Managing known hosts ssh keys – Nortel Networks 5500 series User Manual

Page 285

Advertising
background image

Configuring the cluster

285

/cfg/sys/adm/sshkeys

The SSH Host Keys menu appears.

The SSH Host Keys menu includes the following options:

/cfg/sys/adm/sshkeys

followed by:

generate

Generates new SSH host keys (RSA1, RSA,
and DSA) to be used by all hosts in the cluster.

Enter

Apply

to apply the change immediately

and create the key.

show

the current SSH host keys and corresponding
fingerprints for the cluster. The following
formats are used:

RSA1 keys—there is no standard format.
The format in the CLI output is the
OpenSSH implementation, except that the
line is wrapped. To fully conform to the
OpenSSH implementation, you may need
to edit the output back into a single line for
use in the key storage of an SSH client.

RSA and DSA keys—the SECSH Public Ke
y File Format, as described in Internet Draft

draft-ietf-secsh-publickeyfile

.

knownhosts

Accesses the SSH Known Host Keys menu,
in order to manage the public SSH keys of
remote hosts (see

“Managing known hosts

SSH keys” (page 285)

)

Managing known hosts SSH keys

You can paste or import public SSH keys from remote hosts as a
convenience, so that you do not get prompted to accept a new key during
later use of SCP or SFTP for file or data transfer.

To achieve strict "man in the middle" protection, verify the fingerprint
before applying the changes.

To manage the public SSH keys of known remote hosts, use the following
command:

/cfg/sys/adm/sshkeys/knownhosts

The SSH Known Host Keys menu appears.

Nortel Secure Network Access Switch

Using the Command Line Interface

NN47230-100

03.01

Standard

28 July 2008

Copyright © 2007, 2008 Nortel Networks

.

Advertising
This manual is related to the following products: