Lantronix EDS-MD8 manual SSH Client Users, SSH Server Authorized Users, Username, Remote Command

Page 60

 

 

10: Security Settings

 

 

Table 10-3 SSH Server Authorized Users

 

 

 

 

RSS Settings

Description

 

Username

Enter a new username or edit an existing one.

 

 

 

 

Password

Enter a new password or edit an existing one.

 

 

 

 

Public RSA Key

Enter the path and name of the existing public RSA key you want to use with this

 

 

user. In WebManager, you can also Browse to the public RSA key to be uploaded. If

 

 

authentication is successful with the key, no password is required.

 

 

 

 

Public DSA Key

Enter the path and name of the existing public DSA key you want to use with this

 

 

user. In WebManager, you can also Browse to the public DSA key to be uploaded.If

 

 

authentication is successful with the key, no password is required.

 

 

 

SSH Client Users

The SSH Client Users are used by all applications that play the role of an SSH Client. Specifically Tunneling in Connect Mode. To configure the EDS-MD as an SSH client, an SSH client user must be both configured and also exist on the remote SSH server.

At the very least, a Password or Key Pair must be configured for a user. The keys for public key authentication can be created elsewhere and uploaded to the device or automatically generated on the device.

If uploading existing Keys, take care to ensure the Private Key will not be compromised in transit. This implies the data is uploaded over some kind of secure private network.

The default Remote Command is '<Default login shell>' which tells the SSH Server to execute a remote shell upon connection. This can be changed to anything the SSH Server on the remote host can execute.

Note: If you are providing a key by uploading a file, make sure that the key is not password protected.

 

Table 10-4 SSH Client Users

 

 

RSS Settings

Description

 

 

Username

Enter the name that the device uses to connect to an SSH server.

 

 

Password

Enter the password associated with the username.

 

 

Remote Command

Enter the command that can be excuted remotely. Default is shell, which tells the

 

SSH server to execute a remote shell upon connection. This command can be

 

changed to anything the remote host can perform.

 

 

Private Key

Enter the path and name of the existing private key you want to upload. . In

 

WebManager, you can also Browse to the private key to be uploaded. Be sure the

 

private key will not be compromised in transit. This implies the data is uploaded over

 

some kind of secure private network.

 

 

Public Key

Enter the path and name of the existing public key you want to upload. In

 

WebManager, you can also Browse to the public key to be uploaded.

 

 

Key Type

Select a bit length for the key:

 

RSA

 

DSA

 

 

EDS-MD User Guide

60

Image 60
Contents TM User Guide Warranty Contacts Copyright & TrademarkDisclaimer Revision HistoryTable of Contents Using This GuideIntroduction Installation of EDS-MD4/8/16 Device Servers Using DeviceInstallerConfiguration Using Web Manager Line and Tunnel SettingsNetwork Settings Terminal and Host Settings Services SettingsSecurity Settings Maintenance and Diagnostics SettingsEDS-MD User Guide Advanced Settings VIP Settings Updating FirmwareBranding the EDS-MD4/8/16 List of Figures 1EDS-MD Product LabelList of Tables EDS-MD User Guide Using This Guide Purpose and AudienceSummary of Chapters Safety Information Cover Power PlugInput Supply GroundingBattery Wall MountingPort Connections Cleaning Instructions Equipment ClassificationsEnvironmental Conditions for Transportation and Storage Electromagnetic InterferenceAdditional Documentation Document DescriptionKey Features IntroductionApplications Protocol SupportTroubleshooting Capabilities Configuration MethodsAddresses and Port Numbers Hardware AddressProduct Information Label Port NumbersInstallation of EDS-MD4/8/16 Device Servers Package ContentsUser-Supplied Items Identifying Hardware ComponentsSerial Ports Ethernet PortLEDs System LEDs on the Top of EDS-MDReset to Default Button Serial Indicator LEDs on the Top of EDS-MDRJ45 LEDs on the Back Panel Ethernet Indicators Green Red OffTechnical Specification Category DescriptionInstalling the EDS-MD Finding a Suitable LocationConnect the EDS-MD to one or more serial devices Using DeviceInstaller Accessing EDS-MD Using DeviceInstallerCurrent Settings Description Device Detail SummarySupports Configurable Pins Telnet EnabledWeb Enabled GroupConfiguration Using Web Manager Accessing Web ManagerDevice Status Web Manager Page Components Help AreaNavigating the Web Manager Web Manager Description SeeSyslog SystemTerminal TunnelLine and Tunnel Settings Line SettingsLine Configuration Settings Line Settings DescriptionTo Configure Line Settings Line Command Mode SettingsLine Command Description Mode Settings To View Line StatisticsTunnel Settings Serial SettingsTo Configure Tunnel Serial Settings Tunnel Serial SettingsPacking Mode To Configure Tunnel Packing Mode SettingsTunnel Packing Mode Settings Tunnel Packing Mode Description SettingsAccept Mode Tunnel Accept Mode SettingsTunnel Accept Mode Description Settings Local PortTo Configure Tunnel Accept Mode Settings Connect Mode Tunnel Connect Mode SettingsTunnel Connect Mode Description Settings Reconnect TimerTo Configure Tunnel Connect Mode Settings Disconnect ModeTunnel Disconnect Mode Settings Tunnel Disconnect Description Mode SettingsTo Configure Tunnel Disconnect Mode Settings Line and Tunnel SettingsTunnel Modem Emulation Settings Tunnel Modem Description Emulation SettingsTo Configure Tunnel Modem Emulation Settings StatisticsTo View Tunnel Statistics  Include in your file statusgroup name=tunnel instance=1 Network Settings Network Interface SettingsNetwork Interface Settings Network Interface Description SettingsTo Configure Network Interface Settings To View Network Interface StatusNetwork Link Settings To Configure Network Link SettingsNetwork 1 eth0 Link Settings Network 1 Ethernet eth0 Description Link SettingsTerminal and Host Settings Terminal SettingsTerminal on Network and Line Settings Host Configuration To Configure the Terminal Network ConnectionTo Configure the Terminal Line Connection Host ConfigurationTo Configure Host Settings SSH UsernameRemote Address Remote PortServices Settings DNS SettingsTo View or Configure DNS Settings DNS SettingsFTP Settings Syslog SettingsTo Configure FTP Settings FTP SettingsHttp Settings To View or Configure Syslog SettingsHttp Settings Description To Configure Http Settings Http Authentication Settings DescriptionEnter the Uniform Resource Identifier URI RSS Settings To Configure Http AuthenticationTo Configure RSS Settings RSS SettingsReal Time Clock RTC Settings To Configure RTC SettingsRTC Settings Description Security Settings SSH SettingsRSS Settings Description SSH Server Host KeysSSH Client Known Hosts SSH Server Authorized UsersSSH Client Known Hosts Remote Command SSH Client UsersSSH Server Authorized Users SSH Client UsersSSL Settings To Configure SSH SettingsCertificate and Key Generation Settings Certificate Generation Description SettingsCertificate and Key Generation To Create a New CredentialCertificate Upload Settings To Configure an Existing SSL CredentialUpload Certificate Settings Upload Description Certificate SettingsTrusted Authority Settings Trusted AuthoritiesTo Upload an Authority Certificate Maintenance and Diagnostics Settings Filesystem SettingsFile Display Settings File DisplayFile Modification Settings File Transfer SettingsFile Modification File TransferIP Network Stack Settings To Configure IP Network Stack SettingsProtocol Stack Description IP Settings To Transfer or Modify Filesystem FilesTo Configure Icmp Network Stack Settings To Configure ARP Network Stack SettingsIcmp Network Stack Settings Protocol Stack Description Icmp SettingsTo Configure Smtp Network Stack Settings To Configure Query Port SettingsQuery Port Settings Query PortDiagnostics Hardware To View Hardware InformationIP Sockets To View the List of IP SocketsPing Settings 10 Traceroute SettingsTo Ping a Remote Host TracerouteTo Configure the Diagnostic Log Output 11 Log SettingsLog MemoryThreads ProcessesTo View Process Information To View Thread InformationSystem Settings To Reboot or Restore Factory Defaults12 System Settings System Settings DescriptionAdvanced Settings Email SettingsTo View, Configure and Send Email Email Configuration Description SettingsCommand Line Interface Settings Basic CLI SettingsTo View and Configure Basic CLI Settings CLI Configuration SettingsTelnet Settings To Configure Telnet SettingsSSH Settings Telnet SettingsXML Settings XML Export ConfigurationXML Exporting Configuration XML Export Configuration Description SettingsTo Export Configuration in XML Format XML Export Status Description SettingsXML Export Status To Export in XML FormatXML Import Configuration Import Configuration from External FileImport Configuration from the Filesystem To Import Configuration in XML FormatUpdating Firmware Obtaining Firmware Loading New FirmwareVIP Settings Virtual IP VIP ConfigurationTo Configure VIP Settings Virtual IP VIP StatusVirtual IP VIP Counters To View VIP CountersVIP Counters VIP Counters DescriptionBranding the EDS-MD4/8/16 Web Manager CustomizationShort and Long Name Settings Name Settings DescriptionShort and Long Name Customization To Customize Short or Long NamesAppendix a Technical Support Technical Support Europe, Middle East, AfricaAppendix B Binary to Hexadecimal Conversions Converting Binary to HexadecimalConversion Table Scientific CalculatorClick Hex. The hexadecimal value appears Appendix C Compliance Applicable Medical StandardsApplicable ITE Standards Emissions ImmunityRegulatory Compliance Standard DescriptionSuppliers Declaration of Conformity RoHS Notice Cables and Adapters Lantronix Cables and AdaptersLantronix P/N Description Applications RJ45 Receptacle to DB25M DTE Adapter PN 200.2066A RJ45 Receptacle to DB25M DCE Adapter PNRJ45 Receptacle to DB25F DTE Adapter PN 200.2067A RJ45 Receptacle to DB9M DTE Adapter PN 200.2069A RJ45 Receptacle to DB9F DTE Adapter PN 200.2070A 10 RJ45 to RJ45 Adapter ADP010104-01