Brocade Communications Systems Brocade ICX 6650 6650 User Manual

Page of 332
74
Brocade ICX 6650 Security Configuration Guide
53-1002601-01
Displaying SSH information
Displaying additional SSH connection information
The show who command also displays information about SSH connections:
show who [begin expression | exclude expression | include expression]
Encryption
The encryption used for the SSH connection. The following values are 
displayed when AES only is enabled:
AES-256, AES-192, and AES-128 indicate the different AES 
methods used for encryption.
3-DES indicates 3-DES algorithm is used for encryption.
Permit empty password
Empty password login is allowed or not allowed.
Authentication methods
The authentication methods used for SSH. The authentication can have 
one or more of the following values:
Password - indicates that you are prompted for a password when 
attempting to log into the device.
Public-key - indicates that DSA or RSA challenge-response 
authentication is enabled.
Interactive - indicates the interactive authentication si enabled.
Authentication retries
The number of authentication retries. This number can be from 1 to 5.
Login timeout (seconds)
SSH login timeout value in seconds. This can be from 0 to 120.
Idle timeout (minutes)
SSH idle timeout value in minutes. This can be from 0 to 240.
Strict management VRF
Strict management VRF is enabled or disabled.
SCP
SCP is enabled or disabled.
SSH IPv4 clients
The list of IPv4 addresses to which SSH access is allowed. The default is 
“All”.
SSH IPv6 clients
The list of IPv4 addresses to which SSh access is allowed. Default “All”.
SSH IPv4 access-list
The IPv4 ACL used to permit or deny access using SSH.
SSH IPv6 access-list
The IPv6 ACL used to permit or deny access to device using SSH.
TABLE 14
SSH configuration information (Continued)
Field
Description
Brocade# show who
       Console connections:
       Established
       you are connecting to this session
       2 minutes 56 seconds in idle
SSH server status: Enabled
SSH connections (inbound):
1. established, client ip address 10.2.2.1, server hostkey DSA
   1 minutes 15 seconds in idle
2. established, client ip address 10.2.2.2, server hostkey RSA
   2 minutes 25 seconds in idle
SSH connection (outbound):
3. established, server ip address 10.37.77.15, server hostkey RSA
7 seconds in idle