IBM Partner Pavilion BMD00082 Switch User Manual


 
SmartConnect User’s Guide
BMD00082, February 2009 Chapter 6: Configuring Switch Access
85
Using SecurID with SCP
Using SecurID with SCP can be accomplished in two ways:
Using a RADIUS server to store an administrator password.
You can configure a regular administrator with a fixed password in the RADIUS server if
it can be supported. A regular administrator with a fixed password in the RADIUS server
can perform both SSH and SCP with no additional authentication required.
Using a SCP-only administrator password.
Use the /cfg/sys/sshd/scpadm command to bypass the checking of SecurID.
A SCP-only administrator’s password is typically used when SecurID is used. For exam-
ple, it can be used in an automation program (in which the tokens of SecurID are not avail-
able) to back up (download) the switch configurations each day.
Note – The SCP-only administrator’s password must be different from the regular administra-
tor’s password. If the two passwords are the same, the administrator using that password will
not be allowed to log in as a SSH user because the switch will recognize him as the SCP-only
administrator. The switch allows only the administrator access to SCP commands.