Secure Shell (SSH)

Secure Shell (SSH) is a mechanism for allowing secure remote access to management functions on a RUCKUS device.

You can log in to and configure the device using a publicly or commercially available SSH client program. SSH provides a secure and encrypted connection to the device. Secure Shell version 2 (SSHv2) is allowed in Korean CC mode. Secure Shell version 2 protocol (SSHv2) provides an SSH server and an SSH client. The SSH server allows secure remote access management functions on a RUCKUS device.

SSHv2 Supported Features

  • The following key exchange methods are supported for establishing an SSH connection:
    1. diffie-hellman-group14-sha256
    2. diffie-hellman-group16-sha512
    3. diffie-hellmangroup18-sha512
    4. ecdh-sha2-nistp256
    5. ecdh-sha2-nistp384
    6. ecdh-sha2-nistp521

    To change active support, use the ip ssh key-exchange-method command as described in Setting Optional Parameters.

  • The following host key algorithms are supported:
    1. ecdsa-sha2-nistp256
    2. ecdsa-sha2-nistp384
    3. ecdsa-sha2-nistp521
    4. rsa-sha2-256
    5. rsa-sha2-512
    6. ssh-rsa

    Use the ip ssh host-key-method command to manage the available algorithms as described in Setting Optional Parameters.

  • The following forms of encryption are supported:
    1. aes128-cbc
    2. aes128-ctr
    3. aes256-cbc
    4. aes256-ctr

    Use the ip ssh encryption command to manage the encryption options as described in Setting Optional Parameters.

  • The following MAC algorithms are supported:

    1. hmac-sha2-256
    2. hmac-sha2-512

Use the show ip ssh config command to display SSH configuration information.

SSH key generation time is affected by the increased security of authentication and encryption algorithms both in and out of Korean CC mode. The no ip ssh key-authentication command is disabled.