配置EDGER远程访问SSHv2
登录用户通过AAA服务器上的RADISU提供
预共享密码为“CISCO”
在AAA上创建RADIUS账户“radmin”密码“CISCO”

```
ip domain-name pf.com #配置域名,ssh需要
ip ssh version 2 #更改版本号为2
R1(config)#crypto key generate rsa
The name for the keys will be: R1.pf.com
Choose the size of the key modulus in the range of 360 to 2048 for your
General Purpose Keys. Choosing a key modulus greater than 512 may take
a few minutes.
How many bits in the modulus [512]: 2048 #2048
% Generating 2048 bit RSA keys, keys will be non-exportable...[OK]
aaa new-model #开启AAA认证
aaa authentication login RADIUS group radius
line vty 0 4
login authentication RADIUS
transport input ssh
radius-server host 192.168.192.168.20.1 auth-port 1645
#指向服务器地址 #服务器AAA端口号
radius-server key CISCO #密码
```

```
登录
ssh -v 2 -l radmin 192.168.10.2
```
最后修改:2021 年 11 月 06 日
© 允许规范转载