H3C S7500E Series Ethernet Switches Operation Manual
Operation Manual – SSH
H3C S7500E Series Ethernet Switches Chapter 1 SSH Configuration
1-26
<SwitchB>
1.6.2 When Using Publickey Authentication
I. Network requirements
z As shown in Figure 1-12, Switch A (the SSH client) needs to log on to Switch B
(the SSH server) through SSH protocol.
z Publickey authentication is used; the algorithm is RSA.
II. Network diagram
Figure 1-12 SSH client configuration (using publickey authentication)
III. Configuration procedure
Configure the SSH server
# Generate an RSA key pair and enable SSH server.
<SwitchB> system-view
[SwitchB] public-key local create rsa
[SwitchB] ssh server enable
# Configure an IP address for VLAN-interface 1, which the SSH client will use as the
destination for SSH connection.
[SwitchB] interface vlan-interface 1
[SwitchB-Vlan-interface1] ip address 10.165.87.136 255.255.255.0
[SwitchB-Vlan-interface1] quit
# Set the authentication mode for the user interface to AAA.
[SwitchB] user-interface vty 0 4
[SwitchB-ui-vty0-4] authentication-mode scheme
# Enable the user interface to support SSH.
[SwitchB-ui-vty0-4] protocol inbound ssh
# Set the user command privilege level to 3.
[SwitchB-ui-vty0-4] user privilege level 3
[SwitchB-ui-vty0-4] quit