Tripp Lite B097016INT Owners Manual for B093- B097- and B098-Series Console Se - Page 116

Importing and Exporting Preferences, 7 SDT Connector Public Key Authentication

Page 116 highlights

6. SSH Tunnels and SDT Connector To make the OOB connection using SDT Connector: • Select the gateway and click Out Of Band. The status bar will change color to indicate this gateway is now being accessed using the OOB link rather than the primary link. When you connect to a service on a host behind the gateway, or to the console server gateway itself, SDT Connector will initiate the OOB connection using the provided Start Command. The OOB connection isn't stopped (using the provided Stop Command) until Out Of Band under Gateway Actions is clicked off, at which point the status bar will return to its normal color. 6.6 Importing (and Exporting) Preferences To enable the distribution of pre-configured client configuration files, use the SDT Connector's Export/Import function: • To save a configuration .xml file (for backup or importing into other SDT Connector clients), select File: Export Preferences and select the location to save the configuration file. • To import a configuration, select File: Import Preferences and select the .xml configuration file to be installed. 6.7 SDT Connector Public Key Authentication SDT Connector can authenticate against an SSH gateway using your SSH key pair, rather than requiring you to enter your password. This is known as public key authentication. To use public key authentication with SDT Connector, first add the public part of your SSH key pair to your SSH gateway: • Ensure the SSH gateway allows public key authentication. This is typically the default behavior. • If you do not already have a public/private key pair for your client PC (the one running SDT Connector) generate them using ssh-keygen, PuTTYgen or a similar tool. You may use RSA or DSA, however, it is important you leave the passphrase field blank: - PuTTYgen: http://www.chiark.greenend.org.uk/~sgtatham/putty/download.html - OpenSSH: http://www.openssh.org/ - OpenSSH (Windows): http://sshwindows.sourceforge.net/download/ • Upload the public part of your SSH key pair (this file is typically named id_rsa.pub or id_dsa.pub) to the SSH gateway. Otherwise, add to .ssh/authorized keys in your home directory on the SSH gateway. • Next, add the private part of your SSH key pair (this file is typically named id_rsa or id_dsa) to SDT Connector. Click Edit: Preferences: Private Keys: Add and locate the private key file. Click OK. You do not have to add the public part of your SSH key pair, it is calculated using the private key. SDT Connector will now use public key authentication when connecting through the SSH gateway (console server). You may have to restart SDT Connector to shut down any existing tunnels that were established using password authentication. Also, if you have a host behind the console server that you connect to by clicking the SSH button in SDT Connector, you may also wish to configure access for public key authentication. This configuration is entirely independent of SDT Connector and the SSH gateway. You must configure the SSH client that SDT Connector launches (e.g., Putty, OpenSSH) and the host's SSH server for public key authentication. Essentially, what you are using is SSH over SSH, and the two SSH connections are entirely separate. 116

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288

116
To make the OOB connection using SDT Connector:
• Select the gateway and click Out Of Band. The status bar will change color to indicate this gateway is now being accessed
using the OOB link rather than the primary link.
When you connect to a service on a host behind the gateway, or to the console server gateway itself, SDT Connector will
initiate the OOB connection using the provided Start Command. The OOB connection isn’t stopped (using the provided Stop
Command) until Out Of Band under Gateway Actions is clicked off, at which point the status bar will return to its normal color.
6.6 Importing (and Exporting) Preferences
To enable the distribution of pre-configured client configuration files, use the SDT Connector’s Export/Import function:
• To save a configuration .xml file (for backup or importing into other SDT Connector clients), select
File: Export Preferences
and select the location to save the configuration file.
• To import a configuration, select
File: Import Preferences
and select the .xml configuration file to be installed.
6.7 SDT Connector Public Key Authentication
SDT Connector can authenticate against an SSH gateway using your SSH key pair, rather than requiring you to enter your
password. This is known as public key authentication.
To use public key authentication with SDT Connector, first add the public part of your SSH key pair to your SSH gateway:
• Ensure the SSH gateway allows public key authentication. This is typically the default behavior.
• If you do not already have a public/private key pair for your client PC (the one running SDT Connector) generate them using
ssh-keygen, PuTTYgen
or a similar tool. You may use RSA or DSA, however, it is important you leave the passphrase field
blank:
• Upload the public part of your SSH key pair (this file is typically named
id_rsa.pub
or
id_dsa.pub
) to the SSH gateway.
Otherwise, add to
.ssh/authorized keys
in your home directory on the SSH gateway.
• Next, add the private part of your SSH key pair (this file is typically named
id_rsa
or
id_dsa
) to SDT Connector. Click
Edit:
Preferences: Private Keys: Add
and locate the private key file. Click
OK
.
You do not have to add the public part of your SSH key pair, it is calculated using the private key.
SDT Connector will now use public key authentication when connecting through the SSH gateway (console server). You may
have to restart SDT Connector to shut down any existing tunnels that were established using password authentication.
Also, if you have a host behind the console server that you connect to by clicking the SSH button in SDT Connector, you may
also wish to configure access for public key authentication. This configuration is entirely independent of SDT Connector and
the SSH gateway. You must configure the SSH client that SDT Connector launches (e.g., Putty, OpenSSH) and the host’s
SSH server for public key authentication. Essentially, what you are using is SSH over SSH, and the two SSH connections are
entirely separate.
6. SSH Tunnels and SDT Connector