Running telnet, Establishing a connection using ssh, Enabling and restricting ssh access – Nortel Networks 5500 series User Manual

Page 380: Running an ssh client, Establishing a

Advertising
background image

380

The Command Line Interface

For more information on how to enable Telnet access, see the

/cfg/sys/adm/telnet

command (see

"telnet on|off" (page 283)

). For

more information on how to restrict Telnet access to one or more specific
machines, see

“Configuring the Access List” (page 273)

.

Running Telnet

Once the IP parameters on the Nortel SNAS are configured and Telnet
access is enabled, you can access the CLI using a Telnet connection.
To establish a Telnet connection with the Nortel SNAS, run the Telnet
program on your workstation and issue the Telnet command, followed by
the IP address of the Nortel SNAS.

telnet

<IP address>

You will then be prompted to enter a valid user name and password. For
more information about different user accounts and default passwords, see

“Accessing the Nortel SNAS cluster” (page 381)

.

Establishing a connection using SSH

Using an SSH client to establish a connection over the network provides
the following security benefits:

server host authentication

encryption of passwords for user authentication

encryption of all traffic that is transmitted over the network when
configuring or collecting information from the Nortel SNAS

Enabling and restricting SSH access

SSH access to the Nortel SNAS is disabled by default. However,
depending on the severity of your security policy, you may want to enable
SSH access. You may also restrict SSH access to one or more specific
machines.

For more information on how to enable SSH access, see the

/cfg/sys/adm/ssh

command (see

"ssh on|off" (page 283)

). For

more information on how to restrict SSH access to one or more specific
machines, see

“Configuring the Access List” (page 273)

.

Running an SSH client

Connecting to the Nortel SNAS using an SSH client is similar to
connecting using Telnet: the IP parameters on the Nortel SNAS must
be configured in advance, and SSH access must be enabled. After you
provide a valid user name and password, the CLI in the Nortel SNAS
is accessible the same way as when using a Telnet client. However,
since a secured and encrypted communication channel is set up even
before the user name and password is transmitted, all traffic sent over the

Nortel Secure Network Access Switch

Using the Command Line Interface

NN47230-100

03.01

Standard

28 July 2008

Copyright © 2007, 2008 Nortel Networks

.

Advertising
This manual is related to the following products: