02.10.2013 Views

FTOS Configuration Guide for the C-Series - Force10 Networks

FTOS Configuration Guide for the C-Series - Force10 Networks

FTOS Configuration Guide for the C-Series - Force10 Networks

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

To configure RSA au<strong>the</strong>ntication:<br />

Step Task Command Syntax Command Mode<br />

1 On <strong>the</strong> SSH client (Unix machine), generate an RSA key, as shown in Figure 79.<br />

Figure 79 Generating RSA Keys<br />

admin@Unix_client#ssh-keygen -t rsa<br />

Generating public/private rsa key pair.<br />

Enter file in which to save <strong>the</strong> key (/home/admin/.ssh/id_rsa):<br />

/home/admin/.ssh/id_rsa already exists.<br />

Overwrite (y/n)? y<br />

Enter passphrase (empty <strong>for</strong> no passphrase):<br />

Enter same passphrase again:<br />

Your identification has been saved in /home/admin/.ssh/id_rsa.<br />

Your public key has been saved in /home/admin/.ssh/id_rsa.pub.<br />

The key fingerprint is:<br />

53:aa:a0:3e:6a:79:09:5a:a0:12:32:e3:9c:9a:7e:73 admin@Unix_client<br />

2 Copy <strong>the</strong> public key id_rsa.pub to <strong>the</strong> <strong>Force10</strong> system.<br />

3 Disable password au<strong>the</strong>ntication if<br />

enabled.<br />

Host-based Au<strong>the</strong>ntication<br />

Au<strong>the</strong>nticate a particular host. This method uses SSH version 2.<br />

To configure host-based au<strong>the</strong>ntication:<br />

no ip ssh<br />

password-au<strong>the</strong>ntication enable<br />

CONFIGURATION<br />

4 Enable RSA au<strong>the</strong>ntication. ip ssh rsa-au<strong>the</strong>ntication enable EXEC Privilege<br />

5 Bind <strong>the</strong> public keys to RSA<br />

au<strong>the</strong>ntication.<br />

ip ssh rsa-au<strong>the</strong>ntication<br />

my-authorized-keys flash://<br />

public_key<br />

EXEC Privilege<br />

Step Task Command Syntax Command Mode<br />

1 Configure RSA Au<strong>the</strong>ntication. See RSA Au<strong>the</strong>ntication on page 163.<br />

164 Security

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!