EasyManuals Logo

Cisco Catalyst 2960 Series User Manual

Cisco Catalyst 2960 Series
2288 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #1202 background imageLoading...
Page #1202 background image
PurposeCommand or Action
Defines the order of host key algorithms. Only the configured
algorithm is negotiated with the Secure Shell (SSH) client.
ip ssh server algorithm hostkey
{x509v3-ssh-rsa [ssh-rsa] | ssh-rsa
[x509v3-ssh-rsa]}
Step 3
The IOS SSH server must have at least one configured host
key algorithm:
Note
x509v3-ssh-rsacertificate-based authentication
ssh-rsapublic key-based authentication
Example:
Switch(config)# ip ssh server algorithm
hostkey x509v3-ssh-rsa
Configures server and user certificate profiles and enters SSH
certificate profile configuration mode.
ip ssh server certificate profile
Example:
Switch(config)# ip ssh server certificate
profile
Step 4
Configures server certificate profile and enters SSH server certificate
profile server configuration mode.
server
Example:
Switch(ssh-server-cert-profile)# server
Step 5
The server profile is used to send out the certificate of the server
to the SSH client during server authentication.
Attaches the public key infrastructure (PKI) trustpoint to the server
certificate profile.
trustpoint sign PKI-trustpoint-name
Example:
Switch(ssh-server-cert-profile-server)#
trustpoint sign trust1
Step 6
The SSH server uses the certificate associated with this PKI
trustpoint for server authentication.
(Optional) Sends the Online Certificate Status Protocol (OCSP)
response or OCSP stapling along with the server certificate.
ocsp-response include
Example:
Switch(ssh-server-cert-profile-server)#
ocsp-response include
Step 7
By default, no OCSP response is sent along with the server
certificate.
Note
Exits SSH server certificate profile server configuration mode and
returns to privileged EXEC mode.
end
Example:
Switch(ssh-server-cert-profile-server)#
end
Step 8
Consolidated Platform Configuration Guide, Cisco IOS Release 15.2(4)E (Catalyst 2960-X Switches)
1120
How to Configure X.509v3 Certificates for SSH Authentication

Table of Contents

Other manuals for Cisco Catalyst 2960 Series

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the Cisco Catalyst 2960 Series and is the answer not in the manual?

Cisco Catalyst 2960 Series Specifications

General IconGeneral
LayerLayer 2
Power over Ethernet (PoE)Available on some models
RAM128 MB
Flash Memory32 MB
MAC Address Table Size8000
Operating Temperature0°C to 45°C (32 to 113°F)
Ports24 or 48 x 10/100/1000

Related product manuals