Comware Based
1748213 Members
2993 Online
108759 Solutions
New Discussion юеВ

Re: HP-6600ml & HP-5400 Series HTTPS Configuration

 
StevenA89
Advisor

HP-6600ml & HP-5400 Series HTTPS Configuration

Hey All,

Have been trying to restrict these Swithces to HTTPS only access.
I have tried this through the gui and command line with the following CLI commands:

crypto key generate cert rsa bits 1024
crypto host-cert generate self-signed
web-management ssl

 No luck with this.

Image attached of web management config. Note: I have removed company name and location from Self-Signed Cert.

2 REPLIES 2
Ian Vaughan
Honored Contributor

Re: HP-6600ml & HP-5400 Series HTTPS Configuration

Howdy,

Have a read of this first - http://h10032.www1.hp.com/ctg/Manual/c02667379.pdf

There might be a newer version out there if you do a bit more digging. Don't feel that you need to implement everything in it. TBH I tend to turn off web access completely and use SSH and SNMP v3 as that's all the access that my scripts and IMC need.

You might be missing "no web-management plaintext" in your config but you'll also want to try and tie the switch into your Windows (?) Cert Authority / PKI so that you are getting proper trusted Certs that your client browsers don't complain about. 

Hope that helps - Kudos button is there if it does :-)

Cheers

Ian

Hope that helps - please click "Thumbs up" for Kudos if it does
## ---------------------------------------------------------------------------##
Which is the only cheese that is made backwards?
Edam!
Tweets: @2techie4me
StevenA89
Advisor

Re: HP-6600ml & HP-5400 Series HTTPS Configuration

Thanks Ian,

I will give this a go on Monday. At the moment I have just shut off web access all together, for the ones I can however there are a few switches we have that only have web access and no option for SSH unfortunately.