McDATA® 4Gb SAN Switch for HP p-Class BladeSystem Command Line Interface Guide (AA-RWEJA-TE, November 2006)

70
Managing SSL and SSH services
Consider the following when enabling SSH and SSL services:
To establish a secure Telnet connection, your workstation must use an SSH client.
To enable secure SSL connections, you must first synchronize the date and time on the switch and
workstation. Refer to ”Setting the date and time on page 40.
The SSL service must be enabled to authenticate users through a RADIUS server. Refer to ”Configuring a
RADIUS server on the switch” on page 86.
To disable SSL when using a user authentication RADIUS server, the RADIUS server authentication order
must be local.
Enabling SSL automatically creates a security certificate on the switch.
Enter the Set Setup Services command within an Admin session to manage both SSH and SSL
services as shown in the following example:
McDATA4GbSAN #> admin start
McDATA4GbSAN (admin) #> set setup services
A list of attributes with formatting and current values will follow.
Enter a new value or simply press the ENTER key to accept the current value.
If you wish to terminate this process before reaching the end of the list
press 'q' or 'Q' and the ENTER key to do so.
PLEASE NOTE:
-----------
* Further configuration may be required after enabling a service.
* If services are disabled, the connection to the switch may be lost.
* When enabling SSL, please verify that the date/time settings
on this switch and the workstation from where the SSL connection
will be started match, and then a new certificate may need to be
created to ensure a secure connection to this switch.
TelnetEnabled (True / False) [True ]
SSHEnabled (True / False) [False] True
GUIMgmtEnabled (True / False) [True ]
SSLEnabled (True / False) [False] True
EmbeddedGUIEnabled (True / False) [True ]
SNMPEnabled (True / False) [True ]
NTPEnabled (True / False) [False]
CIMEnabled (True / False) [False]
FTPEnabled (True / False) [True ]
MgmtServerEnabled (True / False) [True ]
Do you want to save and activate this services setup? (y/n): [n] y
See the ”Set Setup Services command” on page 165.