Operation Manual – FTP-SFTP-TFTPH3C S3100 Series Ethernet Switches Chapter 1 FTP and SFTP Configuration1-17Note:If you specify to authenticate a client through public key on the server, the client needsto read the local private key when logging in to the SFTP server. Since both RSA andDSA are available for public key authentication, you need to use the identity-key keyword to specify the algorithms to get correct local private key; otherwise you will fail tolog in. For details, see SSH Operation Manual.1.3.3 SFTP Configuration ExampleI. Network requirementsAs shown in Figure 1-6, establish an SSH connection between the SFTP client (switchA) and the SFTP server (switch B). Log in to switch B through switch A to manage andtransmit files. An SFTP user with the user name “client001” and password “abc” existson the SFTP server.II. Network diagramFigure 1-6 Network diagram for SFTP configurationIII. Configuration procedure1) Configure the SFTP server (switch B)# Create key pairs. system-view[Sysname] public-key local create rsa[Sysname] public-key local create dsa# Create a VLAN interface on the switch and assign to it an IP address, which is usedas the destination address for the client to connect to the SFTP server.[Sysname] interface vlan-interface 1[Sysname-Vlan-interface1] ip address 192.168.0.1 255.255.255.0[Sysname-Vlan-interface1] quit# Specify the SSH authentication mode as AAA.[Sysname] user-interface vty 0 4[Sysname-ui-vty0-4] authentication-mode scheme# Configure the protocol through which the remote user logs in to the switch as SSH.