F3726, F3211, F3174, R5135, R3816-HP Firewalls and UTM Devices System Management and Maintenance Configuration Guide-6PW100
190
Figure 84 SFTP client interface
299BWhen the firewall acts as an SFTP client for publickey
authentication
472BNetwork requirements
As shown in 905HFigure 85, you can log in to the router through the SFTP client that runs on the firewall. The
router acts as the SFTP server, adopting publickey authentication and the RSA public key algorithm.
Figure 85 Network diagram
473BConfiguration considerations
In the server configuration, the client public key is required. Use the client software to generate an RSA
key pair on the client before configuring the SFTP server.
474BConfiguration procedure
1. Configure the SFTP client:
# Configure an IP address for interface GigabitEthernet 0/1.
<Firewall> system-view
[Firewall] interface gigabitethernet 0/1
[Firewall-GigabitEthernet 0/1] ip address 192.168.0.2 255.255.255.0
[Firewall-GigabitEthernet 0/1] quit
# Generate the RSA key pairs.
[Firewall] public-key local create rsa