Skip to main content

SSH CONFIGURATION

 WHAT IS SSH

SSH OR SECURE SHELL IS A NETWORK COMMUNICATION PROTOCOL THAT ENABLES TWO COMPUTERS TO COMMUNICATE (C.F HTTP OR HYPERTEXT TRANSFER PROTOCOL.

WHICH IS THE PROTOCOL USED TO TRANSFER HYPERTEXT SUCH AS WEB PAGES) AND SHARE DATA.

SSH IS A A PROTOCOL SIMILAR TO THAT OF TALENT. IT'S ALSO USED TO REMOTELY ACCESS THE NETWORK DEVICES.

BUT IT IS MORE SECURE IN COMPARISON TELNET AND PROVIDES A CRYPTOGRAPHIC CONCEPT.

WHAT IS CRYPTOGRAPHY

CRYPTOGRAPHY IS A METHOD OF PROTECTING INFORMATION AND COMMUNICATIONS THROUGH THE USE OF CODES.

SO THAT ONLY THOSE FOR WHOM THE INFORMATION IS INTENDED CAN READ AND PROCESS IT.

_________________________

REQUIRMENT


1. WHICHEVER DEVICE YOU WANT TO CONFIGURE SSH ON THIS DEVICE.

MUST HAVE AN IP ADDRESS BECAUSE WHEN WE ACCESS THE DEVICE REMOTELY ACCESS THEY WILL DO IT BASED ON THE IP ADDRESS.

2. SSH IS CONFIGURE ON EVERY MODEL OF ROUTER AND SWITCH.

_____________________

CONFIGURATION

FIRST STEP

1. IP ADDRESS CONFIGURE  ON  A ROUTER.

2. SSH CONFIGURE ON ROUTER.

3. REMOTELY ACCESS SSH IN CLIENT PC

SECOND STEP

1. IP ADDRESS CONFIGURE ON SWITCH.

2. SSH CONFIGURE ON SWITCH.

3. REMOTELY ACCESS IN CLIENT LAPTOP.

_______________________


FIRST STEP

IP ADDRESS ON ROUTER 192.168.1.1

CLIENT PC IP ADDRESS IS 192.168.1.2 
_____________________

ROUTER



GO TO ROUTER CLI INTERFACE AND AFTER THIS CONFIGURATION MODE

IP ADDRESS ASSIGN A ROUTER

router(config)# inter gig0/0
router(config)#  ip address 192.168.1.1 255.255.255.0
router(config)#  no shutdown

SSH CONFIGURATION

router(config)#   hostname ssh-router
ssh-router(config)#  username manan password 1234
ssh-router(config)#   enable password ccna
ssh-router(config)#   ip domain name corvit
ssh-router(config)#   crypto key generate rsa 1024


The crypto key generate rsa command is used to generate an RSA key pair on a Cisco router. The RSA key pair is used for secure communication, such as SSH and IPsec.

To generate an RSA key pair, you will need to specify the following parameters:

  • Key modulus size: The size of the key modulus in bits. The key modulus size must be in the range of 360 to 2048 bits.
  • Key label: A label for the key pair. The key label is used to identify the key pair when using it for secure communication.

ENABLE SSH COMMAND

ssh-router(config)#  line vty 0 1
ssh-router(config)#  transport input ssh
ssh-router(config)#   login local

GO TO PC AND  ASSIGN A IP ADDRESS AND AFTE THIS CLICK THE "DESKTOP" AFTER THIS CLICK "Telnet / SSH Client"



AFTER THIS "Connection Types" SELECT A "SSH" AND GO TO DOWN BOX

ENTER THIS  ROUTER IP ADDRESS (192.168.1.1) AND GO TO DWON BOX 

ENTER THIS USERNAME OF ROUTER (manan)

SO FINALLY CLICK A "Connect" BUTTON




ENTER THE PASSWORD OF USERNAME (1234)

AFTER THIS ENTER HIS " enable "

ssh-router>enable

ENTER THE ENABL PASSWORD  " ccna  "

Password: ccna

FINALLY REMOTE ACCESS THE ROUTER

 ssh-router#

______________________

STEP 2

CONFIGURE THE IP ADDRESS OF SWITCH IN ROUTER IP ADDRESS RANGE

IP ADDRESS SWITCH IS 192.168.1.5 255.255.255.0

BUT NOT A SWITCH INTERFACE IP ADDRESS ASSSIGN RATHER ASSIGN A INTER VLAN OF SWITCH ASSIGN IP ADDRESS.


 SWITCH

GO TO SWITCH CLI INTERFACE AND AFTER THIS GO TO CONFIGURATION MODE AND ENTER THS COMMANDS

Switch(config)#inter vlan 1

Switch(config-if)#ip add

Switch(config-if)#ip address 192.168.1.5 255.255.255.0

Switch(config-if)#no sh


SSH CONFIGURATION

switch(config)#   hostname switch-ssh
switch-ssh(config)#  username wahab password 6789
switch-ssh(config)#   enable password hanan
switch-ssh(config)#   ip domain name loafology
switch-ssh(config)#   crypto key generate rsa 1024

ENABLE SSH COMMAND

switch-ssh(config)#  line vty 0 3
switch-ssh(config)#  transport input ssh
switch-ssh(config)#   login local

GO TO PC AND  ASSIGN A IP ADDRESS AND AFTE THIS CLICK THE "DESKTOP" AFTER THIS CLICK "Telnet / SSH Client"



AFTER THIS "Connection Types" SELECT A "SSH" AND GO TO DOWN BOX

ENTER THIS  ROUTER IP ADDRESS (192.168.1.5) AND GO TO DWON BOX 

ENTER THIS USERNAME OF ROUTER (wahab)

SO FINALLY CLICK A "Connect" BUTTON



ENTER THE PASSWORD OF USERNAME (6789)

AFTER THIS ENTER HIS " enable "

switch-ssh>enable

ENTER THE ENABL PASSWORD  " hanan  "

Password: hanan

FINALLY REMOTE ACCESS THE SWITCH

switch-ssh#


CONFIGURATION COMPLETED SSH SWITCH AND ROUTER

___________________________



Comments

Popular posts from this blog

TCP/IP MODEL

  HISTORY OF TCP/IP MODEL THE TCP/IP MODEL WAS DEVELOPED BY VINT CERF AND BOB KAHN IN THE 1970S. THEY WERE BOTH WORKING AT THE DEFENSE ADVANCED RESEARCH PROJECTS AGENCY (DARPA) AT THE TIME. Vint Cerf And Bob Kahn CERF AND KAHN WERE TASKED WITH DEVELOPING A NEW NETWORK PROTOCOL THAT WOULD BE MORE RELIABLE AND EFFICIENT THAN THE EXISTING PROTOCOLS. THEY CAME UP WITH THE IDEA OF USING A LAYERED APPROACH, WHICH WOULD ALLOW EACH LAYER TO FOCUS ON A SPECIFIC TASK. THIS LED TO THE DEVELOPMENT OF THE TCP/IP MODEL, WHICH IS STILL THE BASIS FOR HOW DATA IS TRANSMITTED OVER THE INTERNET TODAY. CERF AND KAHN ARE OFTEN REFERRED TO AS THE "FATHERS OF THE INTERNET" FOR THEIR WORK ON THE TCP/IP MODEL. THEY WERE INDUCTED INTO THE NATIONAL INVENTORS HALL OF FAME IN 2004 FOR THEIR CONTRIBUTIONS TO THE DEVELOPMENT OF THE INTERNET. HERE ARE SOME OTHER NOTABLE PEOPLE WHO CONTRIBUTED TO THE DEVELOPMENT OF THE TCP/IP MODEL: JON POSTEL: POSTEL WAS THE FIRST CHAIRMAN OF THE INTERNET ENGINEERI...

Types Of Attack in Network

Common Network Attacks Explained. 1. Overwhelming a Network (DoS/DDoS): Imagine a restaurant that's flooded with too many customers. In a DoS/DDoS attack: A website is overwhelmed with too much traffic. 2. Eavesdropping on Conversations (MitM): Imagine someone listening in on your phone call. In a MitM attack: An attacker listens to your online conversations. 3. Tricking You (Phishing): Imagine receiving a fake email from your bank. In phishing: Attackers try to trick you into giving them your personal information. 4. Finding a Weakness in a Website (SQL Injection): Imagine finding a hole in a fence. In an SQL injection attack: An attacker finds a weakness in a website to steal or change data. 5. Planting a Hidden Camera (XSS): Imagine someone hiding a camera in a party. In an XSS attack: An attacker hides harmful code on a website to spy on you. 6. Guessing Your Password (Password Attck): Imagine trying to guess a friend's password. In a pas...

OSI Refrance Model

OSI MODEL 1. THE OSI MODEL WAS DEVELOPED BY THE INTERNATIONAL ORGANIZATION FOR STANDARDIZATION (ISO) IN THE LATE 1970S. THE MAIN ARCHITECT OF THE OSI MODEL WAS HUBERT ZIMMERMANN, A FRENCH SOFTWARE ENGINEER. 2.  ISO REPRESENT A 1947 MORE THAN WORK AND AGAIN REPRESENTS A ISO IN 1977 AND MORE THAN WORK AN REPRESENT  IN 1983 A OSI REDFRENCE MODEL. 2. HIS MODEL REPRESENT A 7 LAYER 3. OSI MEANS  (OPEN SYSTEMS INTERCOMMUNICATIO). 1. APPLICATION LAYER 1. THE APPLICATION LAYER IS USED BY END-USER SOFTWARE SUCH AS WEB BROWSERS AND EMAIL CLIENTS.  IT PROVIDES PROTOCOLS THAT ALLOW SOFTWARE TO SEND AND RECEIVE INFORMATION AND PRESENT MEANINGFUL DATA TO USERS. 2.  IT SENDS ITS DATA TO THE FORM OF THE  PDU. PROTOCLS  AND DEVICES USED IN LAYER THERE ARE SOME PROTOCOLS THAT WORK AT THE BACKEND OF THE APPLICATION LAYER. WHICH IN TURN WORKS AT THE APPLICATION LAYER. MANY DEVICES USE IT AT THE APPLICATION LAYER. PROTOCOLS FTP  (FILE TRANSOFER PROTOCOL) DNS (DOMA...