Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?

 
 

Configure SSH on the Evaluated Configuration

SSH through remote management interface allowed in the evaluated configuration. This topic describes how to configure SSH for remote management of TOE. The following algorithms that needs to be configured to validate SSH.

To configure SSH on the TOE:

  1. Specify the permissible SSH host-key algorithms for the system services.

    Note:

    Although the last hostkey algorithm option mentioned above only mentions RSA, it covers all the claimed RSA algorithms, that is SSH-RSA, RSA-SHA2-256, and RSA-SHA2-512.

  2. Specify the SSH key-exchange for Elliptic Curve Diffie-Hellman keys for the system services.

  3. Specify all the permissible message authentication code algorithms for SSHv2

  4. Specify the ciphers allowed for protocol version 2.

  5. Commit the changes:

Note:

To disable SSH service, you can deactivate and commit the SSH configurations:

Note:

To disable Netconf service, you can deactivate and commit the netconf configurations:

Supported SSH host-key algorithm:

Supported SSH key-exchange algorithm:

Supported MACs algorithm:

Supported SSH ciphers algorithm: