
ipv6-address | interface interface-type
interface-number }
Use either command.
By default, an SFTP client
uses the IP address of the
interface specified by the
route of the device to
access the SFTP server.
Establishing a connection to the SFTP server
To establish a connection to the IPv4 SFTP server:
- H3C SecPath F5000-A5 Firewall H3C SecPath F1000-A-EI H3C SecPath F1000-E-SI H3C SecPath F1000-S-AI H3C SecPath F5000-S Firewall H3C SecPath F5000-C Firewall H3C SecPath F100-C-SI H3C SecPath F1000-C-SI H3C SecPath F100-A-SI H3C SecBlade FW Cards H3C SecBlade FW Enhanced Cards H3C SecPath U200-A U200-M U200-S H3C SecPath U200-CA U200-CM U200-CS