Configuring global host-key authentication

Prev Next

Global host-key authentication is enabled for communication between the Central Management System and managed appliances when compliance mode is entered.

For more information about server-initiated connections, see the “Configuring Secure Shell (SSH) Authentication” section of the CMS Administration Guide. This section contains instructions on how to obtain a host key and how to import a global host key.

For more information about client-initiated connections, see the “Configuring Secure Shell (SSH) Authentication” section of the System Administration Guide for your appliance. This section contains instructions on how to obtain a host key and how to import a global host key.

If you are importing global host keys in compliance mode for a Central Management System High Availability (HA) installation, perform the following steps:

  1. Stop the Central Management System HA engine on both the primary and secondary nodes (using the ha engine stop command).

  2. Enable compliance on both nodes (using the compliance apply standard all command).

  3. Import keys as described in the CMS High Availability Deployment Guide.

  4. Restart both nodes (using the reload command).