User Manual

Chapter 11 Configuring Security Features 53
key is the name of a file that contains the DSA public key. If your
hosts implementation requires a complete path to the file, specify
the path here as well.
Example:
set user name=secure loadkey=143.191.2.34:ssh-file
Making Reverse SSH Connections to Ports
The convention used to identify a port for a reverse SSH connection to a
Digi device is to use 2500 + the port number. See the examples that follow
for more information.
Note: Only PortServer TS 8/16 supports reverse SSH version 2 server.
Example: Reverse SSH Connection to Port 1
ssh 192.1.2.3 2501
Example: Reverse SSH Connection to Port 4
ssh 192.1.2.3 2504
Controlling Access to Services
This section describes how to disable services, such as Telnet and Rlogin,
for inbound users, which means that they cannot access the Digi device
using those services. This feature allows you to turn off individual services
or to specify a security level, which means that all services not included in
that level are turned off.
Services that Can Be Turned Off
The following services can be turned off.
HTTP
HTTPS
RealPort
Reverse TCP
Reverse Telnet
Remote login
Remote shell
SSL
SNMP
SSH
Telnet
Service Levels
These are the secure access levels: