Brocade Multi-Service IronWare Security Configuration Guid Manual de usuario Pagina 32

  • Descarga
  • Añadir a mis manuales
  • Imprimir
  • Pagina
    / 370
  • Tabla de contenidos
  • MARCADORES
  • Valorado. / 5. Basado en revisión del cliente
Vista de pagina 31
14 Multi-Service IronWare Security Configuration Guide
53-1003035-02
Restricting remote access to management functions
1
Enabling Telnet access
Telnet access is disabled by default. You can use a Telnet client to access the CLI on the device
over the network.
To enable Telnet operation, enter the following command.
Brocade(config)# telnet server
If you do not plan to use the CLI over the network and want to disable Telnet access to prevent
others from establishing CLI sessions with the device, enter the following command.
Brocade(config)# no telnet server
Syntax: [no] telnet-server
Enabling Web management access for a Brocade device
Web Management is disabled by default. You can enable it through HTTP or HTTPS as described in
the following sections.
NOTE
The Web Management Interface is only supported on the Brocade NetIron XMR and Brocade MLX
series devices
Web management through HTTP
To allow web management through HTTP for a Brocade device, you enable web management as
shown in the following command.
Brocade(config)# web-management
Syntax: [no] web-management [http | https]
Using the web-management command without the http or https option makes web management
available for both.
The http option specifies that web management is enabled for HTTP access.
The https option specifies that web management is enabled for HTTPS access.
Web management through HTTPS
The following encryption cipher algorithm are supported for HTTPS. They are listed in order of
preference:
aes256-cbc: AES in CBC mode with 256-bit key
aes192-cbc: AES in CBC mode with 192-bit key
aes128-cbc: AES in CBC mode with 128-bit key
3des-cbc: Triple-DES
rc4-des: RC4 DES
To allow web management through HTTPS for a Brocade device you must enable web management
as shown in “Web management through HTTP”. Additionally, you must generate a crypto SSL
certificate or import digital certificates issued by a third-party Certificate Authority (CA).
To generate a crypto SSL certificate use the following command.
Brocade(config)# crypto-ssl certificate generate
Vista de pagina 31
1 2 ... 27 28 29 30 31 32 33 34 35 36 37 ... 369 370

Comentarios a estos manuales

Sin comentarios