This menu controls if ssh server behaviour regarding port forward and authentication methods.
Settings
Property
Desciption
forwarding-enabled(no|yes default:no)
controls ssh port forwarding
always-allow-password-login(no|yes default:no)
controls ssh authentication methods, if set to yes, does not remove form allowed methods password_login
export-host-key
exports router private RSA and DSA key
import-host-key
replace DSA or RSA with key provided for import. Be aware that previously imported ssh keys might stop working after key change.
regenerate-host-key
generated new set of private keys (DSA and RSA) on the router and replaces current ones in use. Be aware that previously imported ssh keys might stop working after key change.
strong-crypto(no|yes default:no)
Introduces following changes in ssh configuration:
prefer 256 and 192 bit encryption instead of 128 bits
disable null encryption
prefer sha256 for hashing instead of sha1
disable md5
use 2048bit prime for Diffie Hellman exchange instead of 1024bit
Example
To use this feature from Linux host using OpenSSH client this command can be used: