As shown in Figure-1, to prevent illegal access from Device A to Device B, Device B authenticates Device A through a digital signature. Before configuring authentication parameters on Device B, use the following procedure to configure the public key of Device A on Device B:
Create RSA key pairs on Device A and display the public keys of the RSA key pairs.
Manually specify the RSA host public key of Device A on Device B.
This configuration example was created and verified on R9900P2705 of the F5000-AI-55-G device.
When you manually enter the peer host public key, make sure the entered key is in the correct format. To obtain the peer host public key in the correct format, display the public key on the peer device and record the key. The format of the public key displayed in any other way might be incorrect. If the key is not in the correct format, the system discards the key and displays an error message.
As a best practice, import rather than enter the peer host public key if you are not sure whether the device supports the format of the recorded peer host public key.
# On the top navigation bar, click
# From the navigation pane, select
# Click
# Create an RSA local key pair as follows:
Enter key pair name
Select the
Enter key length
# Click
# Click key pair name
# Record the data displayed in the
Figure-2 Creating a local key pair
Figure-3 Key details
# On the top navigation bar, click
# From the navigation pane, select
# Click
# Configure the peer host public key as follows:
Enter public key name
Select the
In the
# Click
Figure-4 Entering the peer host public key
Display information about the local public key on Device A.
# On the top navigation bar, click
# From the navigation pane, select
# Click the name for key pair
Figure-5 Local host public key information
Display information about the peer public key configured on Device B.
# On the top navigation bar, click
# From the navigation pane, select
# Click the name for public key
Figure-6 Manually configured peer host public key