Users Guide

ip ssh pub-key-le
Specify the le used for host-based authentication.
Syntax
ip ssh pub-key-file {WORD}
Parameters
WORD Enter the le name for the host-based authentication.
Defaults none
Command Modes CONFIGURATION
Supported Modes Full–Switch
Command History
Version Description
9.9(0.0) Introduced on the FN IOM.
8.3.16.1 Introduced on the MXL 10/40GbE Switch IO Module.
Usage Information
This command species the le used for the host-based authentication. The creates/ le overwrites the
flash://ADMIN_DIR/ssh/knownhosts le and deletes the user-specied le. Even though this command is
a global conguration command, it does not appear in the running conguration because you only need to run this
command once.
The le contains the OpenSSH-compatible public keys of the host for which host-based authentication is allowed.
An example known host le format:
poclab4,123.12.1.123 ssh-rsa AAAAB3NzaC1yc2EAAAABIwAAAIEAox/
QQp8xYhzOxn07yh4VGPAoUfgKoieTHO9G4sNV+ui+DWEc3cgYAcU5Lai1MU2ODrzhCwyDNp05tKBU3t
ReG1o8AxLi6+S4hyEMqHzkzBFNVqHzpQc
+Rs4p2urzV0F4pRKnaXdHf3Lk4D460HZRhhVrxqeNxPDpEn WIMPJi0ds= ashwani@poclab4
NOTE: For rhostfile and pub-key-file, the administrator must FTP the le to the chassis.
Example
Dell#conf
Dell(conf)# ip ssh pub-key-file flash://knownhosts
Dell(conf)#
Related Commands show ip ssh client-pub-keys — displays the client-public keys used for the host-based authentication.
Secure DHCP Commands
The dynamic host conguration protocol (DHCP) as dened by RFC 2131 provides no authentication or security mechanisms. Secure
DHCP is a suite of features that protects networks that use dynamic address allocation from spoong and attacks.
clear ip dhcp snooping
Clear the DHCP binding table.
Syntax
clear ip dhcp snooping binding
1200 Security