486Chapter 10 Configuring system settings

During initial setup, there is an option to generate the SSH host keys automatically.

To generate and view the SSH keys used by all hosts in the cluster for secure management communications, use the following command:

/cfg/sys/adm/sshkeys

The SSH Host Keys menu displays.

The SSH Host Keys menu includes the following options:

/cfg/sys/adm/sshkeys followed by:

generate

Generates new SSH host keys (RSA1, RSA, and DSA)

 

to be used by all hosts in the cluster.

 

Enter Apply to apply the change immediately and

 

create the key.

 

 

show

Displays the current SSH host keys and corresponding

 

fingerprints for the cluster. The following formats are

 

used:

 

• RSA1 keys — there is no standard format. The

 

format in the CLI output is the OpenSSH

 

implementation, except that the line is wrapped. To

 

fully conform to the OpenSSH implementation, you

 

may need to edit the output back into a single line

 

for use in the key storage of an SSH client.

 

• RSA and DSA keys — the SECSH Public Key File

 

Format, as described in Internet Draft

 

draft-ietf-secsh-publickeyfile.

 

 

knownhosts

Accesses the SSH Known Host Keys menu, in order

 

to manage the public SSH keys of remote hosts (see

 

“Managing known hosts SSH keys using the CLI” on

 

page 487)

 

 

320818-A

Page 486
Image 486
Nortel Networks 4050 manual Cfg/sys/adm/sshkeys followed by, Draft-ietf-secsh-publickeyfile, Knownhosts