Q-Logic 5802V Manuale Utente

Pagina di 412
8 – Connection Security Configuration
Managing SSL and SSH Services
8-2
59263-01  A
S
Managing SSL and SSH Services
Consider the following when enabling SSH and SSL services:
„
To establish a secure Telnet connection, your workstation must use an SSH 
client.
„
To enable secure SSL connections, you must first synchronize the date and 
time on the switch and workstation. Refer to 
„
The SSL service must be enabled to authenticate users through a RADIUS 
server. Refer to 
.
„
To disable SSL when using a user authentication RADIUS server, the 
RADIUS server authentication order must be local.
„
Enabling SSL automatically creates a security certificate on the switch.
Enter the 
 command to manage both SSH and SSL services 
as shown in the following example: 
SANbox #> admin start
SANbox (admin) #> set setup services
  A list of attributes with formatting and current values will follow.
  Enter a new value or simply press the ENTER key to accept the current value.
  If you wish to terminate this process before reaching the end of the list
  press 'q' or 'Q' and the ENTER key to do so.
  PLEASE NOTE:
  -----------
  * Further configuration may be required after enabling a service.
  * If services are disabled, the connection to the switch may be lost.
  * When enabling SSL, please verify that the date/time settings
    on this switch and the workstation from where the SSL connection
    will be started match, and then a new certificate may need to be
    created to ensure a secure connection to this switch.
  TelnetEnabled       (True / False)   [True ]
  SSHEnabled          (True / False)   [False] True
  GUIMgmtEnabled      (True / False)   [True ]
  SSLEnabled          (True / False)   [False] True
  EmbeddedGUIEnabled  (True / False)   [True ]
  SNMPEnabled         (True / False)   [True ]
  NTPEnabled          (True / False)   [False]
  CIMEnabled          (True / False)   [False]
  FTPEnabled          (True / False)   [True ]
  MgmtServerEnabled   (True / False)   [True ]
  Do you want to save and activate this services setup? (y/n): [n] y