HP Systems Insight Manager 5.3 Technical Reference Guide

HP SIM provides the following SSH key configuration options:
Select secure shell public keys security level Select OptionsSecurityCredentialsTrusted
Systems.
Importing SSH keys Select OptionsSecurityCredentialsTrusted Systems, select the SSH
Key to be imported, and then click Import.
ExportingSSH keys Select OptionsSecurityCredentialsTrusted Systems, select the SSH
Key to be exported, and then click Export.
Deleting SSH keys Select OptionsSecurityCredentialsTrusted Systems, select the SSH
Key to be deleted, and then click Delete.
Related procedures
Importing an SSH key
Exporting an SSH key
Deleting an SSH key
Configuring SSH key security
Configuring SSH key security
Configuring the
SSH
key security level enables you to specify the level of security on the
CMS
.
To configure the SSH key security level on the CMS:
1. Select OptionsSecurityCredentialsTrusted Systems. The Trusted Systems page appears.
Under Select managed systems SSH host key behavior, the following options are available:
The Central Management Server will save the SSH host key the first time an SSH connection is
made.
The CMS will accept an SSH connection with any host key, even if not in the list below.
This option is selected by default.
This option causes all connections to the host to be accepted, even when the SSH key has changed.
The known_hosts file is disabled and updated to reflect the new key.
Note: This option provides no protection against man-in-middle attacks.
The CMS will accept an SSH connection only if the host key is in the list below
This option requires the SSH key to appear in the Managed Systems SSH Host Keys list.
Note: HP recommends this option because it is the most secure.
2. Click OK. The setting is saved.
Note: Alternately, you can set the property value for MX_SSH_ADD_UNKNOWN_HOSTS, in mx.properties
file, to either ALWAYS, NEVER, or FIRST TIME. Restart the HP SIM service for the setting to take effect.
Related procedures
Importing an SSH key
Exporting an SSH key
Deleting an SSH key
Related topic
Managing SSH keys
Importing an SSH key
Importing a
SSH
key list enables the
CMS
to authenticate a secure connection and execute commands on
managed systems. Multiple SSH keys are imported from one file, and each SSH key appears on a line and
is associated with a host system.
Managing SSH keys 599