Cisco Cisco ASA 5510 Adaptive Security Appliance Leaflet

Page of 1264
 
16-21
Cisco ASA Series 명령 참조, S 명령      
 
16      software authenticity development through storage-objects 명령
  ssh authentication   
명령 기록
사용 지침
PKF(공개 키 파일) 형식의 키(pkf 키워드) 또는 Base64 키(publickey 키워드)를 지정할 수 있습니다. 
key
 필드와 hashed 키워드는 publickey 옵션에서만 사용할 수 있으며, nointeractive 키워드는 pkf 
옵션에서만 사용할 수 있습니다.
컨피그레이션을 저장하면 해시된 키 값이 컨피그레이션에 저장되며 ASA가 재부팅될 때 사용됩니다.
show running-config username
 명령을 사용하여 ASA에서 키를 확인하는 경우 키는 SHA-256 해시
를 통해 암호화됩니다. 키를 pkf로 입력한 경우에도 ASA는 키를 해시하여 해시된 publickey로 표
시합니다. show 출력에서 키를 복사해야 하는 경우 hashed 키워드를 사용하여 publickey 유형을 지
정합니다.
다음 예에서는 PKF 형식의 키를 사용하여 인증하는 방법을 보여 줍니다.
ciscoasa(config-username)# ssh authentication pkf
Enter an SSH public key formatted file.
End with the word "quit" on a line by itself:
---- BEGIN SSH2 PUBLIC KEY ----
Comment: "4096-bit RSA, converted by xxx@xxx from OpenSSH"
AAAAB3NzaC1yc2EAAAADAQABAAACAQDNUvkgza37lB/Q/fljpLAv1BbyAd5PJCJXh/U4LO
hleR/qgIROjpnFaS7Az8/+sjHmq0qXC5TXkzWihvRZbhefyPhPHCi0hIt4oUF2ZbXESA/8
jUT4ehXIUE7FrChffBBtbD4d9FkV8A2gwZCDJBxEM26ocbZCSTx9QC//wt6E/zRcdoqiJG
p4ECEdDaM+56l+yf73NUigO7wYkqcrzjmI1rZRDLVcqtj8Q9qD3MqsV+PkJGSGiqZwnyIl
QbfYxXHU9wLdWxhUbA/xOjJuZ15TQMa7KLs2u+RtrpQgeTGTffIh6O+xKh93gwTgzaZTK4
CQ1kuMrRdNRzza0byLeYPtSlv6Lv6F6dGtwlqrX5a+w/tV/aw9WUg/rapekKloz3tsPTDe
p866AFzU+Z7pVR1389iNuNJHQS7IUA2m0cciIuCM2we/tVqMPYJl+xgKAkuHDkBlMS4i8b
Wzyd+4EUMDGGZVeO+corKTLWFO1wIUieRkrUaCzjComGYZdzrQT2mXBcSKQNWlSCBpCHsk
/r5uTGnKpCNWfL7vd/sRCHyHKsxjsXR15C/5zgHmCTAaGOuIq0Rjo34+61+70PCtYXebxM
Wwm19e3eH2PudZd+rj1dedfr2/IrislEBRJWGLoR/N+xsvwVVM1Qqw1uL4r99CbZF9NghY
NRxCQOY/7K77II==
---- END SSH2 PUBLIC KEY ----quit
INFO: Import of an SSH public key formatted file SUCCEEDED.
ciscoasa(config-username)
관련 명령
릴리스
수정 사항
9.1(2)
이 명령이 도입되었습니다.
명령
설명
clear configure ssh
실행 중인 컨피그레이션에서 모든 SSH 명령을 지웁니다.
debug ssh
SSH 명령에 대한 디버깅 정보 및 오류 메시지를 표시합니다.
show running-config 
ssh
실행 중인 컨피그레이션의 현재 SSH 명령을 표시합니다.
ssh version
SSH 버전 1 또는 SSH 버전 2를 사용하도록 ASA를 제한합니다.