Login: ssh - v2 and later is enabled

Information

SSH uses well known cryptographic algorithms to encrypt all data transmitted between the router and a user. TiMOS/SR-OS Configuration 'preserve-key' ensures that the initial key is maintained after the router is restarted for any reason. 'version 2' ensures that only SSH version 2 connections are accepted. Several attacks against version one have been reported and version 2 is considered more secure.

Solution

SSHv2 is configured by default in TiMOS/SR-OS. Run the following command on the device to enable SSHv2: configure system security version 2

See Also

https://infoproducts.alcatel-lucent.com/aces/cgi-bin/dbaccessfilename.cgi/9305050101_V1_SR-OS Security Best Practices v2.0.pdf

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-6b.

Plugin: Alcatel

Control ID: f6c95b441238a408c1c15d118e2b7f53cc6127fef51e94cac31c5a8fb8e5d0d8