Global host-key authentication is enabled for communication between the Central Management System and managed appliances when compliance mode is entered.
For more information about server-initiated connections, see the “Configuring Secure Shell (SSH) Authentication” section of the CMS Administration Guide. This section contains instructions on how to obtain a host key and how to import a global host key.
For more information about client-initiated connections, see the “Configuring Secure Shell (SSH) Authentication” section of the System Administration Guide for your appliance. This section contains instructions on how to obtain a host key and how to import a global host key.
If you are importing global host keys in compliance mode for a Central Management System High Availability (HA) installation, perform the following steps:
Stop the Central Management System HA engine on both the primary and secondary nodes (using the
ha engine stopcommand).Enable compliance on both nodes (using the
compliance apply standard allcommand).Import keys as described in the CMS High Availability Deployment Guide.
Restart both nodes (using the
reloadcommand).