User Manual

Table Of Contents
[Parameter]
action : Specifies the action for the access condition
Setting value Description
deny "Deny" the condition
permit "Permit" the condition
info : Specifies the transmission-source IPv4 address or IPv6 address that is the condition
Setting value Description
A.B.C.D Specifies an IPv4 address (A.B.C.D)
A.B.C.D/M
Specifies an IPv4 address (A.B.C.D) with subnet
mask length (Mbit)
X:X::X:X Specifies an IPv6 address (X:X::X:X)
X:X::X:X/M
Specifies an IPv6 address (X:X::X:X) with
subnet mask length (Mbit)
any Applies to all IPv4 addresses and IPv6 address
[Initial value]
none
[Input mode]
global configuration mode
[Description]
Restrict access to the SSH according to the client terminal's IPv4/IPv6 address.
Up to eight instances of this command can be set, and those that are specified earlier take priority for application.
If this command is set, all access that does not satisfy the registered conditions is denied.
However, if this command is not set, all access is permitted.
If this command is executed with the "no" syntax, the specified setting is deleted.
If parameters are omitted with the "no" syntax, the all setting are deleted.
[Note]
If ssh-server enable command is not specified, this command does not function.
[Example]
Permit access to the SSH server only from 192.168.1.1 and the 192.168.10.0/24 segment.
SWP2(config)#ssh-server access permit 192.168.1.1
SWP2(config)#ssh-server access permit 192.168.10.0/24
Deny only access to the SSH server from the segment 192.168.10.0/24.
SWP2(config)#ssh-server access deny 192.168.10.0/24
SWP2(config)#ssh-server access permit any
4.16.5 Generate SSH server host key
[Syntax]
ssh-server host key generate [bit bit]
[Parameter]
bit : 1024, 2048
Bit length of RSA key
[Initial value]
none
78 | Command Reference | Maintenance and operation functions