HP 6125XLG R2306-HP 6125XLG Blade Switch Security Configuration Guide - Page 126

Distributing a local host public key, Exporting a host public key in a specific format to a file

Page 126 highlights

Step 2. Create local key pairs. Command public-key local create { dsa | ecdsa | rsa } [ name key-name ] Remarks By default, no local key pair exists. Distributing a local host public key You must distribute a local host public key to a peer device so the peer device can use the public key to encrypt information sent to the local device or authenticate the digital signature signed by the local device. To distribute a local host public key: 1. Record the key or export the key to a file. 2. Transfer the key, for example, by using FTP or TFTP. This section covers only the first task. The following are the methods available for recording or exporting a local host public key: • Exporting a host public key in a specific format to a file (Use this method if you can import public keys from a file on the peer device.) • Displaying a host public key in a specific format and saving it to a file (Use this method if you can import public keys from a file on the peer device.) • Displaying a host public key (Use this method if you must manually enter the key on the peer device.) Exporting a host public key in a specific format to a file Step 1. Enter system view. 2. Export a local host public key in a specific format to a file. Command system-view • Export an RSA host public key: { In non-FIPS mode: public-key local export rsa [ name key-name ] { openssh | ssh1 | ssh2 } filename { In FIPS mode: public-key local export rsa [ name key-name ] { openssh | ssh2 } filename • Export a DSA host public key: public-key local export dsa [ name key-name ] { openssh | ssh2 } filename Displaying a host public key in a specific format and saving it to a file After you display a host public key in a specific format, save the key to a file and transfer the file to the peer device. To display a local host public key in a specific format: 117

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276

117
Step
Command
Remarks
2.
Create local key pairs.
public-key local create
{
dsa
|
ecdsa
|
rsa
} [
name
key-name
]
By default, no local key pair exists.
Distributing a local host public key
You must distribute a local host public key to a peer device so the peer device can use the public key to
encrypt information sent to the local device or authenticate the digital signature signed by the local
device.
To distribute a local host public key:
1.
Record the key or export the key to a file.
2.
Transfer the key, for example, by using FTP or TFTP.
This section covers only the first task.
The following are the methods available for recording or exporting a local host public key:
Exporting a host public key in a specific format to a file
(Use this method if you can import public
keys from a file on the peer device.)
Displaying a host public key in a specific format and saving it to a file
(Use this method if you can
import public keys from a file on the peer device.)
Displaying a host public key
(Use this method if you must manually enter the key on the peer device.)
Exporting a host public key in a specific format to a file
Step
Command
1.
Enter system view.
system-view
2.
Export a local host public key
in a specific format to a file.
Export an RSA host public key:
{
In non-FIPS mode:
public-key local export rsa
[
name
key-name
] {
openssh
|
ssh1
|
ssh2
}
filename
{
In FIPS mode:
public-key local export rsa
[
name
key-name
] {
openssh
|
ssh2
}
filename
Export a DSA host public key:
public-key local export dsa
[
name
key-name
] {
openssh
|
ssh2
}
filename
Displaying a host public key in a specific format and saving it
to a file
After you display a host public key in a specific format, save the key to a file and transfer the file to the
peer device.
To display a local host public key in a specific format: