User Manual

SWR2311P(config)#ssh-server interface vlan1
SWR2311P(config)#ssh-server interface vlan2
4.17.4 Set client that can access the SSH server
[Syntax]
ssh-server access action info
no ssh-server access [action info]
[Parameter]
action : Specifies the action for the access condition
Setting value Description
deny "Deny" the condition
permit "Permit" the condition
info : Specifies the transmission-source IPv4 address or IPv6 address that is the condition
Setting value Description
A.B.C.D Specifies an IPv4 address (A.B.C.D)
A.B.C.D/M
Specifies an IPv4 address (A.B.C.D) with subnet
mask length (Mbit)
X:X::X:X Specifies an IPv6 address (X:X::X:X)
X:X::X:X/M
Specifies an IPv6 address (X:X::X:X) with
subnet mask length (Mbit)
any Applies to all IPv4 addresses and IPv6 address
[Initial value]
none
[Input mode]
global configuration mode
[Description]
Restrict access to the SSH according to the client terminal's IPv4/IPv6 address.
Up to eight instances of this command can be set, and those that are specified earlier take priority for application.
If this command is set, all access that does not satisfy the registered conditions is denied.
However, if this command is not set, all access is permitted.
If this command is executed with the "no" syntax, the specified setting is deleted.
If parameters are omitted with the "no" syntax, the all setting are deleted.
[Note]
If ssh-server enable command is not specified, this command does not function.
[Example]
Permit access to the SSH server only from 192.168.1.1 and the 192.168.10.0/24 segment.
SWR2311P(config)#ssh-server access permit 192.168.1.1
SWR2311P(config)#ssh-server access permit 192.168.10.0/24
Deny only access to the SSH server from the segment 192.168.10.0/24.
SWR2311P(config)#ssh-server access deny 192.168.10.0/24
SWR2311P(config)#ssh-server access permit any
4.17.5 Generate SSH server host key
[Syntax]
ssh-server host key generate [bit bit]
Command Reference | Maintenance and operation functions | 79