Siemens se5880 manual Key Generator

Page 61

SIEMENS se5880 Ethernet Security Router

Chapter 6 Security Setup

User’s Guide

Secure Shell

 

 

Key Generator

Diffie-Hellman is the key exchange system used for authentication in the establishment and maintenance of SSH connections. The Key exchange requires a Public key and a Private key. This key pair can either be loaded from a source file or generated by the router. This section describes how to generate the key pair on the router. Refer to the section titled Load Keys for details on loading the key pair from a file.

Executing this function will generate new keys. This function may take in excess of one hour to complete. When started, the user will be redirected to a status page that is refreshed every 60 seconds. The status page indicates whether the task is running. When the task is no longer running, results are displayed.

Once the task is started, you can close this page and the Keygen function will continue. You can reopen it anytime by clicking Key Generator Status on the left navigation pane of the Secure Shell (SSH) Configuration List page.

To generate the key pair on the router:

1.Click Key Generator on the left navigation pane of the Secure Shell (SSH) Configuration List page. This displays the Generate Public-Private Key Pair page.

2.Click Generate to generate the keys.

3.To monitor the key generation progress, click Key Generator Status from the left navigation pane of the Secure Shell (SSH) Configuration List page.

SIEMENS

55

Image 61
Contents Se5880 Software License Software License and Limited WarrantyGeneral Provisions Table of Contents Advanced Setup User SetupSecurity Setup Monitoring Router Back Panel Front PanelHardware Specifications Software Specifications Security Package Contents Installation RequirementsNetwork Service Provider Requirements PC RequirementsHardware Installation Windows 98/ME PC ConfigurationSelect TCP/IP Protocol from the Network Protocols list Windows NTWindows Windows XP Mac OS Mac OSX Linux Establish Connection Configuring the RouterTo do this Refer to Router InformationUntrusted Interface Configuration Access Easy Setup WizardUsing PPPoE Not Using PPPoENot Using PPPoE Using PPPoEDynamic Host Configuration Protocol Trusted Interface Configuration User Management User SetupAdding/Modifying a User Account Deleting a User Account Local User LookupRadius NoneTrusted Secure Mode ConfigurationUntrusted Configure the Radius Server Configure the TacPlus Server Class Functional Areas Management ClassesChange Password No access restrictions Access ControlClick Save and Reboot Telnet WebAdvanced Setup Apply DMZDMZ Router Clock Dhcp QoS Configure QoS Policy Siemens To the end Reorder QoS PoliciesBefore policy Routing Table Configuration Click Enable Dial Backup Dial BackupInternal Modem External Modem Switch Management Switch Mirror Configuration Switch Age Time Command Line Interface File Editor Security Setup NAT Default DisablePort Number Enter the New Password and New Password again Snmp PasswordSnmp IP Filter Click Add IP RangeKey Generator Secure ShellConfigure SSH Load Keys Key Generator Firewall Scripts Firewall Rules Stateful FirewallConfigure Stateful Firewall View Dropped Packets Configure Firewall Rules Application Protocol/PortDelete Firewall Rules IKE/IPSec Configuration Easy IKE/IPSec Setup IKE Peers Advanced IKE/IPSec SetupIKE Peers Definition IKE Proposals Definition IKE IPSec Proposals Definition Siemens IKE IPSec Policies Definition Siemens VPN Log On System Summary Monitoring RouterRemote Connection Information Ethernet Interface InformationSystem Information IP Routing InformationPPPoE Session DiagnosticsATM Statistics Interface InformationFiles Information Routing Table InformationMemory Usage List All Configuration DataTCP/IP Statistics