ip ssh client

Restricts Secure Shell (SSH) access to a device based on the client IP address and MAC address.
Syntax
ip ssh client { ipv4-address [ mac-address ] | any mac-address | ipv6 ipv6-address }
no ip ssh client { ipv4-address [ mac-address ] | any mac-address | ipv6 ipv6-address }
Command Default

SSH access is not enabled.

Parameters
ipv4-address
Allows SSH access from the host with the specified IP address.
mac-address
Allows SSH access from the host with the specified IP address and MAC address.
any mac-address
Allows SSH access from any host with any IP address and specified MAC address.
ipv6 ipv6-address
Allows SSH access from any host with the specified IPv6 address.
Modes

Global configuration mode

Usage Guidelines

You can specify only one IP address with one command. However, you can enter the command ten times to specify up to ten IP addresses.

The no form of the command removes the SSH access restrictions.

Examples

The following example shows how to allow SSH access to a device based on the host with IP address 10.157.22.39.

device(config)# ip ssh client 10.157.22.39

The following example shows how to allow SSH access to the device based on the host with IPv6 address 2001::1.

device(config)# ip ssh client ipv6 2001::1 0000.000f.e9a0

The following example shows how to allow SSH access to the device from the host with any IP address and MAC address 0000.000f.e9a0.

device(config)# ip ssh client any 0000.000f.e9a0