Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?

 
 

Configuring SSH on the Evaluated Configuration

SSH through remote management interface allowed in the evaluated configuration. This topic describes how to configure SSH for remote management of TOE. The following algorithms that needs to be configured to validate SSH.

To configure SSH on the TOE:

  1. Specify the permissible SSH host-key algorithms for the system services.
    Note:

    Although the last hostkey algorithm option mentioned above only mentions RSA, it covers all the claimed RSA algorithms, that is SSH-RSA, RSA-SHA2-256, and RSA-SHA2-512.

  2. Specify the SSH key-exchange for Elliptic Diffie-Hellman keys for the system services.
  3. Specify all the permissible message authentication code algorithms for SSHv2
  4. Specify the ciphers allowed for protocol version 2.

Supported SSH hostkey algorithm:

Supported SSH key-exchange algorithm:

Supported MAC algorithm:

Supported SSH ciphers algorithm: