Cambium Networks cnMatrix EX2028 handleiding
Handleiding
Je bekijkt pagina 220 van 320

Management Features 220
l
The number of simultaneous supported SSH sessions is 8. But it can be configured to a smaller
value.
Default Values
l
The SSH server and SSH client are enabled by default.
l
The default SSH version is 2.
l
The debugging option is disabled by default.
l
The maximum number of bytes allowed in an SSH transport connection is set to 32768 by default.
l
The default primary port number: 22.
l
The following cipher algorithms are set by default: CHACHA20-POLY1305, 3DES-CBC, AES128-
CBC, AES256-CBC, AES128-CTR, AES256-CTR, AES128-GCM, and AES256-GCM
l
The default MAC algorithms: HMAC-SHA2-512-ETM, HMAC-SHA2-256-ETM, HMAC-SHA2-512,
HMAC-SHA2-256.
l
The default SSH maximum sessions: 8
Limitations
l
Normally the SSH protocol allows cipher algorithms for the incoming and the outgoing direction to
be configured independently. But in cnMatrix, SSH cipher configuration must be the same for both
directions. This is to ensure that the configuration is simple.
l
Compression is not supported.
l
The key exchange algorithm and the public key algorithm have default values and cannot be
configured
l
The SSH server is fairly resistant to any kind of security attack. But the Cipher Block Chaining
(CBC) mode reveals information about the plain text if two cipher text blocks encrypted under the
same key are equal. Since re-keying is not supported prolonged active session may lead to a
security threat.
l
The SSH server may be susceptible to the man-in-the-middle attacks when the server
communicates with the client for the first time. When the server sends its public key for the first
time to the client, the client does not have any binding of the server’s public key to the identity of
the server. In that case, an attacker can substitute his public key and signature in place of server’s
public key. The user in turn will send his password to the attacker thus resulting in a security break.
l
The SSH client session cannot be established by providing the hostname. Also, SSH client does not
support all the options available in normal SSH client feature.
l
cnMatrix does not store the keys used for creating SSH client sessions.
l
The SSH client sessions cannot be established via SNMP and Web.
The SSH server provides a secure channel over which cnMatrix CLI is accessed and offers the following:
l
Protocol version exchange for the version compatibility check.
l
Data integrity by including Message Authentication Code with each packet.
Bekijk gratis de handleiding van Cambium Networks cnMatrix EX2028, stel vragen en lees de antwoorden op veelvoorkomende problemen, of gebruik onze assistent om sneller informatie in de handleiding te vinden of uitleg te krijgen over specifieke functies.
Productinformatie
| Merk | Cambium Networks |
| Model | cnMatrix EX2028 |
| Categorie | Niet gecategoriseerd |
| Taal | Nederlands |
| Grootte | 32421 MB |
Caratteristiche Prodotto
| Kleur van het product | Grijs |
| Gewicht | 2770 g |
| Breedte | 440 mm |
| Diepte | 209 mm |
| Hoogte | 44 mm |


