ssh_key_aos_r6
no way to compare when less than two revisions
Unterschiede
Hier werden die Unterschiede zwischen zwei Versionen angezeigt.
— | ssh_key_aos_r6 [2014/06/18 20:03] (aktuell) – angelegt benny | ||
---|---|---|---|
Zeile 1: | Zeile 1: | ||
+ | ====== Anmeldung mit SSH Private/ | ||
+ | |||
+ | Damit man sich am OmniSwitch mit AOS Release 6 per "SSH Private/ | ||
+ | |||
+ | **Private/ | ||
+ | < | ||
+ | Benny$ ssh-keygen -t dsa -C sshuser | ||
+ | Generating public/ | ||
+ | Enter file in which to save the key (/ | ||
+ | Enter passphrase (empty for no passphrase): | ||
+ | Enter same passphrase again: | ||
+ | Your identification has been saved in sshuser. | ||
+ | Your public key has been saved in sshuser.pub. | ||
+ | The key fingerprint is: | ||
+ | ae: | ||
+ | The key's randomart image is: | ||
+ | +--[ DSA 1024]----+ | ||
+ | | | ||
+ | | o| | ||
+ | | +| | ||
+ | | + | | ||
+ | | S | ||
+ | | | ||
+ | | o B + | | ||
+ | | | ||
+ | | .ooo=.. | ||
+ | +-----------------+ | ||
+ | Benny$ ls | ||
+ | sshuser.pub | ||
+ | sshuser | ||
+ | </ | ||
+ | |||
+ | <WRAP center round important 60%> | ||
+ | Der " | ||
+ | </ | ||
+ | |||
+ | **Damit die Anmeldung funktioniert, | ||
+ | < | ||
+ | OmniSwitch-> | ||
+ | OmniSwitch-> | ||
+ | ... | ||
+ | User name = sshuser, | ||
+ | Password expiration | ||
+ | Password allow to be modified date = None, | ||
+ | Account lockout | ||
+ | Password bad attempts | ||
+ | Read Only for domains | ||
+ | Read/Write for domains | ||
+ | Snmp allowed | ||
+ | Console-Only | ||
+ | </ | ||
+ | <WRAP center round tip 60%> | ||
+ | **Kleine Gemeinheit: | ||
+ | Der Switch sucht später nach " | ||
+ | </ | ||
+ | |||
+ | < | ||
+ | Benny$ ssh -i sshuser sshuser@192.168.2.106 | ||
+ | Received disconnect from 192.168.2.106: | ||
+ | </ | ||
+ | |||
+ | **Hier ein Auszug aus der Analyse:** | ||
+ | < | ||
+ | SUN DEC 31 01:59:31 2000 SSH debug1 [SSH 16] userauth-request for user sshuser service ssh-connection method publick | ||
+ | SUN DEC 31 01:59:31 2000 SSH debug1 [Count.]ey | ||
+ | SUN DEC 31 01:59:31 2000 SSH debug1 [SSH 16] attempt 1 failures 1 | ||
+ | SUN DEC 31 01:59:31 2000 SSH debug1 [SSH 16] authmethod_lookup, | ||
+ | SUN DEC 31 01:59:31 2000 SSH debug1 [SSH 16] authmethod_lookup, | ||
+ | SUN DEC 31 01:59:31 2000 SSH debug1 [SSH 16] authmethod_lookup, | ||
+ | SUN DEC 31 01:59:31 2000 SSH debug1 [SSH 16] authmethod_lookup, | ||
+ | SUN DEC 31 01:59:31 2000 SSH debug2 [SSH 16] input_userauth_request: | ||
+ | SUN DEC 31 01:59:31 2000 SSH debug2 [SSH 16] userauth_pubkey(): | ||
+ | SUN DEC 31 01:59:31 2000 SSH debug1 [SSH 16] test whether pkalg/ | ||
+ | SUN DEC 31 01:59:31 2000 SSH debug1 [SSH 16] user_key_allowed: | ||
+ | SUN DEC 31 01:59:31 2000 SSH debug1 [SSH 16] user_key_allowed: | ||
+ | </ | ||
+ | |||
+ | **Einspielen des SSH Public-Key per FTP (ASCII):** | ||
+ | < | ||
+ | Benny$ ftp 192.168.2.106 | ||
+ | Connected to 192.168.2.106. | ||
+ | 220 FTP server ready | ||
+ | Name (192.168.2.106: | ||
+ | 331 Password required | ||
+ | Password: | ||
+ | 230- | ||
+ | | ||
+ | Welcome to the Alcatel-Lucent OmniSwitch 6450 | ||
+ | Software Version 6.6.3.451.R01 Service Release, December 20, 2012. | ||
+ | |||
+ | Copyright(c), | ||
+ | |||
+ | OmniSwitch(TM) is a trademark of Alcatel-Lucent registered | ||
+ | in the United States Patent and Trademark Office. | ||
+ | | ||
+ | 230 | ||
+ | ftp> cd .. | ||
+ | 250 Changed directory to "/ | ||
+ | ftp> cd network/pub | ||
+ | 250 Changed directory to "/ | ||
+ | ftp> put sshuser.pub sshuser_dsa.pub | ||
+ | local: sshuser.pub remote: sshuser_dsa.pub | ||
+ | 229 Entering Extended Passive Mode (|||1125|) | ||
+ | 150 Opening ASCII mode data connection | ||
+ | 100% |**************************************************************************************| | ||
+ | 226 Transfer complete | ||
+ | 598 bytes sent in 00:00 (51.42 KiB/s) | ||
+ | ftp> bye | ||
+ | 221 Bye...see you later | ||
+ | </ | ||
+ | |||
+ | **Im folgenden Beispiel wird der " | ||
+ | < | ||
+ | Benny$ ssh -i sshuser sshuser@192.168.2.106 | ||
+ | | ||
+ | Welcome to the Alcatel-Lucent OmniSwitch 6450 | ||
+ | Software Version 6.6.3.451.R01 Service Release, December 20, 2012. | ||
+ | |||
+ | Copyright(c), | ||
+ | |||
+ | OmniSwitch(TM) is a trademark of Alcatel-Lucent registered | ||
+ | in the United States Patent and Trademark Office. | ||
+ | | ||
+ | OmniSwitch-> | ||
+ | </ | ||
+ | |||
+ | <WRAP center round tip 60%> | ||
+ | Wenn für den Benutzer ein Public-Key auf dem Switch vorgesehen ist, hat dieser Vorrang vor einer Radius-Anmeldung! Soll heissen für den Benutzer " | ||
+ | </ | ||
ssh_key_aos_r6.txt · Zuletzt geändert: 2014/06/18 20:03 von benny