Specifying The Peer Public Key On The Local Device - HP 10500 Series Configuration Manual

Security configuration guide
Hide thumbs Also See for 10500 Series:
Table of Contents

Advertisement

To destroy a local asymmetric key pair:
Step
1.
Enter system view.
2.
Destroy a local asymmetric key pair.

Specifying the peer public key on the local device

In SSH, to enable the local device to authenticate a peer device, specify the peer public key on the local
device. The device supports up to 20 peer public keys.
For information about displaying or exporting the host public key, see
host public
key."
To specify the peer public key on the local device:
Method
Import the public key
from a public key file
Manually configure
the public key—input
or copy the key data
To import the host public key from a public key file to the local device:
Step
1.
Enter system view.
2.
Import the host public key from the public key file.
To manually configure the peer public key on the local device:
Step
1.
Enter system view.
2.
Specify a name for the public
key and enter public key view.
3.
Enter public key code view.
4.
Configure the peer public key.
Command
system-view
public-key local destroy { dsa | rsa }
Prerequisites
1.
Save the host public key of the intended
asymmetric key pair in a file.
2.
Transfer a copy of the file through FTP
or TFTP in binary mode to the local
device.
Display and record the public key of the
intended asymmetric key pair.
If the peer device is an HP device, use the
display public-key local public command
to view and record its public key. A
public key displayed by other methods
for the HP device may not be in a correct
format.
Command
system-view
public-key peer keyname
public-key-code begin
Type or copy the key
194
"Displaying or exporting the local
Remarks
Recommended.
During the import process, the system
automatically converts the public key to
a string in Public Key Cryptography
Standards (PKCS) format.
The recorded public key must be in
the correct format, or the manual
configuration of a
format-incompliant public key will
fail.
Always use the first method if you
are not sure about the format of the
recorded public key.
Command
system-view
public-key peer keyname import sshkey filename
Remarks
N/A
N/A
N/A
Spaces and carriage returns are allowed
between characters.

Advertisement

Table of Contents
loading

Table of Contents