Configuring SSH

To allow SSHv2 access to a RUCKUS ICX device, you must generate a crypto key. Refer to the crypto key generate command in the RUCKUS FastIron Command Reference and to "Managing User Accounts" in the RUCKUS FastIron Security Configuration Guide.
Complete the following task to configure access control for SSH and allow SSH packets from a specified IPv4 address.
  1. Enter global configuration mode.
    device# configure terminal
  2. Enter the management access command, using the src-ip keyword and specifying an IP address, and the allow and ssh keywords.
    device(config)# management access src-ip 10.10.10.1 255.255.255.255 allow ssh
    A source IPv4 address and subnet mask are specified. The allow action is applied to SSH packets.

The following example allows access to SSH packets (as well as Telnet) from a specified IPv4 address and network mask.

device# configure terminal
device(config)# management access src-ip 10.10.10.1 255.255.255.255 allow telnet ssh

The following example denies management access permissions to SSH packets from a specified IPv4 address and network mask.

device(config)# management access src-ip 10.10.10.1 255.255.255.255 deny ssh