
J4350 and J6350 Services Router Getting Started Guide
Telnet access to the root user is prohibited. You must use more secure
methods, such
as SSH, to log in as
root.
If you are usin
g a JUN OS c ri pt server to configure and mo ni tor routers, you can
activate clear-text access on the router to allow unencry pted text to be sent
directly over a TCP connection witho ut using any add iti onal protocol (such as SSH,
SSL, or Te ln e
t). Information sent in clear t ext is not encryp ted and therefore
can be inte rcepted. For more information abo ut the JUNOScript ap pli cation
programming interface (API), see the JUNOScript API Guide.
If the router is operating in a Common Criteria environment, see the Secure
Configurati
on Guide for Co mm on Criteria and JUNO S-FIPS .
SSH also allo
wsyoutoconnecttotherouterandaccesstheCLIto
execute commands from a remote system. H owever, unlike Telnet, SSH
encrypts traffic so that it ca nnot be intercepted.
SSH can be con f igured so that connection s are authenticated by a digital certificate.
SSH uses p ub
lic-private key technology for both connection and authentication.
The SSH client software must be installed on th e machine where the client
application ru ns. If the SSH private key is encrypted (for greater security), the SSH
client mus
t be able to access the passphrase used to de c ry p t the key.
For inform
ation about obtaining SSH software, s ee
http://www.ssh.com
and http://www.openssh.com.
Before You
Begin
Before you
begin initial configuration, complete the following tasks:
Install th
e Services Router in its permanent location, as described in “Installing
and C onnecting a Services Router” on page 81.
Gather the following information:
Hostname for the router on the network
Domain that the router belongs to on the network
Password for the root user
Time zone where the router is located
IPaddressofanNTPserver(ifNTPisusedtosetthetimeontherouter)
IP address of a DNS server
List of domains that can be appended to hostnames for DNS resolution
IP address of the default gateway
98 Before You Begin
Comentários a estes Manuais