Displaying additional ssh connection information – Brocade Communications Systems Brocade ICX 6650 6650 User Manual

Page 94

Advertising
background image

74

Brocade ICX 6650 Security Configuration Guide

53-1002601-01

Displaying SSH information

Displaying additional SSH connection information

The show who command also displays information about SSH connections:

show who [begin expression | exclude expression | include expression]

Encryption

The encryption used for the SSH connection. The following values are
displayed when AES only is enabled:

AES-256, AES-192, and AES-128 indicate the different AES
methods used for encryption.

3-DES indicates 3-DES algorithm is used for encryption.

Permit empty password

Empty password login is allowed or not allowed.

Authentication methods

The authentication methods used for SSH. The authentication can have
one or more of the following values:

Password - indicates that you are prompted for a password when
attempting to log into the device.

Public-key - indicates that DSA or RSA challenge-response
authentication is enabled.

Interactive - indicates the interactive authentication si enabled.

Authentication retries

The number of authentication retries. This number can be from 1 to 5.

Login timeout (seconds)

SSH login timeout value in seconds. This can be from 0 to 120.

Idle timeout (minutes)

SSH idle timeout value in minutes. This can be from 0 to 240.

Strict management VRF

Strict management VRF is enabled or disabled.

SCP

SCP is enabled or disabled.

SSH IPv4 clients

The list of IPv4 addresses to which SSH access is allowed. The default is
“All”.

SSH IPv6 clients

The list of IPv4 addresses to which SSh access is allowed. Default “All”.

SSH IPv4 access-list

The IPv4 ACL used to permit or deny access using SSH.

SSH IPv6 access-list

The IPv6 ACL used to permit or deny access to device using SSH.

TABLE 14

SSH configuration information (Continued)

Field

Description

Brocade# show who
Console connections:
Established
you are connecting to this session
2 minutes 56 seconds in idle

SSH server status: Enabled
SSH connections (inbound):
1. established, client ip address 10.2.2.1, server hostkey DSA
1 minutes 15 seconds in idle
2. established, client ip address 10.2.2.2, server hostkey RSA
2 minutes 25 seconds in idle
SSH connection (outbound):
3. established, server ip address 10.37.77.15, server hostkey RSA

7 seconds in idle

Advertising