
1:配置telnet密码登陆
5506(config)#enable password cisco
5506(config)#passwd cisco #已加密
5506(config)#telnet192.168.1.2 255.255.255.255 inside
5506(config)#telnettimeout 10 #默认5分钟超时
R2#192.168.1.1
Trying 192.168.1.1 ...Open
User Access Verification
Password:
5506>en
Password:
5506#
5506#exit
[Connection to 192.168.1.1 closed by foreign host]
R2#
5506(config)#telnet192.168.2.0 255.255.255.0 outside
R1#192.168.2.1
Trying 192.168.2.1 ...Open
User Access Verification
Password:
2:配置telnet用户名密码登陆
5506(config)#usernameccna password ccna
5506(config)#aaaauthentication telnet console LOCAL
R2#192.168.1.1
Trying 192.168.1.1 ...Open
User Access Verification
Username: ccnaUsername:
Password:
5506>en
Password:
5506#
思考:是否R2 可以telnet 192.168.2.1?
3:配置SSH远程登陆
5506(config)#ssh 192.168.1.0 255.255.255.0 inside
5506(config)#ssh timeout 10
5506(config)#aaa authentication sshconsole LOCAL #LOACL是关键字
5506(config)#crypto key generate rsa modulus 2048 #推荐1024
WARNING: You have a RSA keypair already defined named.
Do you really want to replace them? [yes/no]: y
Keypair generation process begin.Please wait...
5506#showcrypto key mypubkey rsa
SSH登陆ASA:
R2#ssh -l ccna 192.168.1.1
Password:
5506>en
Password: