Create
Learn
Share

SSH and Telnet

rename
beef410's version from 2018-04-16 17:24

Section

Question Answer
SSH Port22
Telnet Port23
memorize

Telnet

Question Answer
(config)# line vty 0 15Enter vty config
(config-line)#password <word>Create password, username is not required.
(config-line)#loginenable logins
(config-line)#privliege level 15Enter in exec mode
(config-line)# transport input allAllow all types of connections
(config-line)#transport input sshOnly allow SSH on the VTY lines.
memorize

SSH

Question Answer
(config)#hostname <word>Required for SSH
(config)#ip domain-name <word>Set the domain used by SSH, required.
(config)#crypto key generate rsaEnter key creation prompt, requires hostname and domain. Rerunning will prompt to replace key
(config)#crypto key zeroize rsaRemoves all RSA keys and invalidates all issued certs.
SecurityAll versions of SSHv1 are considered vulnerable
sh ip sshEnabled status, version, retries, timeout
sh sshShows server connections, session state and in/out, and what user is logged in
SetupSame as telnet, just set transport input SSH
(config)#login localSSH mandates a username and password, can use the local database
(config)#username <word> privilege 15 password <word>Create a local username/password database entry set to land in exec mode
memorize

SSHv2

Question Answer
(config)#ip ssh version 2Set SSH version to 2
Key sizeMinimum 768bits
Version mismatchIf the client is running v1 and the server is running v2 the server will reject the connection
memorize