R3166-R3206-HP High-End Firewalls System Management and Maintenance Configuration Guide-6PW101
137
• Import it from the public key file: During the import process, the system will automatically convert the
public key to a string coded using the Public Key Cryptography Standards (PKCS). Before importing
the public key, you must upload the public key file (in binary) to the local host through FTP or TFTP.
NOTE:
• HP recommends you to configure a client public key by importing it from a public key file.
• You can configure at most 20 client pubic keys on an SSH server.
Configuring a client public key manually
Follow these steps to configure the client public key manually:
To do… Use the command…
Remarks
Enter system view system-view —
Enter public key view public-key peer keyname —
Enter public key code view public-key-code begin —
Configure a client public key Enter the content of the public key
Required
Spaces and carriage returns are
allowed between characters.
Return from public key code view
to public key view
public-key-code end
—
When you exit public key code
view, the system automatically
saves the public key.
Return from public key view to
system view
peer-public-key end —
Importing a client public key from a public key file
Follow these steps to import a public key from a public key file:
To do… Use the command…
Remarks
Enter system view system-view —
Import the public key from a public
key file
public-key peer keyname import
sshkey filename
Required
NOTE:
For information about client side public key configuration and the relevant commands, see
VPN
Configuration Guide
.
Configuring an SSH user
This configuration allows you to create an SSH user and specify the service type and authentication
mode.
Follow these steps to configure an SSH user and specify the service type and authentication mode:
To do… Use the command…
Remarks
Enter system view system-view —