EasyManuals Logo

HPE FlexNetwork 5510 HI Series Security Configuration Guide

HPE FlexNetwork 5510 HI Series
551 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #366 background imageLoading...
Page #366 background image
353
Step
Command
Remarks
aes256-gcm } *
• In FIPS mode:
ssh2
algorithm cipher
{ aes128-cbc | aes256-cbc |
aes128-ctr | aes192-ctr |
aes256-ctr | aes128-gcm |
aes256-gcm } *
descending order of priority for
algorithm negotiation.
Specifying MAC algorithms for SSH2
Step
Command
Remarks
1. Enter system view.
system-view
N/A
2.
Specify MAC algorithms for
SSH2.
• In non-FIPS mode:
ssh2 algorithm mac { md5 |
md5-96 | sha1 | sha1-96 |
sha2-256 | sha2-512 } *
• In FIPS mode:
ssh2 algorithm mac { sha1
| sha1-96 | sha2-256 |
sha2-512
}
*
By default, SSH2 uses the MAC
algorithms
sha2-256
,
sha2-512
,
sha1
,
md5
,
sha1-96
, and
md5-96
in descending order of priority for
algorithm negotiation.
Displaying and maintaining SSH
Execute display commands in any view.
Task
Command
Display the source IP address configured for
the SFTP client.
display sftp client source
Display the source IP address configured for
the Stelnet client.
display ssh client source
Display SSH server status or sessions.
display ssh server
{
session
|
status
}
Display SSH user information on the SSH
server.
display ssh user-information
[ username ]
Display the public keys of the local key pairs.
display public-key local
{
dsa
|
ecdsa
|
rsa
}
public
[
name
publickey-name ]
Display the public keys of the SSH peers.
display public-key peer
[
brief
|
name
publickey-name ]
Stelnet configuration examples
Devices in the configuration examples are in non-FIPS mode.
When you configure Stelnet on a device that operates in FIPS mode, follow these restrictions and
guidelines:
• The modulus length of RSA key pairs must be 2048 bits.
• When the device acts as the Stelnet server, it supports only ECDSA and RSA key pairs. If both
ECDSA and RSA key pairs exist on the server, the server uses the ECDSA key pair.

Table of Contents

Other manuals for HPE FlexNetwork 5510 HI Series

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the HPE FlexNetwork 5510 HI Series and is the answer not in the manual?

HPE FlexNetwork 5510 HI Series Specifications

General IconGeneral
BrandHPE
ModelFlexNetwork 5510 HI Series
CategorySwitch
LanguageEnglish

Related product manuals