No relevant resource is found in the selected language.

This site uses cookies. By continuing to browse the site you are agreeing to our use of cookies. Read our privacy policy>

Reminder

To have a better experience, please upgrade your IE browser.

upgrade

SSH Login fail

Publication Date:  2017-10-13 Views:  1566 Downloads:  0
Issue Description

The S3300 switch is integrated on the ATN site to form an access ring. It is highly recommended to configure SSH on all the switched and disable telnet due to security reasons. On the switch, the engineer configure ssh but still cannot access the it through port 22.

Alarm Information

The connection is lost when trying to access the device via SSH

Handling Process

 
handling process
1. Ensure stelnet is enabled on the device

    [Huawei_S3300] stelnet server enable

2. Ensure the ssh user is added on the aaa

   [Huawei_S3300]aaa

   [Huawei_S3300-aaa]local-user sshuser service-type ssh

3. Ensure the correct stelnet services are configured tagged on the user

   [Huawei_S3300] stelnet server enable
    [Huawei_S3300]ssh user npsnoc
    [Huawei_S3300] ssh user npsnoc authentication-type password
    [Huawei_S3300]ssh user npsnoc service-type stelnet
    [Huawei_S3300] telnet server enable

4. Create the rsa key

   [Huawei_S3300]rsa local-key-pair create

Root Cause

the rsa key on the switch was not created

Solution
add rsa local-key-pair create
Suggestions

The SSH service require creation rsa which is unique to every device. This has to be created to successfully access the device via SSH.

END