Configure the SSH Server¶
-
Enable Host-Based Authentication
Edit:
TCPIP$SSH_DEVICE:[TCPIP$SSH.SSH2]SSHD2_CONFIG.Change:
# AllowedAuthentications hostbased,publickey,passwordto:
AllowedAuthentications hostbased -
Install the Client Host Key
Copy the client host public key to the server's
KNOWNHOSTSdirectory:$ COPY/FTP SSH-CLIENT"username password"::- TCPIP$SSH_DEVICE:[TCPIP$SSH.SSH2]HOSTKEY.PUB - TCPIP$SSH_DEVICE:[TCPIP$SSH.SSH2.KNOWNHOSTS]- SSH-CLIENT_SOME_NETWORK_DOMAIN_NET_SSH-DSS.PUBGrant world-read access to the copied key:
$ SET FILE/PROTECTION=W:R - TCPIP$SSH_DEVICE:[TCPIP$SSH.SSH2.KNOWNHOSTS]- SSH-CLIENT_SOME_NETWORK_DOMAIN_NET_SSH-DSS.PUB -
Configure Trusted Hosts
Edit the trusted-hosts file:
TCPIP$SSH_DEVICE:[TCPIP$SSH]SHOSTS.EQUIVAdd the client host name:
SSH-CLIENT.SOME.NETWORK.DOMAIN.NET