R3166-R3206-HP High-End Firewalls System Management and Maintenance Configuration Guide-6PW101

137
Import it from the public key file: During the import process, the system will automatically convert the
public key to a string coded using the Public Key Cryptography Standards (PKCS). Before importing
the public key, you must upload the public key file (in binary) to the local host through FTP or TFTP.
NOTE:
HP recommends you to configure a client public key by importing it from a public key file.
You can configure at most 20 client pubic keys on an SSH server.
Configuring a client public key manually
Follow these steps to configure the client public key manually:
To do… Use the command…
Remarks
Enter system view system-view
Enter public key view public-key peer keyname
Enter public key code view public-key-code begin
Configure a client public key Enter the content of the public key
Required
Spaces and carriage returns are
allowed between characters.
Return from public key code view
to public key view
public-key-code end
When you exit public key code
view, the system automatically
saves the public key.
Return from public key view to
system view
peer-public-key end
Importing a client public key from a public key file
Follow these steps to import a public key from a public key file:
To do… Use the command…
Remarks
Enter system view system-view
Import the public key from a public
key file
public-key peer keyname import
sshkey filename
Required
NOTE:
For information about client side public key configuration and the relevant commands, see
VPN
Configuration Guide
.
Configuring an SSH user
This configuration allows you to create an SSH user and specify the service type and authentication
mode.
Follow these steps to configure an SSH user and specify the service type and authentication mode:
To do… Use the command…
Remarks
Enter system view system-view