All MIBs › CISCOSB-SSH-MIB › rlSshClientRemoteServersAuthenticationEnable
rlSshClientRemoteServersAuthenticationEnable
Module: CISCOSB-SSH-MIB
OID (symbolic): CISCOSB-SSH-MIB::rlSshClientRemoteServersAuthenticationEnable
OID (numeric): 1.3.6.1.4.1.9.6.1.101.78.3.11
Node type: OBJECT-TYPE
Type: INTEGER
Access: read-write
Description: Setting this field to 'enable' enables remote servers authentication. As a result, while opening a session with a remote server, the fingerprint of the remote server will be computed and looked for in the table rlSshClientRemoteServerPublicKeyFingerprintTable. If an entry with the key (server-inet-address, server-fingerprint) is found, the server is considered authenticated. Otherwise, the server is not authenticated (unless the user specifically approved this server can be trusted).
What is rlSshClientRemoteServersAuthenticationEnable?
This read-write enumerated scalar turns remote-server authentication on or off for the SSH client: when enabled, the device computes the fingerprint of any server it connects to and checks it against rlSshClientRemoteServerPublicKeyFingerprintTable before treating the session as authenticated. Admins care because this is the control that decides whether an unrecognized or spoofed SSH server will be silently accepted or rejected. For example, a security-conscious admin sets this to enable(1) so that a connection to a server whose fingerprint isn't pre-registered requires explicit manual approval instead of connecting blind.
Examples
Walk all instances (SNMPv2c):
snmpwalk -v2c -c public <target> 1.3.6.1.4.1.9.6.1.101.78.3.11 snmpwalk -v2c -c public <target> CISCOSB-SSH-MIB::rlSshClientRemoteServersAuthenticationEnable
Get a specific instance (index 1):
snmpget -v2c -c public <target> 1.3.6.1.4.1.9.6.1.101.78.3.11.1 snmpget -v2c -c public <target> CISCOSB-SSH-MIB::rlSshClientRemoteServersAuthenticationEnable.1
Set instance 1 (SNMPv2c):
snmpset -v2c -c private <target> 1.3.6.1.4.1.9.6.1.101.78.3.11.1 i <value>
Start monitoring Cisco Small Business managed switch with a free 30-day trial of IPNetwork Monitor. Create custom SNMP monitor using the CISCOSB-SSH-MIB::rlSshClientRemoteServersAuthenticationEnable OID value, configure state conditions and alerts, and monitor any Cisco Small Business managed switch from a single console.
OID Breakdown
Upper-level ancestors (11 from the standard OID tree / other modules)
| Numeric OID | Name | Module |
|---|---|---|
| 1 | iso | LANART-AGENT |
| 1.3 | org | AirPair-MIB |
| 1.3.6 | dod | AirPair-MIB |
| 1.3.6.1 | internet | AirPair-MIB |
| 1.3.6.1.4 | private | AirPair-MIB |
| 1.3.6.1.4.1 | enterprises | AirPair-MIB |
| 1.3.6.1.4.1.9 | cisco | CAT2600-MIB |
| 1.3.6.1.4.1.9.6 | otherEnterprises | CISCO-SMI |
| 1.3.6.1.4.1.9.6.1 | ciscoSB | CISCO-SMI |
| 1.3.6.1.4.1.9.6.1.101 | switch001 | CISCOSB-MIB |
| 1.3.6.1.4.1.9.6.1.101.78 | rlSsh | CISCOSB-MIB |
| Numeric OID | Name | Module |
|---|---|---|
| 1.3.6.1.4.1.9.6.1.101.78.3 | rlSshClient | CISCOSB-SSH-MIB |
| 1.3.6.1.4.1.9.6.1.101.78.3.11 | rlSshClientRemoteServersAuthenticationEnable | CISCOSB-SSH-MIB |