Administrator Guide
• show crypto : display the public part of the SSH host-keys.
• show ip ssh client-pub-keys : display the client public keys used in host-based authentication.
• show ip ssh rsa-authentication : display the authorized-keys for the RSA authentication.
Dell#copy scp: flash:
Address or name of remote host []: 10.10.10.1
Port number of the server [22]: 99
Source file name []: test.cfg
User name to login remote host: admin
Password to login remote host:
Secure Shell Authentication
Secure Shell (SSH) is enabled by default using the SSH Password Authentication method.
Configuring the HMAC Algorithm for the SSH
Client
To configure the HMAC algorithm for the SSH client, use the ip ssh mac hmac-algorithm command in
CONFIGURATION mode.
hmac-algorithm: Enter a space-delimited list of keyed-hash message authentication code (HMAC) algorithms
supported by the SSH server.
The following HMAC algorithms are available:
• hmac-md5
• hmac-md5-96
• hmac-sha1
• hmac-sha1-96
• hmac-sha2-256
The default list of HMAC algorithm is in the following order:
• hmac-sha2-256
• hmac-sha1
• hmac-sha1-96
• hmac-md5
• hmac-md5-96
When FIPS is enabled, the default HMAC algorithm is hmac-sha2-256, hmac-sha1, hmac-sha1-96.
Example of Configuring a HMAC Algorithm
The following example shows you how to configure a HMAC algorithm list.
Dell(conf)# ip ssh mac hmac-sha1-96
Security 806