C
HAPTER
27
| Authentication Commands
Secure Shell
– 687 –
ip ssh
authentication-
retries
This command configures the number of times the SSH server attempts to
reauthenticate a user. Use the no form to restore the default setting.
SYNTAX
ip ssh authentication-retries count
no ip ssh authentication-retries
count – The number of authentication attempts permitted after
which the interface is reset. (Range: 1-5)
DEFAULT SETTING
3
COMMAND MODE
Global Configuration
EXAMPLE
Console(config)#ip ssh authentication-retires 2
Console(config)#
RELATED COMMANDS
show ip ssh (691)
ip ssh server This command enables the Secure Shell (SSH) server on this switch. Use
the no form to disable this service.
SYNTAX
[no] ip ssh server
DEFAULT SETTING
Disabled
COMMAND MODE
Global Configuration
COMMAND USAGE
◆ The SSH server supports up to four client sessions. The maximum
number of client sessions includes both current Telnet sessions and
SSH sessions.
◆ The SSH server uses DSA or RSA for key exchange when the client first
establishes a connection with the switch, and then negotiates with the
client to select either DES (56-bit) or 3DES (168-bit) for data
encryption.
◆ You must generate DSA and RSA host keys before enabling the SSH
server.