LDAP Server Configuration Process 109
Enabling or Disabling LDAP 110
Configuring LDAP Server Hosts 111
Configuring the RootDN for an LDAP Server 112
Configuring LDAP Server Groups 113
Configuring the Global LDAP Timeout Interval 115
Configuring the Timeout Interval for an LDAP Server 116
Configuring TCP Ports 117
Configuring LDAP Search Maps 118
Configuring Periodic LDAP Server Monitoring 119
Configuring the LDAP Dead-Time Interval 120
Configuring AAA Authorization on LDAP Servers 121
Monitoring LDAP Servers 122
Clearing LDAP Server Statistics 123
Verifying the LDAP Configuration 123
Configuration Examples for LDAP 124
Where to Go Next 124
Additional References for LDAP 125
Configuring SSH and Telnet 127
CHAPTER 7
About SSH and Telnet 127
SSH Server 127
SSH Client 127
SSH Server Keys 128
SSH Authentication Using Digital Certificates 128
Telnet Server 129
Licensing Requirements for SSH and Telnet 129
Prerequisites for SSH and Telnet 129
Guidelines and Limitations for SSH and Telnet 129
Default Settings for SSH and Telnet 130
Configuring SSH 130
Generating SSH Server Keys 130
Specifying the SSH Public Keys for User Accounts 132
Specifying the SSH Public Keys in IETF SECSH Format 132
Cisco Nexus 9000 Series NX-OS Security Configuration Guide, Release 9.x
viii
Contents