HP VPN Firewall Appliances System Management and Maintenance Configuration Guide

v
Configuring SNMP traps ············································································································································· 156
Enabling SNMP traps ········································································································································· 156
Configuring the SNMP agent to send traps to a host ····················································································· 157
Displaying and maintaining SNMP ··························································································································· 158
SNMP configuration examples ··································································································································· 159
SNMPv1/SNMPv2c configuration example ···································································································· 159
SNMPv3 configuration example························································································································ 160
SNMP logging configuration example ············································································································· 162
Configuring RSH ····················································································································································· 164
Configuration prerequisites ········································································································································· 164
Configuration procedure ············································································································································· 164
RSH configuration example ········································································································································ 164
Configuring SSH ····················································································································································· 167
Overview ······································································································································································· 167
How SSH works ··················································································································································· 167
SSH authentication ·············································································································································· 168
SSH support for VPN ·········································································································································· 169
Configuring the device as an SSH server ·················································································································· 169
SSH server configuration task list ······················································································································ 170
Generating local DSA or RSA key pairs ··········································································································· 170
Enabling the SSH server function ······················································································································· 171
Enabling the SFTP server function ······················································································································ 171
Configuring the user interfaces for SSH clients ································································································ 171
Configuring a client's host public key ··············································································································· 172
Configuring an SSH user ···································································································································· 173
Setting the SSH management parameters ········································································································ 174
Configuring the device as an Stelnet client ··············································································································· 175
Stelnet client configuration task list ···················································································································· 175
Specifying a source IP address or source interface for the Stelnet client ······················································ 175
Enabling and disabling first-time authentication ······························································································ 176
Establishing a connection to an Stelnet server ································································································· 177
Configuring the device as an SFTP client ·················································································································· 178
SFTP client configuration task list ······················································································································· 178
Specifying a source IP address or source interface for the SFTP client ························································· 178
Establishing a connection to an SFTP server ···································································································· 178
Working with SFTP directories ··························································································································· 179
Working with SFTP files ······································································································································ 180
Displaying help information ······························································································································· 181
Terminating the connection with the SFTP server ····························································································· 181
Configuring the device as an SCP client ··················································································································· 181
SCP client configuration task list ························································································································ 181
Transferring files with an SCP server ················································································································· 182
Displaying and maintaining SSH ······························································································································· 182
Stelnet configuration examples ··································································································································· 183
Password authentication enabled Stelnet server configuration example ······················································ 183
Publickey authentication enabled Stelnet server configuration example ······················································· 185
Password authentication enabled Stelnet client configuration example ························································ 190
Publickey authentication enabled Stelnet client configuration example ························································ 193
SFTP configuration examples ······································································································································ 195
Password authentication enabled SFTP server configuration example ·························································· 195
Publickey authentication enabled SFTP client configuration example ··························································· 197
SCP configuration example········································································································································· 200
Network requirements ········································································································································· 201