Got it

SSH server enable

Created: Jun 29, 2019 11:16:54Latest reply: Jul 1, 2019 01:01:56 557 3 0 0 0
  Rewarded HiCoins: 0 (problem resolved)

Hi, everyone,

How we enable ssh server on V300R002 version? There is no stelnet server enable command.

Please help me. Thank you!

Featured Answers

Recommended answer

chenhui
Admin Created Jul 1, 2019 01:01:56

@LSA Hi,
what is your router model?
View more
  • x
  • convention:

All Answers
https://support.huawei.com/enterprise/en/knowledge/EKB0000337835



Difference in SSH Between V3R1 and V3R2

Publication Date:  2012-07-27 Views:  118 Downloads:  0

transparent.gif Issue Description

After the NE40E is upgraded from V3R1 to V3R2, the device cannot be accessed through SSH with a trap record saying that the SSH server denies the access. 
Version before the upgrade: NE40E&80E V300R001C01B052. 
Version after the upgrade: NE40E&80E V300R002C06B323. 
 

transparent.gif Alarm Information

Null 

transparent.gif Handling Process

Do as follows to modify the related configuration of the SSH. 
The first configuration solution: two configurations are needed to realize SSH. 
stelnet server enable 
―A newly added command to V3R2. This command is needed for SSH to log in. 
ssh authentication-type default password 
― Enable this command and then SSH users employ automatically the users created in the aaa without the need to configure ssh user in the system view. 
The second configuration solution: Add each SSH user and specify the service type of the user to support stelnet. By doing so, SSH can be realized. For example: 
stelnet server enable 
ssh user username 
ssh user username authentication-type password 
ssh user username service-type stelnet 
― This command must be configured to select the service type. 
 

transparent.gif Root Cause

The realization of the original V3R1: 
There is only one solution: to specify the authentication type as password when adding each SSH user. The configuration of the current network: 
aaa 
local-user X.X.X.X.X password cipher .;\V:$N$01=B,.\#C3YB91!! 
local-user X.X.X.X.X service-type ssh 
local-user X.X.X.X.X level 3 
ssh user X.X.X.X.X authentication-type password 
user-interface vty 0 4 
authentication-mode aaa 
user privilege level 3 
protocol inbound all 
The realization of the current V3R2: 
The first configuration solution: two configurations are needed to realize SSH. 
stelnet server enable 
― A newly added command to V3R2. This command is needed for SSH to log in. 
ssh authentication-type default password 
― Enable this command and then SSH users employ automatically the users created in the aaa without the need to configure ssh user in the system view. 
The second configuration solution: Add each SSH user and specify the service type of the user to support stelnet. Thus, SSH can be realized. For example: 
stelnet server enable 
ssh user username 
ssh user username authentication-type password 
ssh user username service-type stelnet 
― This command must be configured to select the service type. 
Because the sftp and stelnet functions are added to the V3R2, the service-type command is added to the configuration for users to choose different service types and to ensure a better security. 
Users can choose a solution based on their needs. The application of the two solutions at the same time has the same effect. 
 

View more
  • x
  • convention:

Hi,
For AR, you can configure SSH using the web system as follows:
-Easy Operation
1. Choose Maintenance > System Maintenance > System and click the Service Management tab.
2. Set the STelnet status to ON or OFF
3. Click Apply and click OK in the displayed dialog box to enable or disable the STelnet service.
Thanks
View more
  • x
  • convention:

@LSA Hi,
what is your router model?
View more
  • x
  • convention:

Comment

You need to log in to comment to the post Login | Register
Comment

Notice: To protect the legitimate rights and interests of you, the community, and third parties, do not release content that may bring legal risks to all parties, including but are not limited to the following:
  • Politically sensitive content
  • Content concerning pornography, gambling, and drug abuse
  • Content that may disclose or infringe upon others ' commercial secrets, intellectual properties, including trade marks, copyrights, and patents, and personal privacy
Do not share your account and password with others. All operations performed using your account will be regarded as your own actions and all consequences arising therefrom will be borne by you. For details, see " User Agreement."

My Followers

Login and enjoy all the member benefits

Login

Block
Are you sure to block this user?
Users on your blacklist cannot comment on your post,cannot mention you, cannot send you private messages.
Reminder
Please bind your phone number to obtain invitation bonus.