27.11.2012 Views

IronPort - daily management guide - AsyncOS 7.6.1

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Managing Secure Shell (SSH) Keys<br />

8-44<br />

mail3.example.com> systemsetup<br />

[The system setup wizard is run.]<br />

mail3.example.com> commit<br />

Please enter some comments describing your changes:<br />

[]> pasted new configuration file and changed default settings via<br />

systemsetup<br />

Managing Secure Shell (SSH) Keys<br />

Cisco <strong>IronPort</strong> <strong>AsyncOS</strong> 7.6 for Email Daily Management Guide<br />

Chapter 8 Common Administrative Tasks<br />

The sshconfig command adds and deletes secure shell (SSH) public User keys to the authorized_keys<br />

file of user accounts that have been configured on the system, including the admin account. This allows<br />

authentication to user accounts using SSH keys rather than password challenge. Both SSH protocol<br />

version 1 (SSH1) and SSH protocol version 2 (SSH2) with RSA-based authentication and DSA key types<br />

are supported. You can disable SSH1 via the setup subcommand.<br />

Note To configure Host keys, which are used when performing SCP pushes of log files from the Cisco <strong>IronPort</strong><br />

appliance to other host machines, use logconfig -> hostkeyconfig. For more information, see<br />

Chapter 5, “Logging.”<br />

Using hostkeyconfig, you can scan for keys of remote hosts and add them to the Cisco <strong>IronPort</strong><br />

appliance.<br />

Note When pasting new keys directly into the CLI, type Enter or Return on a blank line to finish entering the<br />

key.<br />

In the following example, a new public key is installed for the admin account:<br />

mail3.example.com> sshconfig<br />

Currently installed keys for admin:<br />

Choose the operation you want to perform:<br />

- NEW - Add a new key.<br />

OL-25138-01

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!