Displaying SSH information

TABLE 14

SSH configuration information (Continued)

 

 

 

Field

 

Description

 

 

 

Encryption

 

The encryption used for the SSH connection. The following values are

 

 

displayed when AES only is enabled:

 

 

AES-256, AES-192, and AES-128 indicate the different AES

 

 

methods used for encryption.

 

 

3-DES indicates 3-DES algorithm is used for encryption.

 

 

Permit empty password

Empty password login is allowed or not allowed.

 

 

Authentication methods

The authentication methods used for SSH. The authentication can have

 

 

one or more of the following values:

 

 

Password - indicates that you are prompted for a password when

 

 

attempting to log into the device.

 

 

Public-key- indicates that DSA or RSA challenge-response

 

 

authentication is enabled.

 

 

Interactive - indicates the interactive authentication si enabled.

 

 

Authentication retries

The number of authentication retries. This number can be from 1 to 5.

 

 

Login timeout (seconds)

SSH login timeout value in seconds. This can be from 0 to 120.

 

 

Idle timeout (minutes)

SSH idle timeout value in minutes. This can be from 0 to 240.

 

 

Strict management VRF

Strict management VRF is enabled or disabled.

 

 

 

SCP

 

SCP is enabled or disabled.

 

 

SSH IPv4 clients

The list of IPv4 addresses to which SSH access is allowed. The default is

 

 

“All”.

 

 

SSH IPv6 clients

The list of IPv4 addresses to which SSh access is allowed. Default “All”.

 

 

SSH IPv4 access-list

The IPv4 ACL used to permit or deny access using SSH.

 

 

SSH IPv6 access-list

The IPv6 ACL used to permit or deny access to device using SSH.

 

 

 

Displaying additional SSH connection information

The show who command also displays information about SSH connections:

Brocade# show who

Console connections: Established

you are connecting to this session 2 minutes 56 seconds in idle

SSH server status: Enabled

SSH connections (inbound):

1.established, client ip address 10.2.2.1, server hostkey DSA

1minutes 15 seconds in idle

2.established, client ip address 10.2.2.2, server hostkey RSA

2minutes 25 seconds in idle

SSH connection (outbound):

3.established, server ip address 10.37.77.15, server hostkey RSA 7 seconds in idle

show who [begin expression exclude expression include expression]

74

Brocade ICX 6650 Security Configuration Guide

 

53-1002601-01

Page 94
Image 94
Brocade Communications Systems 6650 manual Displaying additional SSH connection information