在接入交换机配有SSH,也开启了SSH服务,而且调用acl策略。允许了一部分IP远程登录
在核心上能ping通接入交换机。但通过SSH远程登录就不行。提示没有22号端口 。核心交换机是网关10.255.241.254
当不在SSH下调用ACL.就能远程登录上去了
配置如下
在接入交换机上配有ssh配置如下
ip route-static vpn-instance MGT 0.0.0.0 0 10.255.241.254
#
# ssh server enable
ssh server acl 3000
#
interface Vlan-interface1002
ip binding vpn-instance MGT
ip address 10.255.241.178 255.255.255.128
#
acl advanced 3000
description for_login
rule 10 permit ip source 10.255.241.0 0.0.0.127
rule 15 permit ip source 192.168.14.0 0.0.0.255
rule 20 permit ip source 192.168.120.0 0.0.0.255
rule 25 permit ip source 10.253.208.0 0.0.0.254
#
local-user admin class manage password simple shjjctyun@123
service-type ssh terminal
authorization-attribute user-role level-15
authorization-attribute user-role network
authorization-attribute user-role network-admin
authorization-attribute user-role network-operator
# user-interface vty 0 63
authentication-mode scheme
报错
Username: admin Press CTRL+C to abort.
Connecting to 10.255.241.254 port 22.
Failed to connect to host 10.255.241.178 port 22.
(0)
最佳答案
亲~登录后才可以操作哦!
确定你的邮箱还未认证,请认证邮箱或绑定手机后进行当前操作
举报
×
侵犯我的权益
×
侵犯了我企业的权益
×
抄袭了我的内容
×
原文链接或出处
诽谤我
×
对根叔社区有害的内容
×
不规范转载
×
举报说明
暂无评论