R3102-R3103-HP 6600/HSR6600 Routers Security Configuration Guide

218
Displaying or exporting the local host public key
In some applications, such as SSH, to allow your local device to be authenticated by a peer device
through digital signature, you must display or export the local host public key, which will then be
specified on the peer device.
To display or export the local host public key, choose one of the following methods:
Displaying and recording the host public key information
Displaying the host public key in a specif
ic format and saving it to a file
Exporting the host public key in a specific format to a file
If y
our local device functions to authenticate the peer device, you must specify the peer public key on the
local device. For more information, see "Specifying the peer public key on the local device."
Displaying and recording the host public key
information
Task Command
Remarks
Display the local RSA public keys.
display public-key local rsa public [ | { begin
| exclude | include } regular-expression ]
Available in any view.
Use at least one
command.
Display the local DSA host public
key.
display public-key local dsa public [ | { begin
| exclude | include } regular-expression ]
The display public-key local rsa public command displays both the RSA server and host public keys.
Recording the RSA host public key is enough.
After you display the host public key, record the key information for manually configuration of the key on
the peer device.
Displaying the host public key in a specific format
and saving it to a file
Ste
p
Command
Remarks
1. Enter system view.
system-view N/A
2. Display the local host public
key in a specific format.
Display the RSA host public key:
public-key local export rsa
{ openssh | ssh1 | ssh2 }
Display the DSA host public key:
public-key local export dsa
{ openssh | ssh2 }
Use at least one command.
After you display the host public key in a specific format, save the key to a file, and transfer the file to the
peer device.