SSH Tectia

Chapter 6 Authentication

Table of Contents

Server Authentication with Public Keys
Server Authentication with Certificates
Using the Configuration File (Unix)
Using the GUI (Windows)
User Authentication with Passwords
Using the Configuration File (Unix)
Using the GUI (Windows)
User Authentication with Public Keys
Using the Configuration File (Unix)
Using the GUI (Windows)
User Authentication with Certificates
Using the Configuration File (Unix)
Using the GUI (Windows)
User Authentication with Keyboard-Interactive
Using the Configuration File (Unix)
Using the GUI (Windows)
User Authentication with GSSAPI
Using the Configuration File (Unix)
Using the GUI (Windows)

The Secure Shell protocol used by the SSH Tectia client/server solution provides mutual authentication – the client authenticates the server and the server authenticates the client. Both parties are assured of the identity of the other party.

The remote SSH Tectia Server host can authenticate itself using either traditional public-key authentication or certificate authentication.

Different methods can be used to authenticate SSH Tectia Client users. These authentication methods can be combined or used separately, depending on the level of functionality and security you want.

User authentication methods used by the client by default are, in the following order: GSSAPI, public-key, keyboard-interactive, and password authentication (if available). Public-key and certificate authentication are combined into the public-key authentication method.

The server allows GSSAPI, public-key, keyboard-interactive, and password authentication by default.

User authentication methods

Figure 6.1. User authentication methods