Configure public key authentication over ssh, Configure public, Key authentication over ssh – Dell POWEREDGE M1000E User Manual

Page 155

Advertising
background image

Scheme Type

Scheme

3DES-192-CBC

ARCFOUR-128

Message Integrity

HMAC-SHA1-160

HMAC-SHA1-96

HMAC-MD5-128

HMAC-MD5-96

Authentication

Password

Configure Public Key Authentication over SSH

You can configure up to 6 public keys that can be used with the service username over SSH interface. Before adding or
deleting public keys, be sure to use the view command to see what keys are already set up so that a key is not
accidentally overwritten or deleted. The service username is a special user account that can be used when accessing
the CMC through SSH. When the PKA over SSH is set up and used correctly, you need not enter username or passwords
to log in to the CMC. This can be very useful to set up automated scripts to perform various functions.

NOTE: There is no GUI support for managing this feature; you can only use RACADM.

When adding new public keys, ensure that the existing keys are not already at the index where the new key is added.
CMC does not perform checks to ensure previous keys are deleted before a new one is added. As soon as a new key is
added, it is automatically in effect as long as the SSH interface is enabled.
When using the public key comment section of the public key, remember that only the first 16 characters are utilized by
the CMC. The public key comment is used by the CMC to distinguish SSH users when using the RACADM getssninfo
command since all PKA users use the service username to log in.
For example, if two public keys are set up one with comment PC1 and one with comment PC2:
racadm getssninfo

Type User IP Address Login

Date/Time

SSH PC1 x.x.x.x 06/16/2009

09:00:00

SSH PC2 x.x.x.x 06/16/2009

09:00:00

For more information on the sshpkauth, see the

RACADM Command Line Reference Guide for iDRAC7 and CMC

.

Related Links

Generating Public Keys for Systems Running Windows
Generating Public Keys for Systems Running Linux
RACADM Syntax Notes for CMC
Viewing Public Keys
Adding Public Keys
Deleting Public Keys

Generating Public Keys for Systems Running Windows

Before adding an account, a public key is required from the system that accesses the CMC over SSH. There are two
ways to generate the public/private key pair: using PuTTY Key Generator application for clients running Windows or ssh-
keygen CLI for clients running Linux.

155

Advertising